Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfSense 1 to pfSense 2 use internet from pfSense 2 via openVPN

    Scheduled Pinned Locked Moved NAT
    16 Posts 2 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mako @viragomann
      last edited by mako

      @viragomann

      thank you, no. i dont have a floating rule set.
      but maybe my nat in pfsense 1 is wrong?
      i have exact current the running configuration from my screenshots.

      have:

      1. assigned OPT4 (ovpnc2)
      2. have activated the OPT4 interface
      3. have set on LAN4 the FW rule with the ovpn gateway
      4. have checked the nat on pfsense2, but without a chance to get working.

      what i made wrong?
      can i delete all and do a freh config for this? where i can have the problems?
      maybe nat? have manual outbound creation in use.
      thank you!

      ::
      what i should check for logging?

      1 Reply Last reply Reply Quote 0
      • V
        viragomann
        last edited by

        If the computer which you try to go out is connected to LAN4 it could never go out to WAN on site1 as there is no rule allowing that. The only one firewall rule on LAN4 permits only traffic to the VPN gateway.

        Maybe you're using already opened connections. Try kill the states. Diagnostics > States > Reset States

        M 1 Reply Last reply Reply Quote 0
        • M
          mako @viragomann
          last edited by

          @viragomann

          dear! thank you, have now done that, but no better result.

          if i disable the one and only firewall rule on lan 4, no internet is working on my clients.
          but if i activate them, i get the wan ip from pfSense1 but i have selected the ovpn gateway in advanced settings tab.

          what do you mean where i should check as next?

          thank you!

          many greets

          1 Reply Last reply Reply Quote 0
          • V
            viragomann
            last edited by viragomann

            Please post Status > Gateways.
            Site1.

            M 1 Reply Last reply Reply Quote 0
            • M
              mako @viragomann
              last edited by

              @viragomann

              Thank you, o i think here i have a problem?

              0_1532009931807_1b22b6a8-3508-4cbc-8ee4-8568455069e0-grafik.png

              1 Reply Last reply Reply Quote 0
              • V
                viragomann
                last edited by

                So you vpn gateway is not online, man.
                Get your vpn up first.

                To avoid clients from going out WAN check the two options under "Gateway Monitoring" in System > Advanced > Miscellaneous

                M 1 Reply Last reply Reply Quote 0
                • M
                  mako @viragomann
                  last edited by mako

                  @viragomann

                  dear viragomann,

                  thankyou , the options are:
                  0_1532010334288_b0a805e4-8452-428b-8e2e-6d9a48716f74-grafik.png

                  but what i dont know, why gateway is not up? the connection is estalished, or?
                  where i can have here an error? must i select an other thing on pfsense2 to get the gateway online?
                  configs are the same from my last screenshots, maybe can u see an error?

                  it seems that the openvpn tunnel is online...
                  0_1532010558385_2d38d768-c6ce-4143-9b5f-66b6c8513a3c-grafik.png

                  thank you thank you thank you thank you!

                  1 Reply Last reply Reply Quote 0
                  • V
                    viragomann
                    last edited by

                    I don't know your vpn configs.
                    Check the vpn log for errors.

                    M 1 Reply Last reply Reply Quote 0
                    • M
                      mako @viragomann
                      last edited by

                      @viragomann

                      Oh man, ... thank you very much. have created a fresh instance (have first remove the old one).
                      now all is working so perfect.

                      THANK YOU so MUCH for you help!

                      Thanks!

                      have a nice day, many greets mako!

                      1 Reply Last reply Reply Quote 0
                      • V
                        viragomann
                        last edited by

                        Glad to here it's working now.

                        1 Reply Last reply Reply Quote 1
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.