Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cannot create a Gateway that is a remote OpenVPN Gateway

    Scheduled Pinned Locked Moved Routing and Multi WAN
    6 Posts 3 Posters 759 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      JensM
      last edited by

      Hi All,

      I need to create a Gateway that represents the remote end of a site to site OpenVPN-Connection. The reason for this is that I have a static route pointing to a Etherconnect-Gateway that shall be the primary connection to the remote desitination. But in case this fails, I want to use the OpenVPN-connection defined on the pfSense Cluster. But I need to use an interface when creating a gateway, but cannot select the existing VPN-Interfaces. I tried a virtual Interface, but this cannot be used either.
      Does anybody know an elegant way to solve this?
      I tried to find a suitable answer in the forum, but it looks like this is a rather unusual setup.

      Many thanks in advance.

      Regards,

      Jens

      1 Reply Last reply Reply Quote 0
      • P
        phil.davis
        last edited by

        I am thinking you have gone to Interfaces->(assign), selected the OpenVPN instance in the Available Network Ports drop-down and pressed "+". That will give you an interface on the OpenVPN instance. Then you should be able to make a gateway on that interface.
        After that you can use the gateway in rules, static routes and so on to achieve whatever routing behavior is needed.

        As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
        If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

        1 Reply Last reply Reply Quote 0
        • J
          JensM
          last edited by

          Hi,

          thank you for this hint. I tried that and it really looked promising, but I end up with another error. I can create the interface, but adding the gateway fails with the attached error. I also tried to add the Interface without an IP, as the IP is configured in the OpenVPN definition, but this yields the same result.
          Still thanks a lot, I have not looked there to add an interface name. I think I need to have a closer look, I am sure there will be a solution.

          Kind regards,

          Jens

          ![Gateway Error.png](/public/imported_attachments/1/Gateway Error.png)
          ![Gateway Error.png_thumb](/public/imported_attachments/1/Gateway Error.png_thumb)
          Interface.png
          Interface.png_thumb

          1 Reply Last reply Reply Quote 0
          • P
            phil.davis
            last edited by

            I think you need to leave the Interface IPv4 and IPv6 both set to none, and OpenVPN looks after that underneath.

            As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
            If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              Yes, all of the instructions for assigning an interface to an OpenVPN instance just tell you to enable it and optionally name it and set nothing else then bounce the OpenVPN process.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • J
                JensM
                last edited by

                Hi all,

                thank you very much for the responses. Restarting the OpenVPN connection was the bit I was missing.

                Regards,

                Jens

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.