Regarding redirect-gateway -option
-
If you are using redirect-gateway to redirect all trafic through the tunnel, you HAVE to enable Advanced Outbound NAT and create a NAT mapping for the address range used by OpenVPN (the address pool assigned to clients). Otherwise nobody will be able to connect anywhere outside local subnets known to the firewall. I learned this the hard way, hope this helps someone struggling with the same problem :)
-
read the stickies or one of the many threads regarding this problem ;)
http://forum.pfsense.org/index.php/topic,7001.0.html (the red part below)