• Unable to connect

    6
    0 Votes
    6 Posts
    689 Views
    GertjanG

    @cmos_battery said in Unable to connect:

    I port forwarded the OpenVPN 1194 UDP port to the IP address of my WAN connection on the pfSense box

    At that moment, when you try to connect to your WAN IP, using port 1149 protocol UDP? you see the counter is going upwards. You'll know the NAT of the device in front of pfSense is set up correctly.

    577ebd43-997e-4452-9f48-41fc9ceddadb-image.png

    For a basic OpenVPN set up, see the recent and less recent video's here.

  • Optimal settings to disable compression on OpenVPN?

    4
    0 Votes
    4 Posts
    1k Views
    S

    @kom Never mind on my last post, I didn't realize that the Allow Compression settings disappear with the refuse setting you recommended is set. I'll give that a try. Thanks!

  • DNS issues when OpenVPN client is connected

    3
    0 Votes
    3 Posts
    460 Views
    D

    @nogbadthebad Yep thats what it needed, god damit :( looked over it so often

  • LAN net cannot ping through the tunnel, but OPT1 does

    7
    0 Votes
    7 Posts
    555 Views
    D

    @viragomann hi, ivt is already configured, however, the local network cannot communicate with the remote network, only the firewall can communicate.
    It worked after adding the route
    45365c70-f55e-433c-938a-a5abef8b1251-image.png

    No route:
    ping pfSense A to Host B: ok
    ping Host A to Host B: failed

    69cf9b74-f170-4c44-b7c2-9f5ca3426732-image.png

    With route:
    ping pfSense A to Host B: ok
    ping Host A to Host B: ok
    cb394d7c-33b7-4ffd-8740-0c554c772483-image.png

  • Disconnecting WAN Interface Kills OpenVPN Servers on Other Interface

    6
    0 Votes
    6 Posts
    694 Views
    W

    @bingo600 what are you talking about?

    I know it goes down, because the VPN stops working?

    The VPN stops working immediately.

    What does unbound or any other service have to do with pinging a router over a VPN?

  • OpenVPN Shared Key VPN not working

    4
    0 Votes
    4 Posts
    392 Views
    KOMK

    @spudnet The real solution would be to bite the bullet and renumber one of the networks which is no small undertaking. Such a bizarre decision to make both a /8 unless they really do need to have 16 million clients on the same network.

  • openvpn split tunnel not working

    10
    0 Votes
    10 Posts
    2k Views
    V

    @erfanxp
    Ah, so even NM.
    Here on OpenSUSE 15.2 NM OpenVPN is working flawlessly after importing the config. However, I had this issue as well with earlier versions.
    Of course it doesn't work if your local networks are overlapping with the remote networks.

    If that isn't the case, you can configure the routing manually:
    Edit the connection. Select the IPv4 or v6 tab, whatever routes you need. Click "Routes..." at the right bottom, in the opening window check "ignore pulled routes", hit "Add" and enter the remote network and mask (in your example 10.10.184.0, 255.255.254.0). Leave the gateway blank and save all.

    Worked well for me in earlier NM versions.

  • Question regarding Open VPN (Nord VPN)

    2
    0 Votes
    2 Posts
    430 Views
    KOMK

    @chefdeski It depends. Policy routing mean using firewall rules to direct which gateway traffic goes out. I have a rule on LAN that directs one client out my Mullvad VPN, and another rule for my desktop so that any access to 10.10.0.0/16 goes out my work tunnel. I just have to disable a rule to switch the VPN "off" even though it's still up & running fine as an interface.

  • pfSense OpenVPN client: server or host address using alias

    1
    1 Votes
    1 Posts
    347 Views
    No one has replied
  • 0 Votes
    1 Posts
    191 Views
    No one has replied
  • Is there a way to downgrade openvpn?

    4
    0 Votes
    4 Posts
    879 Views
    D

    On my side, same watching.
    Since I upgrade my pfSense to 2.5.x, I encounter a deep & blocking bug with OpenVPN server.
    My VPN clients are regularly unable to reach LAN.

    I've detailed the entire issue here

  • OVPN Site to site - no clients?

    5
    0 Votes
    5 Posts
    736 Views
    B

    @kom Hi,
    I think if it would be the encryption issue, I woud't be able to connect at all I guess.

  • Backup tunnel with overlapping routes

    6
    0 Votes
    6 Posts
    784 Views
    D

    @viragomann said in Backup tunnel with overlapping routes:

    @ddbnj

    You can use policy routes instead of OpenVPN added ones if you want that. So you can use both VPNs for different purposes and additionally set up a fail-over gateway of both for common use.

    If you want to this, you have to remove the remote networks from the OpenVPN settings, so that both connections can be established without interfere.
    Then create a gateway group with both VPNs.
    Now you can add policy routing rules using either the gateway group or only one VPN gateway.
    You will have to check the "skip filter rules if gateway down" option in the advanced settings to avoid skipping a rule and use another gateway.

    I think I got this working using policy routing.

    Thank you!

  • 0 Votes
    6 Posts
    3k Views
    R

    @thatguy
    Probably you meant 'fellymar is using mismatched versions'.
    I've only one version that is 2.5.1-RELEASE (amd64)

  • ExpressVPN (OpenVPN) not working on pfSense 2.5.0a devel

    11
    0 Votes
    11 Posts
    2k Views
    C

    @clhols This only killed my internet connection.

  • Traceroute on nested VPNs

    9
    0 Votes
    9 Posts
    1k Views
    U

    Hi John

    Thanks again for your help here, I have found your older thread where you were discussing this and developing your ideas for this script, that is a damn fine thread btw and I'm a bit embarassed I didnt find it before... https://forum.netgate.com/topic/157520/openvpn-client-cascade/46 for anyone else reading (who is also an idiot who cant use search), its a very solid description of the process for manually setting up a nested VPN.

    I will have to look into this script a bit more, it seems to automate the later steps nicely but im not sure I understand all the details, especially the "Don't pull routes" settings, more research required. All the best mate

  • 0 Votes
    1 Posts
    248 Views
    No one has replied
  • OpenVPN server status not showing clients

    1
    0 Votes
    1 Posts
    287 Views
    No one has replied
  • V21.02 openvpn not working Netgate SG-2440

    2
    0 Votes
    2 Posts
    243 Views
    DaddyGoD

    @jeangirgis said in V21.02 openvpn not working Netgate SG-2440:

    OpenVPN clients do not work

    Hi,
    Exactly where?
    The client installed on NGFW? (for example to a VPN provider's server)

    Can you elaborate on this? 😉

  • Override local OpenVPN while connecting to remote site

    11
    0 Votes
    11 Posts
    932 Views
    G

    I finally solved it.

    The LAN subnet on both sites must not be identical.

    After changing the LAN subnet on one of the two sites (so they differ) it works like a charme.

    Further reading:

    https://blog.matrixpost.net/pfsense-site-to-site-ipsec-vpn-same-subnet-on-each-site/

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.