Pfsense openvpn to different subnet

  • i have a 2wire att gw with static ips. Behind it i have an pfsense appliance.  I would like to vpn from the local att 2wire network 192.168.xx to the other network behind the pfsense appliance at 172.16.x.x.  If i try to do this  from the outside, it works fine

    say im at starbucks and i try to vpn to 172.16.x.x network, it connects, and authenticates.  If im local behind the 2wire but outside of the pfense box, i can connect but it never authenticates, just says

    Apr 17 19:18:38: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
    Apr 17 19:18:38: TLS Error: TLS handshake failed
    Apr 17 19:18:38: SIGUSR1[soft,tls-error] received, process restarting

    I know the 2wire is not blocking the access to the vpn port,  1195 ( on purpose),  So im thinking maybe its a firewall rule on pfsense?

