<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Outgoing NAT on OpenVPN interface]]></title><description><![CDATA[<p dir="auto">Hello,</p>
<p dir="auto">I need the followoing setup to work:<br />
                          _________          __________                                |<br />
openvpn–---------|pf sense 1|------| pfsense 2 |-----&gt;openvpn client --|AliveVPN or alike<br />
tunnel                  -----------          -----------    (Default GW, Nated)  |<br />
                                  |          LAN       <br />
                                  |<br />
                          port forward<br />
                              tcp 22</p>
<p dir="auto">General idea: users connect with openvpn and browses internet (not proxy) from ip of any privacy service compatible and have 1 tcp port routed/nated to another server straight from pfsense 1 box.</p>
<p dir="auto">Question: is this somehow possible? Clients come from openvpn tunnel to pfsense 1, port 22 forwarded from pfsense 1 to external server and browsing from AliveVPN's ip addresses ?</p>
<p dir="auto">All works except for the most interesting part, vpn connection to ALiveVPN, I mean I can ping through it. But, clients connecting to pfsense 1 ain't see internet (they do, if I make outgoing nat on wan interface of pfsense 2). Outgoing nat on openvpn inteface of pfsense 2 (I created and enabled interface for this openvpn connection) - doesn't work.</p>
<p dir="auto">I understand this is kind of crazy setup, but live is live))</p>
<p dir="auto">Thanks in advance.</p>
]]></description><link>https://forum.netgate.com/topic/32174/outgoing-nat-on-openvpn-interface</link><generator>RSS for Node</generator><lastBuildDate>Thu, 14 May 2026 04:13:53 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/32174.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 30 Mar 2011 00:52:53 GMT</pubDate><ttl>60</ttl></channel></rss>