• Ports for openvpn

    5
    0 Votes
    5 Posts
    1k Views
    J

    Thanks dude . it helped

  • Port forward to server over VPN tunnel

    4
    0 Votes
    4 Posts
    2k Views
    F

    @Derelict:

    https://forum.pfsense.org/index.php?topic=82732.msg453269#msg453269

    Thanks Derelict this looks a lot easier to understand. Interestingly with my current setup (from my last post above), the TCP port 80 for the web interface works perfectly, but to the other ports is still getting 'lost' somewhere even though the rules are setup the same for each one. I'll work through your referenced post and report back my findings later on.

  • Local User Group for OpenVPN

    4
    0 Votes
    4 Posts
    3k Views
    V

    Yes, you have to create a particular CA and server cert for each ovpn server. Only users with certificates from the CA which is assigned to the server can connect to it.
    The second server must listen on a different port and use a different tunnel subnet, off course.

  • Site to site openvpn , clients cant able to communicate with each other

    2
    0 Votes
    2 Posts
    555 Views
    J

    any one help
    i have added multiple clients but clients not communicating with each other. any specific configuration do i want to add in clients???

  • SOLVED: LAN NAT of remote over OpenVPN

    2
    0 Votes
    2 Posts
    1k Views
    T

    Figured out the root cause.  Changed NAT outbound to hybrid and added the rules for the LAN within site B's pfSense. :D

  • Outbound NAT Subnetting for PIA OpenVPN Client

    4
    0 Votes
    4 Posts
    1k Views
    DerelictD

    You'll have to post your rules.

  • Force one PC to use OpenVPN provider, but pass through other PCs on LAN?

    2
    0 Votes
    2 Posts
    851 Views
    johnpozJ

    Yup, simple policy based routing… Just create a firewall rule using the IPs of your devices as source and send them out gateway to your vpn..

    Here I gave example.. of doing just that in this thread
    https://forum.pfsense.org/index.php?topic=104449.msg582455#msg582455

  • Selective pfSense OpenVPN client usage i.e. for certain websites, how?

    4
    0 Votes
    4 Posts
    2k Views
    DerelictD

    @tontoOz:

    Could someone please clarify or advise how the name of the server can be used instead of the IP address in the above example?

    Completely unrelated to this thread but Server host or address in the OpenVPN client config takes a hostname or IP address.

  • Tun to tap reconfiguration

    1
    0 Votes
    1 Posts
    707 Views
    No one has replied
  • Strange behavior with Dynamic-IP

    1
    0 Votes
    1 Posts
    987 Views
    No one has replied
  • Automatically restart an OpenVPN connection

    1
    0 Votes
    1 Posts
    989 Views
    No one has replied
  • [Noob] OpenVPN Throughput - Hardware needs

    2
    0 Votes
    2 Posts
    1k Views
    D

    Very likely it will be just fine.

    Another way of looking at it: what's the CPU load on your I7 Win client?

    Not exactly an apples-apples comparison, but I'd be surprised if you see an appreciable CPU load @90Mbit/s.

    The main thing that would slow down pfSense would be the introduction of a resource hungry package like Snort/Suricata.

    With a reasonable amount of memory (1GB would be a start) and the CPU you mentioned, that system should be entirely adequate  for VPN across 100Mbit cable.
    You might want to check with your VPN provider if they have any particular configuration issues w/pfSense (or perhaps search the other pfSense boards).

  • Enabling AES instructions

    6
    0 Votes
    6 Posts
    5k Views
    T

    Teddy - Cheers, I will check the Bios! If connected, I'm just going to assume it's working!

    Jimp - I have also had confirmation from my VPN provider that support will be added immediately post 2.4 release.

  • What i am doing wrong here?

    23
    0 Votes
    23 Posts
    4k Views
    johnpozJ

    dude I have NO freaking idea what your doing wrong, since you have provided NOTHING in the way of information… What does the log say on both the server and the client when your saying it doesn't log in?

  • Cannot access smb shares? SOLVED

    5
    0 Votes
    5 Posts
    2k Views
    K

    thank you so much I realized that bit defender what blocking the connection to the adapter I edited the adapter as trusted

    Thank you so much pretty new to openvpn

    Clipboarder.2015.12.26-005.png
    Clipboarder.2015.12.26-005.png_thumb
    Clipboarder.2015.12.26-006.png
    Clipboarder.2015.12.26-006.png_thumb

  • SOLVED: OpenVPN Site2Site, Slow download, Bug ?

    2
    0 Votes
    2 Posts
    891 Views
    S

    Found it!!

    With the current (2014-06-11) state of VirtIO network drivers in FreeBSD, it is necessary to check the Disable hardware checksum offload box under System > Advanced on the Networking tab and to manually reboot pfSense after saving the setting,

  • Solved: Pushing wrong netmask for windows

    2
    0 Votes
    2 Posts
    960 Views
    W

    Figured it out.  My Local IPv4 network was being listed as the gateway address and not the scope.

    I changed the last part of the ip from .1 to .0.

  • OpenVPN login times?

    3
    0 Votes
    3 Posts
    820 Views
    K

    Thank you I just ended up using ELK to keep all the logs then filter it to find the user and external IP of the OpenVPN

    Thank you again ;)

  • Audit OpenVPN and Cert Manager settings

    3
    0 Votes
    3 Posts
    1k Views
    J

    So would the following be a good secure way to issue new certs with minimal disruption?

    Create another Certificate Authority.
    Ensure the values are correct for my needs and today's standards. <– I need to research guidance on this.
    Issue Certs for my clients.
    Deploy them one at a time when we have the machine in for maintenance.
    Then using the CRL turn off that old cert and eventually remove the entire list of Certs and old CA.

  • 100K openvpn users

    4
    0 Votes
    4 Posts
    1k Views
    ?

    I'm trying to setup 100K predefined users with certification, I created script to add them all.

    On what hardware you are trying this to realize?

    once the script reached to 9K users, openvpn become very slow.

    And writing a script that adds even and only adding 5000 users per run should not work?

    Any idea how to figure out what is the root cause for it ?

    The CPU is to lame The RAM size is to low The storage is to slow or small

    Why not using an external OpenVPN Server? We use CentOS 6.6 and SoftEtherVPN Server on it.
    Intel E3-1286v3 / 32 GB ECC RAM / Samsung840 Pro 512 GB SDD
    Comtech AHA600 VPN acceleration card (AES-CBC)
    Comtech AHA PCIe372 compresison card (on each side)

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.