Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense and vpn

    Scheduled Pinned Locked Moved OpenVPN
    5 Posts 2 Posters 874 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      robato
      last edited by robato

      Hi,
      I've setup pfsense to connect through OpenVPN and it works fine on my computer but not on devices connecting through wifi. My computer is connected with a cable to my netgate 3100.
      2020-06-06 22-16-43.png
      My computer connects through the second rule, called Enheter_till_VPN but devices connected through wifi connects through the first rule, Anti-Lockout Rule. How can I force all devices to connect through my VPN.

      1 Reply Last reply Reply Quote 0
      • V
        viragomann
        last edited by

        @robato said in Pfsense and vpn:

        but devices connected through wifi connects through the first rule, Anti-Lockout Rule.

        Devices do not connect through a rule, but a rule might match or not.
        For matching, the IP version, network protocol, source IP and port, destination IP and port are crucial.
        So the Anti-Lockout Rule can only match if a device tries to access the pfSense LAN address on port 80 or 443, but not if it tries to access any other address.

        If the rule doesn't match the next one is probed. If it matches it the rule is applied, if not it goes to the next and so on.
        Maybe your wifi devices do not match the "Enheter_till_VPN" alias, so the third rule will be applied.

        R 1 Reply Last reply Reply Quote 0
        • R
          robato @viragomann
          last edited by

          Thanks för your reply! It matches the first rule, the anti lock out rule so devices connected through wifi never matches Enheter_till_VPN. Can I prevent my phone to match the first rule or how do I continue?

          1 Reply Last reply Reply Quote 0
          • V
            viragomann
            last edited by

            @robato said in Pfsense and vpn:

            It matches the first rule, the anti lock out rule so devices connected through wifi never matches Enheter_till_VPN.

            How do you know that?

            Please, activate the logging in each rule and post a screenshot of the firewall log with the rule column displayed which shows an access from a Wifi device. Also tell your LAN network and what's behind the Enheter_till_VPN alias.

            1 Reply Last reply Reply Quote 0
            • R
              robato
              last edited by

              I was mistaken on the log, I assigned a static ip adress through DHCP server but I must have made a mistake. I have now set up the correct ip adress for my phone and it's now connecting through vpn. Thanks a lot for your help!

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.