Cannot connect to LAN from VPN

  • So I have setup OpenVPN on my PFSense server using the wizard and following the instructions. However, I can access any LAN computers. I have fought this for way to many hours now. I've read just about every related forum entry and I cannot understand why this is not working. Here are my details. Maybe someone can see something that I am missing.

    I am using PFSense as our gateway, DHCP server, Firewall and OpenVPN server.
    Tunnel Network:
    Local Network:
    I am using windows as my client OS and used the VPN client downloaded from PFSense.

    Like many most. I attach to the VPN just fine. I am assigned as my IP and my gateway is
    I can ping and open the web console for PFSense just fine through the VPN.
    I have the standard firewall rules (anything to anything) for the LAN and the OpenVPN

    I can ping IPs on my LAN using PFSense, but not through the VPN.

    Any help would be appreciated. I'll see if I can upload images.

  • I assume your LAN is And you have entered this in your OVPN server configuration in Local Networks field to get pushed the route at client?

    Another reason could be that the IP you want to access from client is part of a network range which is configured on one of its interfaces.

    With which IP can you reach your pfSense? The OVPN gateway, WAN or LAN IP?

  • So I can get into my PFSense using it's LAN IP which is and I can get in using

    Here is my computers route table. You can see that it is using as it's gateway which I assume is correct:

    Network Destination        Netmask          Gateway      Interface  Metric
          On-link    276
          On-link    276
          On-link    276
          On-link    306
          On-link    306        On-link    306
        On-link    261        On-link    261        On-link    261
        On-link    266        On-link    266        On-link    266
          On-link    306
          On-link    276
          On-link    261
          On-link    266        On-link    306        On-link    276        On-link    261        On-link    266

  • Here is the route table on the PFSense

  • Here are my openvpn settings

  • Here is the openvpn firewall rule

  • Here is the LAN rule

  • Post your server1.conf.

    Looking at what you've posted so far, it appears the tunnel is routing and allowing traffic as expected.  I'm betting your packets are making it to their destination, but getting blocked at the endpoint.  A couple things:

    • Verify the device you are trying to ping is using PFsense as the default gateway

    • Assuming you're trying to connect to a windows machine, remember the Windows Firewall blocks ICMP echo requests by default unless the traffic is sourced from the firewall's local subnet.  On Win 7/8 you have to either disable the windows firewall or add an explicit rule allowing ICMP echo from all IP's.  e.g. ->

      On Server 2008/2012, you can enable this inbound rule -> "File and Printer Sharing (Echo Request - ICMPv4-In)"

Log in to reply