Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup

    Scheduled Pinned Locked Moved OpenVPN
    20 Posts 3 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      antionline @viragomann
      last edited by

      @viragomann
      I have changed dns servers to public DNS 8.8.8.8 - 8.8.4.4 under DHCP Server DNS settings and also tried under windows network cconnections TCP/IP V4. With both also I couldn't get dns resolved. Still no internet after changing my default WAN gateway to OPENVPN gateway.

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @antionline
        last edited by

        @antionline
        Can you post details about your configuration.
        What is your LAN subnet?

        Post screenshots please from your
        firewall rules
        routes
        outbound NAT

        Is pfSense able to resolve host names at all?

        A 1 Reply Last reply Reply Quote 1
        • A
          antionline @viragomann
          last edited by

          @viragomann

          LAN Subnet is 192.168.0.0 - 192.168.0.255

          LAN Firewall Rules:
          ce8fcb98-b25a-44b6-a8df-5107e4728183-image.png

          Routing:
          a8e0841d-712a-40d1-9d25-354eec9a6192-image.png

          Outbound NAT
          9de80a47-b8ca-4e69-8716-fb9d43a29dbe-image.png

          Pfsense ping www.google.com when vpn gateway selected for LAN.
          b611564c-014a-4cb8-b989-10277520ca7e-image.png

          V 1 Reply Last reply Reply Quote 0
          • V
            viragomann @antionline
            last edited by

            @antionline
            Okay, with these settings and "Don't pull routes" checked, I expect that everything is working as without the VPN.

            However, missing the routing table.

            A 1 Reply Last reply Reply Quote 1
            • A
              antionline @viragomann
              last edited by antionline

              @viragomann

              Routing table when LAN gateway changed to VPN Gateway:
              ddfce99f-ae8a-4882-8cb7-cde67b46bfa8-image.png

              Routing tabel with resolve names selected:
              5c805915-b642-45f9-8f5b-b97961b89a85-image.png

              OPEN VPN Tunnel Settings:
              c9a1c571-2f3c-4678-81c0-15c1d6ba5c35-image.png

              OPENVPN Connection Status:
              d9be6b85-9ec1-4db6-8b9d-a93d1f4bd883-image.png

              7cc2c58c-06dc-4139-95a1-740a95d3876e-image.png

              LAN RULES with Gateway selected:
              75622425-83cd-43f4-afd3-57a3037b0c91-image.png

              V 1 Reply Last reply Reply Quote 0
              • V
                viragomann @antionline
                last edited by

                @antionline
                It seems strange to me that your virtual VPN IP is shown up as gateway IP. Not clear, what causes this. I'd expect to see the server virtual IP as gateway, e.g. 10.8.1.1.

                Try to remove the check from "Don't add/remove routes" in the VPN client settings.

                A Bob.DigB 2 Replies Last reply Reply Quote 0
                • A
                  antionline @viragomann
                  last edited by

                  @viragomann

                  VPN Client updated settings:
                  a133faac-7916-440d-aec7-29e1250cb29e-image.png

                  Gateways:
                  f30503e7-f7fd-478f-8604-63d95c92ae98-image.png

                  OPENVPN Connections Status after Don't add/remove routes" unchecked
                  ab848b40-9eaf-4732-9275-6760f264d55f-image.png

                  V 1 Reply Last reply Reply Quote 0
                  • V
                    viragomann @antionline
                    last edited by

                    @antionline
                    Is your OpenVPN client running it tap mode by any chance?

                    A 1 Reply Last reply Reply Quote 0
                    • A
                      antionline @viragomann
                      last edited by

                      @viragomann

                      No it is in layer 3 tunnel mode:
                      44960caf-1da7-4236-bc81-c2f00a4b38bc-image.png

                      1 Reply Last reply Reply Quote 0
                      • Bob.DigB
                        Bob.Dig LAYER 8 @viragomann
                        last edited by

                        @viragomann said in Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup:

                        that your virtual VPN IP is shown up as gateway IP.

                        That is normal for those Privacy-VPNs.

                        V 1 Reply Last reply Reply Quote 1
                        • V
                          viragomann @Bob.Dig
                          last edited by

                          @Bob-Dig
                          Never seen this till today. Maybe this changed with 2.7?

                          Anyway it seems weird for diagnosing routing issues.

                          Bob.DigB A 2 Replies Last reply Reply Quote 1
                          • Bob.DigB
                            Bob.Dig LAYER 8 @viragomann
                            last edited by

                            @viragomann said in Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup:

                            Maybe this changed with 2.7?

                            No, I guess it is just not your type of VPN. 😉

                            V A 2 Replies Last reply Reply Quote 0
                            • V
                              viragomann @Bob.Dig
                              last edited by

                              @Bob-Dig
                              Agree, I do not use any VPN providers.
                              However, also didn't notice from any post here.

                              1 Reply Last reply Reply Quote 0
                              • A
                                antionline @viragomann
                                last edited by

                                @viragomann
                                The IP was the same with 2.6 version as well. before update.

                                1 Reply Last reply Reply Quote 0
                                • A
                                  antionline @Bob.Dig
                                  last edited by

                                  @Bob-Dig
                                  Do you have a working solution for me? I can change my vpn provider no problem.
                                  With NORDVPN I have never get successfully connected to internet.
                                  I have also installed on seperated machines different locations both not works.

                                  Bob.DigB 1 Reply Last reply Reply Quote 0
                                  • Bob.DigB
                                    Bob.Dig LAYER 8 @antionline
                                    last edited by

                                    @antionline said in Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup:

                                    Do you have a working solution for me?

                                    No. Their guides do work so the problem must be somewhere else.

                                    A 1 Reply Last reply Reply Quote 0
                                    • A
                                      antionline @Bob.Dig
                                      last edited by

                                      @Bob-Dig

                                      Once I tried gateway group by using dual OPENVPN client(Dual NORDVPN Server connection over single WAN) paired together instead of using dual WAN.

                                      At that way the Public IP and DNS changed somehow for once. After reboot of the pfsense. it did not come back again.

                                      On my third pfsense I can use NORDVPN with dual WAN gateway group. It is working. But on the other hand single WAN setup never works.

                                      It's been more than 2 months. I have to solve this problem.

                                      I tried everything. Still no solution.

                                      I am desperate right now

                                      1 Reply Last reply Reply Quote 0
                                      • A
                                        antionline @viragomann
                                        last edited by

                                        @viragomann
                                        After the latest patch
                                        Fix OpenVPN selecting wrong interface address when VIPs are present (Redmine #14646)
                                        https://redmine.pfsense.org/issues/14646
                                        I could be able to route out my traffic and the OPENVPN client works as it is requested.

                                        1 Reply Last reply Reply Quote 0
                                        • First post
                                          Last post
                                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.