Cant ping lan from Vpn client but other way around possible

  • Hi

    I setup vpn server successfully.
    My vpn server
    My local lan

    From vpn client, I can ping and I can access internet without problem. Client's ip is host's ip so everything seems correct. Lan clients can ping vpn clients but vpn clients cannot ping lan clients.
    I also added
    push "route"
    line to advanced section of vpn server. I added firewall rules both lan and openvpn section which should forward things but all failed please help me

  • Need more info.

    Post your server.conf.
    Post your firewall rules.

  • ok

    I found openvpn conf file under /var/etc/openvpn/server1.conf im posting it

    dev ovpns1
    dev-type tun
    dev-node /dev/tun1
    writepid /var/run/
    #user nobody
    #group nobody
    script-security 3
    keepalive 10 60
    proto udp
    cipher AES-128-CBC
    up /usr/local/sbin/ovpn-linkup
    down /usr/local/sbin/ovpn-linkdown
    client-config-dir /var/etc/openvpn-csc
    auth-user-pass-verify /var/etc/openvpn/server1.php via-env
    tls-verify /var/etc/openvpn/server1.tls-verify.php
    lport 1194
    management /var/etc/openvpn/server1.sock unix
    max-clients 10
    push "route"
    push "dhcp-option DNS"
    push "dhcp-option DNS"
    push "redirect-gateway def1"
    ca /var/etc/openvpn/
    cert /var/etc/openvpn/server1.cert
    key /var/etc/openvpn/server1.key
    dh /etc/dh-parameters.1024
    tls-auth /var/etc/openvpn/server1.tls-auth 0
    push "route"

    push "route"

    Im also postin firewall rules

    I hope these help

  • I installed pfsense 2.1beta using snaphots. I configured it in "tap" mode. After dealing with windows firewall everything seems to be ok now.
    Except, when i try to connect to vpn server from local network, it connects but nothing works. It's not a big issue since nobody needs to use VPN in local network but it was working in v2.0.2 though. I noticed "Backend for authentication" line is missing in openvpn/server page. I thought this is issue or maybe tap mode is causing it. It would be better if i could test vpn from local network though.

Log in to reply