Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Routing network from vpn client to lan network

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 3 Posters 838 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      comeback1106
      last edited by

      Hi everyone, I have problem when create vpn network
      My Lan network is : 11.0.0.0/8
      My VPN network is: 172.20.0.0/16
      My pfsense ip is: 11.11.11.11/8
      I have push route "11.0.0.0 255.0.0.0"

      When I connect vpn to my network. it ok. I can access to pfsense with IP 11.11.11.11 but I can't access to another client in my lan network. I have check route on my laptop, here is route table. I see that route to network 11.0.0.0/8 have been created.
      I attached some image here.
      All firewall rule is default.
      Thanks for your help.
      ![9-3-2014 2-47-50 PM.png](/public/imported_attachments/1/9-3-2014 2-47-50 PM.png)
      ![9-3-2014 2-47-50 PM.png_thumb](/public/imported_attachments/1/9-3-2014 2-47-50 PM.png_thumb)
      ![9-3-2014 2-48-07 PM.png](/public/imported_attachments/1/9-3-2014 2-48-07 PM.png)
      ![9-3-2014 2-48-07 PM.png_thumb](/public/imported_attachments/1/9-3-2014 2-48-07 PM.png_thumb)
      ![9-3-2014 2-48-52 PM.png](/public/imported_attachments/1/9-3-2014 2-48-52 PM.png)
      ![9-3-2014 2-48-52 PM.png_thumb](/public/imported_attachments/1/9-3-2014 2-48-52 PM.png_thumb)

      1 Reply Last reply Reply Quote 0
      • B
        bennyc
        last edited by

        Hi,

        you don't need the "push route" for your lan subnet, as it is already done by entering the range in the IPv4 local network(s).
        From reading briefly your description, it seems you need to add a rule (menu -> goto Firewall:Rules -> tab OpenVPN) to allow your clients (172.20.0.0/16 (an awefull large range for VPN clients btw :o)) access to *
        Do you have such a rule in place?

        4x XG-7100 (2xHA), 1x SG-4860, 1x SG-2100
        1x PC Engines APU2C4, 1x PC Engines APU1C4

        1 Reply Last reply Reply Quote 0
        • M
          marvosa
          last edited by

          Make sure there's an any/any rule on your openvpn tab.

          Post your server1.conf.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.