  • Hi,
    i have a problem with routing on OpenVPN on pfSense. I try reading everything I found since 2 days, but did not get the problem.
    I have 2 pfSense as OpenVPN. One as Server one as Client. i want to connect the 2 networks behind them together.

    Setup is like this: -VPNServer------vpn tunnel ( client-------

    Tunnel is up and I can Ping the tunnel IP from each end.

    server conf has:
    push "route";

    clientspecific settings on server is:
    iroute "";

    -netstat -nr on vpnserer

    Destination        Gateway            Flags     Netif Expire
    default       UGS         em0      UGS      ovpns1          link#3             UH          lo0      UGS      ovpns1      link#6             UHS         lo0      link#6             UH       ovpns1  link#1             U           em0     link#1             UHS         lo0

    netstat -nr on vpnclient

    Destination        Gateway            Flags     Netif Expire
    default        UGS         hn1      UGS      ovpnc1       link#5             U           hn0        link#5             UHS         lo0          link#2             UH          lo0

    If I Ping from a client ( to, I receive in the Server Log:

    MULTI: bad source address from client [], packet dropped

    It looks like i am missing an routing option on the server side. I do not understand why the server is dropping that packet. It schould be forwarded to the default gateway of the VPN server (
    Any Ideas?

  • I found the problem by myself.
    looks like the iroute in "Client Specific Overrides" needs to be entered without ""
    even if the example below the text box states:

    Enter any additional options to add for this client specific override, separated by a semicolon. 
    EXAMPLE: push "route";

  • There's no need to write out that commands into the advanced options box. You better use the "Remote Network/s" box for that. Just type in the networks which should be routed to the remote site.

