Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    When is the OpenVPN tab firewall rules effective?

    Firewalling
    2
    3
    1082
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ?
      Guest last edited by

      Hi there!

      I haven't been able to figure out what conditions need to be met for the firewall rules specified at the OpenVPN tab to be effective.
      I thought they should effect traffic going over the OpenVPN client connection that I've set up, but no matter what kind of rules I specify, they don't seem to have any effect what so ever. Maybe these rules are just evaluated after all other rules specified on other tabs. That must be it, right?

      Just curious, it would be good to know.  ;D

      1 Reply Last reply Reply Quote 0
      • jimp
        jimp Rebel Alliance Developer Netgate last edited by

        Rules on the OpenVPN tab are evaluated on the inbound path, like any other rules. So they apply to traffic coming from the VPN clients into your network.

        If you have your OpenVPN interfaces assigned, the rules on the OpenVPN tab still apply, but they are evaluated before the rules on the assigned interfaces tab.

        You can also make floating rules that apply in either direction to the vpn traffic, and those are evaluated before any other rules.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • ?
          Guest last edited by

          Thanks a lot jimp for the explanation. I see now why the rules that I specify has no effect. It's because I haven't configured any OpenVPN server on the pfSense machine, only a client.  ;D

          1 Reply Last reply Reply Quote 0
          • First post
            Last post