Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Site to Site OpenVPN Not working for client Router LAN

    Scheduled Pinned Locked Moved OpenVPN
    1 Posts 1 Posters 115 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      netgramp390
      last edited by netgramp390

      network.png

      Hello,

      I have a setup where an office has a pfSense SG1100 with OpenVPN server. This has been working well for iOS and Windows, so they're able to connect and talk to the internal LAN. Internal LAN address is 192.168.22.0/24

      I am now trying to setup the branch SG1100 so that any device connected to the LAN of that unit will be able to talk to the internal office LAN. So called Site-to-site configuration

      Now, I was able to successfully get the branch SG1100 to connect to the Office SG1100 over OpenVPN by using the client export and client import features. It successfully connects.

      However, devices on the LAN of the branch SG1100 are unable to ping the internal LAN (like machines that have the OpenVPN client can).

      When I use the SG1100 pfSense ping utility to ping, it successfully pings 192.168.22.28 for example when I am on the "automatically elected" source address.
      When I try to ping using LAN as source address, it fails, matching the devices I'm connecting to the branch office

      OpenVPN Client Configuration:
      IPv4 Tunnel Network: blank
      IPv4 Remote Network: I put the internal network
      of the office here 192.168.22.0/24

      I added a firewall rule in the OpenVPN tab to pass all on OpenVPN Interface for all protocols with any source and destination.

      Am I missing a firewall rule? A routing rule?

      Thank you

      openvpn.png

      firewall_openvpn.png

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.