Open VPN and Express VPN Client on pfsense box
-
Good morning. First off, I just want to say I have learned so much messing with PfSense that it's unreal. However, I have set up OpenVPN which I had previously, and could use it just fine. However, I just connected ExpressVPN client on pfsense box and my out traffic is only set on specific vm's and it works well but when I connect to my OpenVPN it also connects me fine but I am unable to access local ip addresses. I believe this has something to do with both VPN being on the same box and a route getting lost somewhere? HAs anyone been able to connect ExpressVPN and split tunnel it on pfsense? What am I missing?
-
Split the problem in two ?
Start by disabling the OpenVPN pfSense client (the one that connects to Express). Now you have the same connection as everybody else : a WAN, and one or more LANs.
THE question is now : no issues ?!
If the pfSense OpenVPN server is set up 'correctly' you should be able to connect to it (from some random Internet IP address - so something from the outside - if not impassible, hijack the WiFi of the neighbors, and connect to your pfSense from there) and you should be able to connect/access also your LAN devices, or if you have : all your LANs.
THE question is now : no issues ?!Now, activate the new or second WAN connection aka ; fire up your Express OpenVPN client process on pfSense.
Make live easy on yourself, and disable your pfSense server for the moment.
Guess what is the question now ?Typically, when you have more then one (1) WAN connection, as an OpenVPN pfSense client process creates a second WAN, this doesn't have anything to do with incoming connections over your "ISP" WAN (the same connection that the OpenVPN client is using btw) : your pfSense server VPN.
The OpenVPN server : a way of getting in.
The OpenVPN client : a way of getting out. -
@Gertjan You're the man. I actually just resolved this. Splitting the problem helped!
-
@Gertjan Seemed to be an issue with the openvpn tunnel, I must have done something to it while adding express vpn. Recreating it helped.