Update 2.1.5 - "Force all client generated traffic through the tunnel" now fails



  • Just updated to 2.1.5, and besides that changed nothing else, and now the forced traffic through OpenVPN tunnel no longer works.  Also, I now get a continuous stream of blocks in the Firewall Log that states "@3 scrub on dc1 all fragment reassemble" and "@3 block drop in log inet all label "Default deny rule IPv4"" that never happened before the update.

    Anyone see this?  Is this part of the security update or a new bug?  Really would like to go back to the original functionality if someone could tell me how…


  • Rebel Alliance Developer Netgate

    It sounds like traffic is getting blocked by the default deny rule which means it is not matching any of your pass rules. Without more detail it's tough to say exactly what rules to add, but try making sure your OpenVPN tab rule is passing traffic in for any protocol and with a destination of 'any'. If that doesn't help, you'll have to post screenshots of the firewall log entries and your firewall rules.


Log in to reply