Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OpenVPN over CARP IP + push route , but the routed VPN packets are sent with Master/Slave Wan IP

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 2 Posters 212 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mdbinfodati
      last edited by

      I have the following setup:
      2 pfsense (v2.7.2) MASTER/SLAVE configured with High Availability

      CARP IP: x.x.x.242
      MASTER WAN: x.x.x.243
      SLAVE WAN: x.x.x.244
      pfsense LAN: 10.0.0.0/24
      pfsense OpenVPN: 172.30.0.0/24
      

      There is an Open VPN on the CARP IP that is working correctly; we added a

      push "route 178.32.140.171 255.255.255.255"
      

      option to the OpenVPN configuration and on the client side the route 178.32.140.171 255.255.255.255 is correctly assigned to 172.30.0.1
      BUT the packets sent from the client to 178.32.140.171 appear coming from the MASTER WAN IP (x.x.x.243) not from the CARP WAN IP (x.x.x.242)

      The outbound Nat configuration is:
      route.png

      Is it a configuration issue? How can I fix it?

      Thank you in advance.

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @mdbinfodati
        last edited by

        @mdbinfodati said in OpenVPN over CARP IP + push route , but the routed VPN packets are sent with Master/Slave Wan IP:

        he outbound Nat configuration is:
        route.png

        Is it a configuration issue? How can I fix it?

        You have to change the interface toWAN.

        M 1 Reply Last reply Reply Quote 0
        • M
          mdbinfodati @viragomann
          last edited by

          @viragomann Thanks!!! It works!

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.