• OpenVPN without NAT

    2
    0 Votes
    2 Posts
    877 Views
    P

    Yes, Firewall->NAT, Outbound. Select Manual Outbound NAT and Save. Then delete all the rules that are automatically put there for you. Then no NAT will happen - you will have just a plain firewall-router - still with load of extra features of course  ;)

  • Can't view Youtube when using PIA VPN connection

    1
    0 Votes
    1 Posts
    764 Views
    No one has replied
  • OpenVPN Client Try Multiple Ports

    5
    0 Votes
    5 Posts
    3k Views
    T

    Look under the Advanced box ;)

    Enter any additional options you would like to add to the OpenVPN client configuration here, separated by a semicolon
    EXAMPLE: remote server.mysite.com 1194; or remote 1.2.3.4 1194;

  • Changing OpenVPN password via VPN client- Mac and Linux

    1
    0 Votes
    1 Posts
    735 Views
    No one has replied
  • Can't route through openvpn

    2
    0 Votes
    2 Posts
    724 Views
    C

    Oh woops… they weren't kidding the leave the encryption to bf-cbc, don't use aes

  • Openvpn access server, community version - client login from pfsense?

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • OpenVPN client port forwarding magic

    4
    0 Votes
    4 Posts
    1k Views
    J

    so.. outbound routing is the problem
    forwarding only works when VPNclient is pfsense's default gateway,
    doesn't work when WAN is default gateway, or when VPNclient is set as the gateway (via firewall rule )for the network where the port is being forwarded

    what can i do to fix this?

  • OpenVPN Site-To-Site Firewall/routing issues

    2
    0 Votes
    2 Posts
    1k Views
    P

    Not sure if you still have a problem?
    Maybe the firewall rule on Colo OpenVPN tab is only allowing traffic to destination LANaddress, and it should be LANnet?
    Maybe the target servers at Colo have their default gateway something else? so they don't know how to reply back to you through pfSense?
    or ?

  • 0 Votes
    4 Posts
    6k Views
    P

    site 1 Server (IPv4 Local Network): 192.168.59.0/30

    Surprised your local LAN would be "/30" - perhaps you mean 192.168.59.0/24 ?

    IPv4 Tunnel Network: 192.168.50.0/31

    You need to use "/30" mask - that gives 4 IP addresses, top and bottom unused, OpenVPN gives .1 to server and .2 to client.

    Every peer-to-peer tunnel network server-client pair must use a different subnet.
    The local LAN at every office must use a different subnet.

  • Routing Problem OpenVPN/Gateway/Rule

    2
    0 Votes
    2 Posts
    987 Views
    B

    Not following entirely with your description… a drawing could help a lot here.
    pfSense usually just does what you configure it should do. What rules did you configure? (hint: for policy based routing & OpenVPN, use the floating rules)

  • Need clarification on openVPN usage

    3
    0 Votes
    3 Posts
    956 Views
    jimpJ

    You need a tap bridge, but that only works properly on 2.1.x. IIRC there are howtos here on the forum … somewhere, I wrote one of them somewhere.

    You can do it on 2.0.x with the tap bridge fix package that fixes a few things in 2.0.x for tap VPNs that didn't make it into a 2.0.x release.

    Basically you setup the VPN in tap mode, no tunnel network, set it to bridge to LAN, set the DHCP options you want, and then you have to assign the VPN interface under Interfaces > (assign), enable that, then setup an actual bridge between the LAN and that new interface.

  • OpenVPN No LAN Access using PIA

    23
    0 Votes
    23 Posts
    10k Views
    P

    You would connect in from OpenVPN client on your laptop, from anywhere on the internet to the OpenVPN server running on pfSense at home. The traffic from your laptop back home to your home network would not be going through PIA.
    You can set your laptop-to-home OpenVPN connection to "redirect all traffic through the VPN". Then when you browse the internet from your laptop, that traffic will go from laptop to home pfense, then out of home pfSense to the internet by whatever way the rest of your home LAN gets out to the internet.
    For that, you can have an OpenVPN client on pfSense connected to the OpenVPN server on PIA. And you can send all traffic through that.
    So you pfSense would have an OpenVPN listening for connects from your remote laptop, and an OpenVPN client connecting out to PIA.

  • Can't get openvpn working

    9
    0 Votes
    9 Posts
    10k Views
    S

    OK, I just exported the config again and and has in fact no tls-auth  now. Sorry, my fault. I got confused after all that testing.

  • MOVED: OpenVPn site-to-site

    Locked
    1
    0 Votes
    1 Posts
    509 Views
    No one has replied
  • Site-Site connected no response

    7
    0 Votes
    7 Posts
    1k Views
    R

    Sorry, yes they do. The pfsense at the house is virtualized on a hyper-v box. Pfsense at condo is an Alix board.

  • Configuration not working

    1
    0 Votes
    1 Posts
    758 Views
    No one has replied
  • No Internet Access when PIA is up

    1
    0 Votes
    1 Posts
    725 Views
    No one has replied
  • Pfsense 2.1 OpenVPN to PIA - Traffic issues

    3
    0 Votes
    3 Posts
    1k Views
    ?

    Were you able to figure this out?

    I am battling this issue as well

  • MOVED: OpenVPN Performance Degradation on 2.1.1-PRERELEASE from 2.1-RC0

    Locked
    1
    0 Votes
    1 Posts
    469 Views
    No one has replied
  • Redirect OpenVPN remote connection to OpenVPN client gateway

    1
    0 Votes
    1 Posts
    555 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.