OpenVPN route fail

  • I've had OpenVPN site-to-site using pki (4 sites: 1 server, 3 clients, fully routed) running rock solid for over year. Last week I had a curious glitch…
    Traffic stopped being routed to the subnet of one "arm", but it would route through to other other VPN sites.
    It looks like the "push route [subnet and submask at site of server]" custom option stopped working at only one site.
    This error has also been logged a couple times:
    ERROR: FreeBSD route add command failed: shell command exited with error status: 1
    Not sure if it has anything to do with this. The rest of the logging looks like normal stuff.

    I did get the routing back up by putting in a static route to the subnet through the OpenVPN gateway.
    Any ideas as to what would cause this? Just curious and hoping it will continue to work…

  • Rebel Alliance Developer Netgate

    It must not have liked something about the route at the time. Best way to proceed would be to look at the routing table when it was working (in the original config) compared to when it was broken.

  • I think the old routing table is gone. If I figure it out I'll post back, if I remember.
    Thanks for reply.

    btw, excellent book.

Log in to reply