• Can I do this with OpenVPN?

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    S
    Thanks GruensFroeschli ! I will see what I can do.
  • Is this possible ?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    GruensFroeschliG
    So you only want to access services FROM the roadwarriors withing your existing network and not TO your roadwarriors. I Think you can just enable advanced outbound NAT and NAT from the roadwarrior-subnet to your existing network. For servers in your existing network it would seem as if the connections come from the IP of the pfSense-machine: http://forum.pfsense.org/index.php/topic,7001.0.html
  • First time OpenVPN Implementation questions

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    GruensFroeschliG
    1: I cannot speak from experience, but a few users reported that if you want to use it in a multiWAN enviroment you should use TCP and not UDP as carrier protocol. 2: The firewall rule is only there to allow your client to access the server itself. The connections you tunnel over this connection will not be firewalled. 3: Create a key/certificate pair for each client.
  • OpenVPN and Active Directory

    Locked
    3
    0 Votes
    3 Posts
    6k Views
    C
    Can you ping by IP?  For the name resolution you might need to implement WINS.
  • OpenVPN PSK Multiple route

    Locked
    3
    0 Votes
    3 Posts
    5k Views
    N
    Thank you very much ! I've been searching into the forum but i've not found the answer. Thanks again, Nahuel
  • Roadwarrior not starting..

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    T
    Hi all !! solved the problem myself. all is working now The Wizard
  • Road Warrior w/ client-specific configuration - HOWTO?

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • MTU issue? unable transmit large data

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    W
    Thanks chazers18 and GruensFroeschli for your replies. I don't see any major differences between your posts and mine. I'm thinking that I might have miss-configured something in the routing or nating on one of the boxes. As a follow up, RDC also 'kinda works'. I can connect to one machine (of the two that I tried so far). That being said the connection is unusable; it drops in and out, doesn't hardly refresh, and is unresponsive to input. I am thinking about merging the functionality of the two machines to see if that fixes this. It should simplify things at least… Oh well, wish me luck.
  • OpenVPN GUI

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    T
    ouch… noob mistake... left the .txt when doing the config file... Now i see the options... The Wizard
  • Problems getting road warrior to connect to openvpn

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    GruensFroeschliG
    Also could you post the output of the log on pfSense?
  • Got connected to OpenVPN server, but can't talk to anything

    Locked
    10
    0 Votes
    10 Posts
    50k Views
    ?
    Wow, that compression option was the problem. I checked the box on the pfSense interface and now its working.  I had kinda seen that in the logs, but since it was a WARNING I really didn't give it much attention.  I'm used to seeing all kinds of warnings in my open source product logs that should usually just be ignored. Thanks for the help!
  • Failover with Tun0 (vpn) is possible? YES!!! it is!!

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    R
    Hello, do you mind sharing more details of the setup you used that made it work for you? Thanks
  • Cannot connect - from tutorial…

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    B
    Screenshot of WAN rule and OpenVPN log (I think for the ovpn client config above).  I hope this may give some more clues. rgds Tor [image: Rule.JPG] [image: Rule.JPG_thumb] [image: Syslog.JPG] [image: Syslog.JPG_thumb]
  • 0 Votes
    4 Posts
    3k Views
    GruensFroeschliG
    I still dont know if this is a PKI or PSK setup. For a PSK setup you just can create multiple keys and sav them. For a PKI i'm not sure… you would have to create multiple CA's and safe them in different locations. Read up on http://openVPN.net how to do that.
  • OpenVPN Site 2 Site problems.

    Locked
    19
    0 Votes
    19 Posts
    15k Views
    S
    Solved. I was adding routes to server side not the client.  Once route added to client side pfsense OpenVPN client it started to work as expected. Thanks GruensFroeschli for your help –Seth
  • OpenVPN to OPT1

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    P
    I've tried this and it didn't work. I'll try to change an ip address from an unused device to the 'working' range to make sure I have the same effect. Edit : I've changed the ip from 10.1.101.200 to 10.1.0.200 and then it worked.
  • OpenVpn proxy detector - help needed

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    F
    I want my client public IP appeared to be my server IP. I installed and set up OpenVpn (all my client traffic is now forced through the tunnel to the server where is NATed) - all works sweet except the one test here: http://www.proxyserverprivacy.com/adv-free-proxy-detector.shtml which detects me using proxy.  All other tests I found (i.e. here: http://whatismyipaddress.com/staticpages/index.php/advanced-proxy-test for example) I passed undetected. Do you have any idea what could the test at proxyserverprivacy can test on?
  • PC1 -> pfSense 1 <– site tunnel -> pfSense 2 <- PC2

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    GruensFroeschliG
    Pushes only work for PKI's where the connecting clients recieve their configuration from the server. In a site-to-site setup the whole config comes from the local config-file.
  • Yes, another "Can't ping the network behind the firewall" question.

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    GruensFroeschliG
    Could you desribe this a bit more? Because as i wrote before: there is no firewall for OpenVPN.
  • OpenVPN tunnel IP's

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    A
    Fixed this with a custom ifconfig option :)
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.