<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[VPN connects but I can&#x27;t access pfSense.]]></title><description><![CDATA[<p dir="auto">Hi<br />
I've setup a VPN and it connects fine. Access is restricted to OPT2.<br />
When connected I can reach my NAS on this interface fine, but I can't access pfSense itself.</p>
<p dir="auto">Should I be able to do this or is there something I should set to allow this ?</p>
<p dir="auto">Thanks</p>
]]></description><link>https://forum.netgate.com/topic/140445/vpn-connects-but-i-can-t-access-pfsense</link><generator>RSS for Node</generator><lastBuildDate>Sun, 19 Apr 2026 20:32:05 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/140445.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 09 Feb 2019 18:55:34 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sun, 10 Feb 2019 16:00:25 GMT]]></title><description><![CDATA[<p dir="auto">Thanks</p>
<p dir="auto">As far as I can tell the WebConfigurator CA is added to me device.<br />
Not sure why this works on the LAN and Wifi, but not VPN.</p>
<p dir="auto">I'd appreciate any help with this. Thanks</p>
]]></description><link>https://forum.netgate.com/post/823187</link><guid isPermaLink="true">https://forum.netgate.com/post/823187</guid><dc:creator><![CDATA[zMaliz]]></dc:creator><pubDate>Sun, 10 Feb 2019 16:00:25 GMT</pubDate></item><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sun, 10 Feb 2019 15:45:57 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/zmaliz">@<bdi>zmaliz</bdi></a> said in <a href="/post/823183">VPN connects but I can't access pfSense.</a>:</p>
<blockquote>
<p dir="auto">What am I doing wrong ! ?</p>
</blockquote>
<p dir="auto">You have no clue how certificates work, this has nothing to do with the VPN.</p>
<blockquote>
<p dir="auto">NET::ERR_CERT_AUTHORITY_INVALID</p>
</blockquote>
<p dir="auto">Google it and google how to to add your CA to your device/browser or how to allow self-signed certs.</p>
]]></description><link>https://forum.netgate.com/post/823184</link><guid isPermaLink="true">https://forum.netgate.com/post/823184</guid><dc:creator><![CDATA[Grimson]]></dc:creator><pubDate>Sun, 10 Feb 2019 15:45:57 GMT</pubDate></item><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sun, 10 Feb 2019 15:33:02 GMT]]></title><description><![CDATA[<p dir="auto">Hi</p>
<p dir="auto">The IP Address of the OPT2 interface is 172.x.x.1, when I connect to the VPN I get 172.x.x.100</p>
<p dir="auto">If I try to browse to pfSense I get:</p>
<p dir="auto"><img src="/assets/uploads/files/1549812563883-screenshot_20190210-152031.jpg" alt="0_1549812564368_Screenshot_20190210-152031.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">If I click Advanced I get:</p>
<p dir="auto"><img src="/assets/uploads/files/1549812587918-screenshot_20190210-152053.jpg" alt="0_1549812588565_Screenshot_20190210-152053.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">If I click on Proceed to 172.x.x.1 I get taken back to the first page (image1)<br />
Clicking on the error shown I get:</p>
<p dir="auto"><img src="/assets/uploads/files/1549812647472-screenshot_20190210-152115.jpg" alt="0_1549812648104_Screenshot_20190210-152115.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">This is the certificate of the pfSense box..  I can connect fine via the LAN interface.<br />
What am I doing wrong ! ?</p>
<p dir="auto">Thanks</p>
]]></description><link>https://forum.netgate.com/post/823183</link><guid isPermaLink="true">https://forum.netgate.com/post/823183</guid><dc:creator><![CDATA[zMaliz]]></dc:creator><pubDate>Sun, 10 Feb 2019 15:33:02 GMT</pubDate></item><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sun, 10 Feb 2019 14:41:10 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/zmaliz">@<bdi>zmaliz</bdi></a><br />
The last rule shows that you give all access to the OPT2 network. What is the IP address of the OPT2 interface PF?<br />
Try to access WebGui PF through this address (IP address OPT2 interface PF)</p>
]]></description><link>https://forum.netgate.com/post/823177</link><guid isPermaLink="true">https://forum.netgate.com/post/823177</guid><dc:creator><![CDATA[Konstanti]]></dc:creator><pubDate>Sun, 10 Feb 2019 14:41:10 GMT</pubDate></item><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sun, 10 Feb 2019 13:48:31 GMT]]></title><description><![CDATA[<p dir="auto">Hi</p>
<p dir="auto">This is the Phase 2 settings.</p>
<p dir="auto"><img src="/assets/uploads/files/1549806325966-phase2-resized.jpg" alt="0_1549806326516_Phase2.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">and these are the rules for IPSEC.<br />
<img src="/assets/uploads/files/1549806363042-ipsec-resized.jpg" alt="0_1549806364030_IPSEC.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">I have two IPSEC VPNS configured.<br />
One is a site to site VPN and I restrict access from 192.168.92.0/24 to specific devices..  that seems to work fine.</p>
<p dir="auto">The other is a Dialin IPSEC VPN which has access to the NAS on OPT2, this is what I want to dial into and have access to the NAS &amp; pfSense.</p>
<p dir="auto">Thanks</p>
]]></description><link>https://forum.netgate.com/post/823169</link><guid isPermaLink="true">https://forum.netgate.com/post/823169</guid><dc:creator><![CDATA[zMaliz]]></dc:creator><pubDate>Sun, 10 Feb 2019 13:48:31 GMT</pubDate></item><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sun, 10 Feb 2019 10:53:23 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/tomt">@<bdi>tomt</bdi></a></p>
<p dir="auto">Hey<br />
Show rules <strong>/Firewall/Rules/IPsec</strong><br />
and <strong>phase2 IPsec</strong> settings</p>
]]></description><link>https://forum.netgate.com/post/823153</link><guid isPermaLink="true">https://forum.netgate.com/post/823153</guid><dc:creator><![CDATA[Konstanti]]></dc:creator><pubDate>Sun, 10 Feb 2019 10:53:23 GMT</pubDate></item><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sat, 09 Feb 2019 21:02:42 GMT]]></title><description><![CDATA[<p dir="auto">Hi<br />
I'm connecting via the WAN using an IPSEC VPN which routes to an interface named OPT2</p>
<p dir="auto">Under rules / OPT2 I have 3 rules:</p>
<ol>
<li>Block anything from OPT2 to WiFi</li>
<li>Block anything from OPT2 to LAN</li>
<li>Allow from OPT2 to IP address of NAS.</li>
</ol>
<p dir="auto">This seems to work and when connected via VPN we can only connect to the NAS.<br />
I added another rules the same as 3 to allow access to the IP address assigned to OPT2 interface thinking that would allow access to pfSense.</p>
<p dir="auto">When I tried to connect I got errors stating the connection wasn't private and was rejected.</p>
<p dir="auto">Any help is appreciated.<br />
Thanks</p>
]]></description><link>https://forum.netgate.com/post/823103</link><guid isPermaLink="true">https://forum.netgate.com/post/823103</guid><dc:creator><![CDATA[TomT]]></dc:creator><pubDate>Sat, 09 Feb 2019 21:02:42 GMT</pubDate></item><item><title><![CDATA[Reply to VPN connects but I can&#x27;t access pfSense. on Sat, 09 Feb 2019 18:57:41 GMT]]></title><description><![CDATA[<p dir="auto">Assuming your trying to connect from outside (though the WAN over the VPN) and not from a LAN on the same box??</p>
<p dir="auto">What do your VPN firewall rules look like?</p>
]]></description><link>https://forum.netgate.com/post/823086</link><guid isPermaLink="true">https://forum.netgate.com/post/823086</guid><dc:creator><![CDATA[chpalmer]]></dc:creator><pubDate>Sat, 09 Feb 2019 18:57:41 GMT</pubDate></item></channel></rss>