Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can't add interface - plus / add button is missing

    Scheduled Pinned Locked Moved General pfSense Questions
    11 Posts 4 Posters 4.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      farmerjohn
      last edited by

      in my myopic concentration in setting up an openVPN (client) on pfsense, I have come to realize that I need a physical interface to assign to OPT1, i.e., it can't be virtual.  I assume that is why the add ("+") button is missing.  If I'm correct in this, please let me know and I'll either:

      1. buy another nic or
      2. configure the openVPN to use the WAN interface.

      –
      intel D2500cc

      1 Reply Last reply Reply Quote 0
      • P
        pf123user
        last edited by

        what type of virtual interface are you trying to add and to where?

        1 Reply Last reply Reply Quote 0
        • DerelictD
          Derelict LAYER 8 Netgate
          last edited by

          You can add an openvpn instance as an interface.  If properly configured and enabled it should show up as an available interface and enable the add interface button.

          ETA:

          1. buy another nic or
          2. configure the openVPN to use the WAN interface.

          What, exactly, are you trying to accomplish?

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • F
            farmerjohn
            last edited by

            @Derelict:

            You can add an openvpn instance as an interface.  If properly configured and enabled it should show up as an available interface and enable the add interface button.

            What, exactly, are you trying to accomplish?

            I'm trying to setup pfsense as an openvpn client according to the steps in this post:
            https://forum.pfsense.org/index.php/topic,66467.0.html

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              That guide is in the wrong order.  After you create the openvpn client instance it will be available for interface assignment.

              The create interface button is only displayed if there are unassigned interfaces.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • F
                farmerjohn
                last edited by

                @Derelict:

                That guide is in the wrong order.  After you create the openvpn client instance it will be available for interface assignment.

                The create interface button is only displayed if there are unassigned interfaces.

                thank you - you are correct - that solved it - I was able to quickly get everything working and can direct certain clients to use OPT1 as the gateway and others the WAN.

                the only issue is the "Gateways" widget - it is showing offline, even though I have devices using it as the gateway to the openvpn server.

                gateways.png
                gateways.png_thumb

                1 Reply Last reply Reply Quote 0
                • DerelictD
                  Derelict LAYER 8 Netgate
                  last edited by

                  I would just turn off gateway monitoring on the openvpn client interface unless you're going to try to automatically failover to/from it.

                  You can't ping an openvpn internal interface like that because there's no interface to ping.  It's weird.  So your options are to deal with the gateway showing down, find something on the OpenVPN provider's network to use as an alternate monitor IP address that you can ping and is contained in the routes you have going to that provider, or just disable monitoring on the gateway.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • F
                    farmerjohn
                    last edited by

                    @Derelict:

                    You can't ping an openvpn internal interface like that because there's no interface to ping.  It's weird.  So your options are to deal with the gateway showing down, find something on the OpenVPN provider's network to use as an alternate monitor IP address that you can ping and is contained in the routes you have going to that provider, or just disable monitoring on the gateway.

                    good clarification.  I decided to not disable monitoring for the OPT1 gateway and I typed in the "Alternative monitor IP"  the IP of the openVPN server.  This way I can see the quality of the connection in the RRD Graphs.

                    1 Reply Last reply Reply Quote 0
                    • S
                      shenion
                      last edited by

                      I'm seeing the add buttons missing in the interface assign page. Only delete on all but the WAN interface.

                      1 Reply Last reply Reply Quote 0
                      • DerelictD
                        Derelict LAYER 8 Netgate
                        last edited by

                        Then you don't have any unassigned interfaces available for assignment so the button doesn't appear.

                        Chattanooga, Tennessee, USA
                        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                        Do Not Chat For Help! NO_WAN_EGRESS(TM)

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.