Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Openvpn users to access second site LAN

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 2 Posters 2.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P Offline
      pandoy
      last edited by

      Hi,

      Below is my current setup:

      Site A                                                              Site B

      LAN A–-pfsense1.2.3(ipsec tunnel)--- internet ---(ipsec tunnel)pfsense 1.2.3---LAN B
            (openvpn server)
              |
              |
                  internet
              |
                      |
                    (openvpn client)
                    User

      LAN A and LAN B can access each other, when User connects to Site A using openvpn, User can access LAN A but not LAN B. I enable the push route (for LAN B Network) in openvpn server settings, please advise what are other settings I may need to configure for User (connected via OpenVPN) can access LAN B.

      Thank you.
      -Pandoy

      1 Reply Last reply Reply Quote 0
      • N Offline
        neo.matrix_23
        last edited by

        Hi,

        I have been having the same issue but I think I have the solution, at least it works for me.
        Consider these 2 LANs and VPN connects them via IPSEC, just as your case
        Site A - 192.168.0.0/24
        Site B - 192.168.10.0/24

        If Site A pfSense has OpenVPN server set up with IP address pool 192.168.1.0/24 and you want OpenVPN clients to access to Site B, you need to let IPSEC awares this address pool. To do this, simply edit the IPSEC setting local or remote subnet as 192.168.0.0/23. This means you include the range of 192.168.0.0 - 192.168.1.255. Remember you need to change that on both Sites and also add the address pool to Site B's IPSEC firewall rules. Now any OpenVPN client on Site A should be able to access Site B. Try to do a ping. Hope it helps  :)

        1 Reply Last reply Reply Quote 0
        • P Offline
          pandoy
          last edited by

          Thanks neo.matrix_23, solution works in my end too. Best regards.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.