Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    No access to LAN over OpenVPN

    Scheduled Pinned Locked Moved OpenVPN
    21 Posts 4 Posters 3.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tsolrm
      last edited by

      Which Subnet would you recommend to use?

      1 Reply Last reply Reply Quote 0
      • D
        doktornotor Banned
        last edited by

        Use something "random". Like, 10.156.74.0/24, 192.168.219.0/24 or whatever. Also, 172.16/12 space (172.16.0.0 - 172.31.255.255) seems a whole lot less popular. 192.168.[01].* and 10.0.0.* is where  some 99% of default modem/router configurations sit out there.

        1 Reply Last reply Reply Quote 0
        • T
          tsolrm
          last edited by

          Thank you. I have changed that and also pushed the DNS servers to the clients. It seems that I can use nslookup now.

          1 Reply Last reply Reply Quote 0
          • T
            tsolrm
            last edited by

            Just one more question in case you have knowledge on the matter.

            I have checked the box: Redirect gateway in the OpenVPN server config.

            I understand this makes the client use the OpenVPN server bandwidth instead of their own. So basically it's eating up the networks bandwidth when it comes to internet usage.

            What if I disable this feature - would I still be able to access the LAN?

            1 Reply Last reply Reply Quote 0
            • D
              doktornotor Banned
              last edited by

              Of course, yes… The checkbox is only useful if you want to use OpenVPN as your WAN (i.e., direct all WAN traffic from the client via OpenVPN).

              1 Reply Last reply Reply Quote 0
              • T
                tsolrm
                last edited by

                Once unchecked it opens up 'IPv4 Local Network/s'

                Do I put the details of my LAN here? And this way only LAN traffic goes through vpn?

                1 Reply Last reply Reply Quote 0
                • D
                  doktornotor Banned
                  last edited by

                  Did you consider reading the OpenVPN wiki docs?

                  1 Reply Last reply Reply Quote 0
                  • T
                    tsolrm
                    last edited by

                    I'm really tight for time with this, I'm not doing this for my own amusement and I have a deadline for configuring the entire box. Could you please give me an answer?

                    1 Reply Last reply Reply Quote 0
                    • P
                      phil.davis
                      last edited by

                      @tsolrm:

                      Once unchecked it opens up 'IPv4 Local Network/s'

                      Do I put the details of my LAN here? And this way only LAN traffic goes through vpn?

                      Yes, you need to tell it the subnet(s) that you want to be reached across the OpenVPN - your LAN(s)

                      As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
                      If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

                      1 Reply Last reply Reply Quote 0
                      • T
                        tsolrm
                        last edited by

                        @phil.davis:

                        @tsolrm:

                        Once unchecked it opens up 'IPv4 Local Network/s'

                        Do I put the details of my LAN here? And this way only LAN traffic goes through vpn?

                        Yes, you need to tell it the subnet(s) that you want to be reached across the OpenVPN - your LAN(s)

                        Thank you for your help. Everything seems to be working

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.