How to block traffic from an OpenVPN connection to LAN subnet



  • Hi,
    I have a pfsense box with 3 network interfaces ( WAN, LAN and OPT1).
    I created an OpenVPN server attached to 1194  UDP port.
    I Can connect to the VPN, and when the tunnel is established i can reach every host behind LAN and OPT1 interfaces.
    I need allow traffic from VPN ( 1194 port ) only to OPT1 and block traffic to LAN but I cannot figure out how yet.
    The tunnel trough 1194 port has an IP from the 172.16.2.0/24 range.
    I tried a firewall rule on OPT1 blocking traffic from 172.162.2.0/24 to LAN but i have no results.
    I Think i am missing something, but cannot figure out what.
    Can you help me ?
    Thanks in advance.


  • Banned

    The rules go on the OpenVPN tab. Not on LAN/OPT.



  • @doktornotor:

    The rules go on the OpenVPN tab. Not on LAN/OPT.

    Succulent comment…........just defined an answer to a question I had been contemplating about my extra interfaces and a build out on my home network....................... 8)


Log in to reply