Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup

    Scheduled Pinned Locked Moved OpenVPN
    20 Posts 3 Posters 1.7k Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A Offline
      antionline @viragomann
      last edited by

      @viragomann

      LAN Subnet is 192.168.0.0 - 192.168.0.255

      LAN Firewall Rules:
      ce8fcb98-b25a-44b6-a8df-5107e4728183-image.png

      Routing:
      a8e0841d-712a-40d1-9d25-354eec9a6192-image.png

      Outbound NAT
      9de80a47-b8ca-4e69-8716-fb9d43a29dbe-image.png

      Pfsense ping www.google.com when vpn gateway selected for LAN.
      b611564c-014a-4cb8-b989-10277520ca7e-image.png

      V 1 Reply Last reply Reply Quote 0
      • V Offline
        viragomann @antionline
        last edited by

        @antionline
        Okay, with these settings and "Don't pull routes" checked, I expect that everything is working as without the VPN.

        However, missing the routing table.

        A 1 Reply Last reply Reply Quote 1
        • A Offline
          antionline @viragomann
          last edited by antionline

          @viragomann

          Routing table when LAN gateway changed to VPN Gateway:
          ddfce99f-ae8a-4882-8cb7-cde67b46bfa8-image.png

          Routing tabel with resolve names selected:
          5c805915-b642-45f9-8f5b-b97961b89a85-image.png

          OPEN VPN Tunnel Settings:
          c9a1c571-2f3c-4678-81c0-15c1d6ba5c35-image.png

          OPENVPN Connection Status:
          d9be6b85-9ec1-4db6-8b9d-a93d1f4bd883-image.png

          7cc2c58c-06dc-4139-95a1-740a95d3876e-image.png

          LAN RULES with Gateway selected:
          75622425-83cd-43f4-afd3-57a3037b0c91-image.png

          V 1 Reply Last reply Reply Quote 0
          • V Offline
            viragomann @antionline
            last edited by

            @antionline
            It seems strange to me that your virtual VPN IP is shown up as gateway IP. Not clear, what causes this. I'd expect to see the server virtual IP as gateway, e.g. 10.8.1.1.

            Try to remove the check from "Don't add/remove routes" in the VPN client settings.

            A Bob.DigB 2 Replies Last reply Reply Quote 0
            • A Offline
              antionline @viragomann
              last edited by

              @viragomann

              VPN Client updated settings:
              a133faac-7916-440d-aec7-29e1250cb29e-image.png

              Gateways:
              f30503e7-f7fd-478f-8604-63d95c92ae98-image.png

              OPENVPN Connections Status after Don't add/remove routes" unchecked
              ab848b40-9eaf-4732-9275-6760f264d55f-image.png

              V 1 Reply Last reply Reply Quote 0
              • V Offline
                viragomann @antionline
                last edited by

                @antionline
                Is your OpenVPN client running it tap mode by any chance?

                A 1 Reply Last reply Reply Quote 0
                • A Offline
                  antionline @viragomann
                  last edited by

                  @viragomann

                  No it is in layer 3 tunnel mode:
                  44960caf-1da7-4236-bc81-c2f00a4b38bc-image.png

                  1 Reply Last reply Reply Quote 0
                  • Bob.DigB Offline
                    Bob.Dig LAYER 8 @viragomann
                    last edited by

                    @viragomann said in Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup:

                    that your virtual VPN IP is shown up as gateway IP.

                    That is normal for those Privacy-VPNs.

                    V 1 Reply Last reply Reply Quote 1
                    • V Offline
                      viragomann @Bob.Dig
                      last edited by

                      @Bob-Dig
                      Never seen this till today. Maybe this changed with 2.7?

                      Anyway it seems weird for diagnosing routing issues.

                      Bob.DigB A 2 Replies Last reply Reply Quote 1
                      • Bob.DigB Offline
                        Bob.Dig LAYER 8 @viragomann
                        last edited by

                        @viragomann said in Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup:

                        Maybe this changed with 2.7?

                        No, I guess it is just not your type of VPN. 😉

                        V A 2 Replies Last reply Reply Quote 0
                        • V Offline
                          viragomann @Bob.Dig
                          last edited by

                          @Bob-Dig
                          Agree, I do not use any VPN providers.
                          However, also didn't notice from any post here.

                          1 Reply Last reply Reply Quote 0
                          • A Offline
                            antionline @viragomann
                            last edited by

                            @viragomann
                            The IP was the same with 2.6 version as well. before update.

                            1 Reply Last reply Reply Quote 0
                            • A Offline
                              antionline @Bob.Dig
                              last edited by

                              @Bob-Dig
                              Do you have a working solution for me? I can change my vpn provider no problem.
                              With NORDVPN I have never get successfully connected to internet.
                              I have also installed on seperated machines different locations both not works.

                              Bob.DigB 1 Reply Last reply Reply Quote 0
                              • Bob.DigB Offline
                                Bob.Dig LAYER 8 @antionline
                                last edited by

                                @antionline said in Unable to Route Traffic over OPENVPN Gateway NORDVPN Client Setup:

                                Do you have a working solution for me?

                                No. Their guides do work so the problem must be somewhere else.

                                A 1 Reply Last reply Reply Quote 0
                                • A Offline
                                  antionline @Bob.Dig
                                  last edited by

                                  @Bob-Dig

                                  Once I tried gateway group by using dual OPENVPN client(Dual NORDVPN Server connection over single WAN) paired together instead of using dual WAN.

                                  At that way the Public IP and DNS changed somehow for once. After reboot of the pfsense. it did not come back again.

                                  On my third pfsense I can use NORDVPN with dual WAN gateway group. It is working. But on the other hand single WAN setup never works.

                                  It's been more than 2 months. I have to solve this problem.

                                  I tried everything. Still no solution.

                                  I am desperate right now

                                  1 Reply Last reply Reply Quote 0
                                  • A Offline
                                    antionline @viragomann
                                    last edited by

                                    @viragomann
                                    After the latest patch
                                    Fix OpenVPN selecting wrong interface address when VIPs are present (Redmine #14646)
                                    https://redmine.pfsense.org/issues/14646
                                    I could be able to route out my traffic and the OPENVPN client works as it is requested.

                                    1 Reply Last reply Reply Quote 0
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.