split routing not working



  • Hi,

    I have NordVPN setup as an OpenVPN client, connected just fine. however, i can't get a specific client to route over the gateway interface. I have redone my config in a lab and that works, it just doesn't on my prod setup its as if the client never hits the access rule to change the gateway even though the firewall logs says it does.

    pfsense.png
    Capture.PNG



  • @Mr_JinX said in split routing not working:

    as if the client never hits the access rule to change the gateway even though the firewall logs says it does.

    No, the firewall log shows that your policy routing rule is bypassed.

    Do you have another VPN which is set the default gateway?

    Does it work if you uncheck "Don't pull routes"?

    Maybe it helps to set a check at System > Advanced > Firewall & NAT > Disable Negate rules.



  • @viragomann

    Hi,

    I have another VPN however it does not pull a default route, I have also disabled the other VPN and still, traffic is not routed over the VPN.

    If i untick don't pull routes then i believe it pulls a default route and everything gets routed over to Nord as apposed to only selected hosts.

    If i tick the disable netgate rules, i can then see traffic hitting the rule which sets the gateway and i can see states that match in the states table however if i go to a few sites to display my IP I'm still being natted to my wan ip.


Log in to reply