Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Client Specific Overrides - not getting routes

    Scheduled Pinned Locked Moved OpenVPN
    4 Posts 2 Posters 477 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      dfairley
      last edited by

      Hi,

      I have an OpenVPN server with several IPv4 Local networks defined. When connecting to the VPN, these local networks correctly show up in my client's route list.

      I've now created a Client Specific Override in order to reserve an IP address, with just my CN and an ifconfig-push in Advanced. When connecting, I correctly get the specified IP address, but the extra local networks specified in the OpenVPN server config aren't coming through.

      I thought maybe I need to specify the Local networks in the Client Specific Override as well, but it says NOTE: Networks do not need to be specified here if they have already been defined on the main server configuration. I tried anyway, and I still didn't get the routes. When I disable the override, I get the routes just fine. If anyone has any ideas on where I've gone wrong, please let me know.

      Cheers

      1 Reply Last reply Reply Quote 0
      • RicoR
        Rico LAYER 8 Rebel Alliance
        last edited by

        Why did you use ifconfig-push in Advanced?
        The proper way is to use IPv4 Tunnel Network in the CSO for the fixed client IP.

        -Rico

        D 1 Reply Last reply Reply Quote 1
        • D
          dfairley @Rico
          last edited by

          I did it that way because it was in the two top search results for 'pfsense openvpn reserve ip'. Whoops. I tried your way and I'm getting the proper routes now. Thanks!

          1 Reply Last reply Reply Quote 0
          • RicoR
            Rico LAYER 8 Rebel Alliance
            last edited by

            Glad you have it working now. 🙂

            -Rico

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.