<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Routing to several OPT WAN OpenVPN tunnels]]></title><description><![CDATA[<p dir="auto">Am trying to get an OpenVPN OPT WAN setup to work using policy routing:<br />
http://forum.pfsense.org/index.php/topic,22893.0.html</p>
<p dir="auto">Regarding the routing: I am assuming that the reason for the 'anything goes into VPN' - in the routing table - are the below entries:</p>
<p dir="auto">0.0.0.0/1<br />
128.0.0.0/1</p>
<p dir="auto">Both of those have VPN gw and Netif as the tun interface</p>
<p dir="auto">Questions:</p>
<p dir="auto">. Is it correct that the above entries by OpenVPN in routing table overrides <em><strong>anything</strong></em> I try to do with FW rules and other gateways?<br />
Remember that I specifically tried to direct traffic using FW rules and LoadBalance pool when having those entries therein - didn't work</p>
<p dir="auto">. How can I most easily remove those entries - and also: is that the way to do it!? - to be able to direct traffic to gw/LoadBalance pool of my chosing?<br />
If I have say 3 VPN tunnels the same way (assigned to interfaces) I cannot have any of those set that 'route-all' settings, I have to make sure I can policy route to any of them. And also, if server(s) are pushing those route entries I have to be able to override them locally in some robust fashion.</p>
<p dir="auto">AFAICT those entries are not there when no tunnel is up so it's OpenVPN that puts them in. I'm also assuming provider won't edit the settings for my specific tunnel(s).</p>
<p dir="auto">Should I have some cron running removing any 128.0.0.0/1 or 0.0.0.0/1 present using some 'reoute del' command or is it possible run some script just after every tunnel is established to clean up?</p>
<p dir="auto"><em><strong>Some other way to do this?</strong></em></p>
<p dir="auto">TIA,</p>
]]></description><link>https://forum.netgate.com/topic/21496/routing-to-several-opt-wan-openvpn-tunnels</link><generator>RSS for Node</generator><lastBuildDate>Fri, 10 Apr 2026 17:35:14 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/21496.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 15 Feb 2010 10:43:01 GMT</pubDate><ttl>60</ttl></channel></rss>