Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Groups for outgoing VPN

    Scheduled Pinned Locked Moved General pfSense Questions
    12 Posts 4 Posters 977 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      DenBeiren
      last edited by

      Hi,
      New here on the forum.
      Using PFsense for quite some years, but on a very basic level.

      I am struggling with an answer to the following question (if not in the correct category, i appologise)

      I have correctly configured an outgoing VPN connection to reroute outgoing traffic over a (payed) vpn server.
      All of the clients use VPN now.
      I now would like to choose what devices use the VPN, and what devices use the non-VPN route.
      Is this possible, and if so, is there a tutorial to find somewhere?

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @DenBeiren
        last edited by

        @DenBeiren
        Which type of VPN?

        JKnottJ 1 Reply Last reply Reply Quote 0
        • D
          DenBeiren
          last edited by DenBeiren

          I used the PFsense tutorial on the NordVpn website ,.. i can't give a direct link now but willing to search for it if needed...

          P2P SSL/TLS as far as i can remember

          Bob.DigB V 2 Replies Last reply Reply Quote 0
          • Bob.DigB
            Bob.Dig LAYER 8 @DenBeiren
            last edited by

            @DenBeiren it is called "Policy based Routing". You can read more about it here.

            D 1 Reply Last reply Reply Quote 0
            • V
              viragomann @DenBeiren
              last edited by

              @DenBeiren
              Which type of VPN?

              Bob.DigB 1 Reply Last reply Reply Quote 0
              • D
                DenBeiren @Bob.Dig
                last edited by

                @Bob-Dig i think i found how to configure it,.. but how can i configure for example a "group" of IP's so i only need to put 1 rule in the LAN part of the firewall rules?

                Or do i configure one rule for every client?

                Not a network expert,.. sorry,..

                Bob.DigB 1 Reply Last reply Reply Quote 0
                • Bob.DigB
                  Bob.Dig LAYER 8 @DenBeiren
                  last edited by

                  @DenBeiren You can use aliases for that.

                  D 1 Reply Last reply Reply Quote 1
                  • Bob.DigB
                    Bob.Dig LAYER 8 @viragomann
                    last edited by

                    @viragomann said in Groups for outgoing VPN:

                    @DenBeiren
                    Which type of VPN?

                    He mentioned NordVpn so it is a "privacy VPN".

                    V 1 Reply Last reply Reply Quote 0
                    • V
                      viragomann @Bob.Dig
                      last edited by

                      @Bob-Dig
                      NordVPN is a provider, not a type of VPN.
                      Maybe IPSec, OpenVPN, WG,...
                      Not all supports policy routing.

                      1 Reply Last reply Reply Quote 0
                      • JKnottJ
                        JKnott @viragomann
                        last edited by JKnott

                        @viragomann said in Groups for outgoing VPN:

                        Which type of VPN?

                        Should it make a difference? Once a VPN is connected, it's just another IP route, no different than any other point to point link.

                        PfSense running on Qotom mini PC
                        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                        UniFi AC-Lite access point

                        I haven't lost my mind. It's around here...somewhere...

                        1 Reply Last reply Reply Quote 0
                        • D
                          DenBeiren @Bob.Dig
                          last edited by

                          @Bob-Dig
                          I think i got it figured out and configured correctly...
                          How can i check this in an easy way? within PFsense?
                          Or any other solutions?

                          Bob.DigB 1 Reply Last reply Reply Quote 0
                          • Bob.DigB
                            Bob.Dig LAYER 8 @DenBeiren
                            last edited by

                            @DenBeiren Use a webservice like https://www.whatismyip.com/ on every host I guess.

                            1 Reply Last reply Reply Quote 1
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.