Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OpenVPN client for specific devices on the LAN only?

    Scheduled Pinned Locked Moved OpenVPN
    5 Posts 2 Posters 525 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      PatPend
      last edited by

      I'm setting up a pfsense OpenVPN client as a site to site connection from my home LAN to a remote lan for only certain devices, namely VOIP phones and a mail server (by default all traffic gets routed through the OpenVPN client - I only need to route certain devices through VPN).

      One of the main reasons for doing this is my home ISP has a dynamic address and blocks outgoing port 25 while the remote LAN has a static IP and allows SMTP traffic. I would also like to set up QOS prioritize VOIP traffic within the OpenVPN link.

      How can I associate the OpenVPN client to a separate gateway IP and/or separate VLAN in pfsense to make this happen?

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott @PatPend
        last edited by

        @PatPend

        You should be able to create a rule & route to send the SMTP traffic out the VPN. However, my question is why are you using port 25? There are better ports that the ISPs allow. For example, I use port 587 for STARTTLS.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        P 1 Reply Last reply Reply Quote 0
        • P
          PatPend @JKnott
          last edited by

          @JKnott My understanding is not all mail hosts accept port 587 connections.

          JKnottJ 1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott @PatPend
            last edited by

            @PatPend

            Give it a try and see what happens. As I said, many ISPs block 25 but not the other ports.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • P
              PatPend
              last edited by

              Thanks. Still hoping for any guidance on the original question.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.