Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Opnevpn cliente e site to site

    Scheduled Pinned Locked Moved OpenVPN
    14 Posts 3 Posters 1.6k Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M Offline
      miami71it @viragomann
      last edited by

      @viragomann where do you tell me to add 192.168.111.250/32 there is currently written 192.168.2.0/24, can you add both? or a single network?

      sorry I didn't write about another remote server as I thought it was not relevant, basically there are two remote networks, one works and one doesn't.

      the configurations are identical only obviously the ip address and the tunnel changes

      V 1 Reply Last reply Reply Quote 0
      • V Offline
        viragomann @miami71it
        last edited by

        @miami71it said in Opnevpn cliente e site to site:

        where do you tell me to add 192.168.111.250/32 there is currently written 192.168.2.0/24, can you add both? or a single network?

        Yes, the networks have to be in CIDR notation and comma separated. Should look like this line:

        192.168.2.0/24,192.168.111.250/32
        
        M 1 Reply Last reply Reply Quote 0
        • M Offline
          miami71it @viragomann
          last edited by

          @viragomann .it doesn't work from this error

          The following input errors were detected:

          The field 'IPv4 Tunnel Network' must contain a single valid ipv4 CIDR range.

          V 1 Reply Last reply Reply Quote 0
          • V Offline
            viragomann @miami71it
            last edited by

            @miami71it
            So what did you try to enter, dude?
            The line what I suggested should work at all.

            M 1 Reply Last reply Reply Quote 0
            • M Offline
              miami71it @viragomann
              last edited by

              @viragomann ok I inserted it, I restarted the service but the problem remains I connect to the VPN remotely and the server 192.168.111.250 does not pin it and I do not reach it

              other ideas?

              V 1 Reply Last reply Reply Quote 0
              • V Offline
                viragomann @miami71it
                last edited by

                @miami71it
                Okay, for deeper investigation, please post the IPv4 Routing tables of both pfSense (Diagnostics > Routes) and of the client, also the firewall rules of the VPN interfaces and content of Status > Interfaces.

                M 1 Reply Last reply Reply Quote 0
                • M Offline
                  miami71it @viragomann
                  last edited by

                  @viragomann I am attaching a word document with the info yoPFSENSE.zip u requested

                  V 1 Reply Last reply Reply Quote 0
                  • V Offline
                    viragomann @miami71it
                    last edited by

                    @miami71it
                    So at the remote site (192.168.111.252) you're still missing the entries, which I suggested to add above.

                    In the OpenVPN peer-to-peer client the "IPv4 Remote Networks" box has to look like this

                    192.168.2.0/24,192.168.3.0/24,192.168.222.0/24
                    

                    However, the routing table on 192.168.2.252 look somewhat odd. You should probably reboot the machine.

                    M L 2 Replies Last reply Reply Quote 0
                    • M Offline
                      miami71it @viragomann
                      last edited by

                      @viragomann perfect now with your directions it works great

                      I THANK YOU

                      1 Reply Last reply Reply Quote 0
                      • L Offline
                        Li Laura @viragomann
                        last edited by

                        This post is deleted!
                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.