Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    split routing not working

    Scheduled Pinned Locked Moved Routing and Multi WAN
    3 Posts 2 Posters 488 Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Mr_JinXM Offline
      Mr_JinX
      last edited by Mr_JinX

      Hi,

      I have NordVPN setup as an OpenVPN client, connected just fine. however, i can't get a specific client to route over the gateway interface. I have redone my config in a lab and that works, it just doesn't on my prod setup its as if the client never hits the access rule to change the gateway even though the firewall logs says it does.

      pfsense.png
      Capture.PNG

      V 1 Reply Last reply Reply Quote 0
      • V Offline
        viragomann @Mr_JinX
        last edited by

        @Mr_JinX said in split routing not working:

        as if the client never hits the access rule to change the gateway even though the firewall logs says it does.

        No, the firewall log shows that your policy routing rule is bypassed.

        Do you have another VPN which is set the default gateway?

        Does it work if you uncheck "Don't pull routes"?

        Maybe it helps to set a check at System > Advanced > Firewall & NAT > Disable Negate rules.

        Mr_JinXM 1 Reply Last reply Reply Quote 0
        • Mr_JinXM Offline
          Mr_JinX @viragomann
          last edited by

          @viragomann

          Hi,

          I have another VPN however it does not pull a default route, I have also disabled the other VPN and still, traffic is not routed over the VPN.

          If i untick don't pull routes then i believe it pulls a default route and everything gets routed over to Nord as apposed to only selected hosts.

          If i tick the disable netgate rules, i can then see traffic hitting the rule which sets the gateway and i can see states that match in the states table however if i go to a few sites to display my IP I'm still being natted to my wan ip.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.