Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Reaching Remote Subnet Through OVPN Client

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 2 Posters 266 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      Jake Biker
      last edited by

      Hi All,

      I am upgrading some hardware including changing over a PFSense box at a remote location.

      I have converted the config for the new hardware and the PFSense - Boots and runs and the VPN connects.

      However for some reason - I cannot reach any of the devices on the subnet that the OVPN Client Server VPN connects to.

      The worst of it - is the forum has helped me resolve this problem in the past - and I cannot for the life of me remember the solution.

      Could anyone point me in the right direction?

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        So the subnet is behind the server? And you are trying to access it from something behind the client end of the tunnel? From a client directly?

        Most likely suspect here is a missing route somewhere.

        J 1 Reply Last reply Reply Quote 0
        • J
          Jake Biker @stephenw10
          last edited by

          @stephenw10

          There is a Class C Subnet on that Remote network - lets call it 192.168.1.1
          The VPN Comes up from the network 10.16.0.100/16 - but unlike the original firewall setup you cannot reach 192.168.1.1 from 10.16.0.100/16 but you can on the old setup which is the same config ..

          I wondered if it was that trick were some of the items don't have gateways setup - and for the life of me I cannot remember how I fixed that - I think it was you Stephen who helped me! Do you remember :)?

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            If it was this thread then it looked like the devices in the remote subnet you were trying to reach were blocking traffic from outside the subnet. Adding the outbound NAT rule on LAN hides the source so they respond.

            J 1 Reply Last reply Reply Quote 0
            • J
              Jake Biker @stephenw10
              last edited by

              @stephenw10 arch --- Stephen - how did you find that thread?

              I was obviously not using the search function correctly -

              THANKS!

              Will be on this next week during the planned outage.

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                I looked at your best posts list and that's at the top. 😉

                J 1 Reply Last reply Reply Quote 0
                • J
                  Jake Biker @stephenw10
                  last edited by

                  @stephenw10 doh

                  Thanks again mate - try this asap.

                  1 Reply Last reply Reply Quote 1
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.