Internal network <- OVPN Server <- pfSense as client <- XP machine

  • Hello everybody,
    I am using pfSense with newest firmware as an OpenVPN client and want do access the internal network from an xp machine.

    Consider the following setup:
    Windows server with shares (IP:
    OpenVPN server (IP:, ->
    pfSense (WAN, GW
    pfSense (LAN
    pfSense (OpenVPN ->
    XP machine connected to pfSense LAN

    With the OpenVPN application on the xp machine, it is no problem to connect to the server and reach the internal windows server ( where the application assigns to the virtual interface. Ping to is possible.

    If I use the pfSense as client, it connects to the server and everything seems to be ok. The pfSense can reach the windows server via ping.

    If I now want to reach the windows server shares from an attached client (attached on the LAN port with IP this is not possible. I can not even ping the windows server but the VPN server is reachable via ssh and ping.
    The VPN server can reach the attached client (attached on the LAN port of the pfSense) via ping without problems.
    This means one way works but the other way does not work:  -> OK ->  OK ->  FAILED    ->  OK

    The output of a tracert command from the XP machine is:
    tracert -> and then further hops fail with *

    All firewall settings are set to let the traffic through.

    Any suggestions what the problem is? Is this a routing problem?

    I am looking forward to hear from you ;)

    Best regards,


  • solved, it was a routing problem on the windos server
    just added a route to the network and now it works fine

Log in to reply