Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OPENVPN DONT SEE LAN

    Scheduled Pinned Locked Moved OpenVPN
    9 Posts 6 Posters 1.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      gustavo.fernandes
      last edited by

      Please I need help…

      Hello Guys, sorry my english.

      My scenario is this:

      OpenVPN: Range 10.0.8.0/24

      Lan: 192.168.0.0/24

      I can connect to OpenVPN, however I can not access any other server on my LAN Network. Ja created a rule "any to any" but without success. Should I create a gateway for this connection? some tutorial ?

      Thank you very much.

      1 Reply Last reply Reply Quote 0
      • J
        Jamerson
        last edited by

        you need to create the rules on the openvpn as well
        go to firewall / rules / openvpn and create the rules you want " like any /any "

        1 Reply Last reply Reply Quote 0
        • G
          gustavo.fernandes
          last edited by

          The rules were created in openvpn but not working . " Any to Any"

          1 Reply Last reply Reply Quote 0
          • V
            viragomann
            last edited by

            Is this a site-to-site or an access server?
            I assume an access server. So the interface or the gateway isn't needed until you are running multiple OpenVPN instances (client or server).

            These few points have to be given for the connection to function:

            • pfSense has to be the default gateway in the LAN you want to access. Otherwise you have to set routes at the LAN hosts or do NAT at pfSense.

            • The traffic has to be permitted by firewall rules. As you said above, that's given.

            • The client has to have set a route to the LAN over the VPN. That is done by entering your LAN network in "Locale Network(s)" box in the server config. But ensure that the route is set correctly at the client. Check this with route or route print command.

            • The LAN subnet must not overlap the clients local network.

            Check these points, please.

            1 Reply Last reply Reply Quote 0
            • M
              marvosa
              last edited by

              Post your server1.conf.

              1 Reply Last reply Reply Quote 0
              • X
                XmickS
                last edited by

                See the description of the 'server additional config' text box. Add the push route command: push "route 10.0.8.0 255.255.255.0"

                1 Reply Last reply Reply Quote 0
                • DerelictD
                  Derelict LAYER 8 Netgate
                  last edited by

                  Can you ping the LAN IP address? Presumably 192.168.0.1? If so check the local firewalls of the servers you're trying to connect to.

                  Are you connecting from a network that is also 192.168.0.0/24? That would be a problem.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • J
                    Jamerson
                    last edited by

                    @Derelict:

                    Can you ping the LAN IP address? Presumably 192.168.0.1? If so check the local firewalls of the servers you're trying to connect to.

                    Are you connecting from a network that is also 192.168.0.0/24? That would be a problem.

                    in your openvpn server configuration page, you either have to rout the traffic through the gateway or assign your lan network there

                    192.168.11.0/24
                    https://pfsenseIP/vpn_openvpn_server.php?act=edit&id=0

                    1 Reply Last reply Reply Quote 0
                    • M
                      marvosa
                      last edited by

                      The OP hasn't posted his config and responded in 5 days.  I guess we'll assume he figured it out.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.