OpenVPN Gateway Redirect working on Android, but not on PC!!! Confusion???
-
Hello there, fellow Netgate community,
I've got a bit of a headscratcher here.
I've got a pfSense box running at a remote location, and I've successfully set up OpenVPN on it. I used the Client Export Utility to export client certificates for Android and Most Clients (which I assume includes PCs running Windows and Linux and such), and downloaded the resultant files for use with respective OpenVPN clients.
HERE'S WHERE IT GETS WEIRD:
I connect with Android, everything works fine, I have access to the default gateway of the remote network just fine, and can login to the webGUI and all that, perform administrative tasks and so on.
But over on PC (Windows AND Linux), only my WAN IP changes! Default gateway DOES NOT CHANGE! I cannot access the webGUI page, and instead I'm sent to the default gateway of my actual non-remote network!
I see this and think: Okay so the IPv4 gateway redirect is clearly working on the "server side" (remote location), but it only works sometimes on the client side!
I cannot for the life of me figure out why!
And here's another curveball: it used to work up until a few days ago! I have since changed NOTHING on the config of the pfSense box, and now this is happening, and I have no idea what to do anymore.
Does anyone have any useful pointers?? I really would appreciate it!
Thank you all!
-
@opey
Checking "Redirect gateway" on the server instructs the server to push the default route to the clients. But the client has actively to add the route by himself.I have no doubt that the server pushes the route properly. But this is all that he can do in the end.
Presumably there are issues on the clients, when adding the routes. Look into the clients logs to find out, what happens and if there is a problem, when trying to add the route.
Could be an overlapping network on client and server side for instance. -
@viragomann maybe, except like I said before, it works on Android, but not on PC. And both these devices are on the same network. I'm still struggling with this. I will keep trying though!