<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[OpenVPN Tab within the Firewall Rules Page]]></title><description><![CDATA[<p dir="auto">I use both Road Warrior and a Site2Site(shared key). When I first create the road warrior setup, an OpenVPN tab is created under the Firewall Rules page. I create the Site2Site setup and no new tab is created under the Firewall Rules page.</p>
<p dir="auto">I enable logging under the default allow all rule within the OpenVPN Rules tab. I noticed in the firewall log that this rule tab is used for both my Road Warrior and my Site2Site tunnels. How would I setup rules for each tunnel differently? Would I have to assign ovpns1 and ovpns2 to interfaces under the Interfaces page? And if I do that, would the OpenVPN Rules Tab then be used for both interfaces or would it be unusable?</p>
<p dir="auto">For the most part, the Road Warrior will be allowed all but I want to limit the Site2Site access.</p>
]]></description><link>https://forum.netgate.com/topic/29957/openvpn-tab-within-the-firewall-rules-page</link><generator>RSS for Node</generator><lastBuildDate>Sun, 14 Jun 2026 09:40:08 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/29957.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 24 Jan 2011 14:43:01 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to OpenVPN Tab within the Firewall Rules Page on Mon, 24 Jan 2011 23:21:27 GMT]]></title><description><![CDATA[<p dir="auto">I didn't think about…. That should work nicely.. Thanks for your suggestion :-)</p>
]]></description><link>https://forum.netgate.com/post/262390</link><guid isPermaLink="true">https://forum.netgate.com/post/262390</guid><dc:creator><![CDATA[Cino]]></dc:creator><pubDate>Mon, 24 Jan 2011 23:21:27 GMT</pubDate></item><item><title><![CDATA[Reply to OpenVPN Tab within the Firewall Rules Page on Mon, 24 Jan 2011 17:49:10 GMT]]></title><description><![CDATA[<p dir="auto">If you craft the firewall rules properly (specify the source subnet for each remote network), then you do not need multiple tabs or to assign interfaces.</p>
<p dir="auto">You can assign interfaces if you want, but it really isn't necessary if you setup the rules the right way, like so:</p>
<p dir="auto">pass * from roadwarrior_subnet to &lt;road warrior="" stuff=""&gt;pass * from site2site_subnet to&lt;/road&gt;</p>
]]></description><link>https://forum.netgate.com/post/262308</link><guid isPermaLink="true">https://forum.netgate.com/post/262308</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Mon, 24 Jan 2011 17:49:10 GMT</pubDate></item></channel></rss>