Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    disabling certain processes during reboot

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    11 Posts 3 Posters 345 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      davidstoll
      last edited by

      I am running vpn over the top of my 2 wans. Is there a way to have it not auto run/connect when I reboot?

      GertjanG 1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan @davidstoll
        last edited by

        @davidstoll

        VPN What ? Server ? Client ?

        Quick and dirty, of the top of my head proposal :
        Locate the system reboot script. Here it is : /etc/rc.reboot looks a this look fine candidate.

        Next : checkout the pfSense xml config file.
        You'll find the block where the VPN client is configured.
        You'll need :

        2d40cb6e-3bf2-4091-a9f1-000c7b52d074-image.png

        the name of the "Disabled" flag.

        In the /etc/rc.boot file, load the config, set this flag, save the config - and go on with the reboot.
        On boot, your VPN won't start as it has been set to "Disabled".

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          Yes more info needed here.

          Do you want to have to manually connect the VPNs after rebooting? What sort of VPNs are they? Why do you not want the VPNs to connect?

          Steve

          D 1 Reply Last reply Reply Quote 0
          • D
            davidstoll @stephenw10
            last edited by davidstoll

            @stephenw10 yes, I want to manually connect one one wan 1 and have the one on wan 2 auto connect on boot (for instance). It is NordVPN. They do tend to slow things down. The next step is to setup wireguard.

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              Hmm, no easy way to do that. You can set it to disabled but you would need to enable it again to use it and then disable it again before rebooting.

              You might be able to prevent the client starting at boot but it would be started whenever the WAN address changed or any other config change was made that restarted services.

              D 1 Reply Last reply Reply Quote 0
              • D
                davidstoll @stephenw10
                last edited by

                @stephenw10 if I attempt to disable it, I get this warning, which won't let me apply the change.

                Cannot disable an OpenVPN instance while the interface is assigned. Remove the interface assignment first.

                GertjanG 1 Reply Last reply Reply Quote 0
                • GertjanG
                  Gertjan @davidstoll
                  last edited by

                  @davidstoll
                  That's you disabling the OpenVPN server ? or Client ? in the GUI.
                  You have to script this.

                  No "help me" PM's please. Use the forum, the community will thank you.
                  Edit : and where are the logs ??

                  D 1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    If the interface is assigned the gui prevents the instance being disabled, yes.

                    D 1 Reply Last reply Reply Quote 0
                    • D
                      davidstoll @Gertjan
                      last edited by

                      @Gertjan I'm disabling the client tunneling over the wan in the gui.

                      1 Reply Last reply Reply Quote 0
                      • D
                        davidstoll @stephenw10
                        last edited by

                        @stephenw10 Well, yes, but then to get it back going it's many steps. I'm looking for a manual way to do an on/off without it auto-running on boot, but it just doesn't look like it's possible...

                        1 Reply Last reply Reply Quote 0
                        • stephenw10S
                          stephenw10 Netgate Administrator
                          last edited by

                          Yup, there's no easy way to do it.

                          It would be easier to enable or disable a policy routing rule to move traffic to to the VPN instead. Though there is also no way to set that disabled at boot in the gui.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.