Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Seperating VoIP traffic not to go over OpenVPN

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 2 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F Offline
      franky29
      last edited by

      Hi everyone. Here is my issue that some of you probably will think easy to solve. A little background info on myself first.
      I'm a big VoIP guy but I just started to table into the routing and FW portion so I'm a little bit green on that side.

      That said, I'm really loving this pfSense build I did on an old Optiplex and added the Snort package and created an OpenVPN to secure my network traffic.

      The issue I'm having is that all traffic coming in/out is encrypted and I'm hosting my own VoIP PBX. Most of the time it works but sometimes I'm having issues with the VoIP connecting to my SIP Trunk.

      How would I separate the traffic so that VoIP goes out the WAN and not out the PIA interface?

      I basically followed the instructions on how to setup PIA on PfSense. So mostly everything is basically the same as the instructions
      https://forum.pfsense.org/index.php?topic=76015.0

      Any help or insight on how to do this would be greatly appreciated.

      1 Reply Last reply Reply Quote 0
      • M Offline
        mauroman33
        last edited by

        I think you should go to Firewall>Aliases>IP and create an alias with all the IP addresses that must not use the VPN tunnel.
        Then go to Firewall>Rules>LAN and create your own pass rule using the previous alias as Source and setting up WANGW as the gateway in the Advanced Options.

        1 Reply Last reply Reply Quote 0
        • F Offline
          franky29
          last edited by

          Thanks, I'll try that and see if it works.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.