    I have successfully set up OpenVPN on pfSense to the local LAN (example /24 is the pushed subnet to be routed via the tunnel). Is there a way to push a different subnet to a different user? From what I can read in the forums this usually requires setting up another openVPN server on the pfsense box, or using overrides to implement firewall ACLs.

    I come from a Cisco background and this was easily achievable via a custom VPN ACL and filter for the second user.

    My requirement is that user B  does not receive the route to subnet A but only subnet B (example, is the best practice for implementing this running a separate instance of openvpn server? if not can you please advise accordingly.

    Kindly click the Client Specific Overrides tab…

