Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Inter-client communication Setting

    Scheduled Pinned Locked Moved OpenVPN
    8 Posts 6 Posters 4.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      NOYB
      last edited by

      Inter-client communication - Allow communication between clients connected to this server

      That option is NOT selected but VPN clients are able to ping each other.  According to the description that seems to be not working correctly.  Or am I missing something?

      1 Reply Last reply Reply Quote 0
      • N
        NOYB
        last edited by

        Bump

        Can anyone confirm either in the affirmative or negative that the Inter-client communication option works correctly (not enabled prevents VPN clients from communicating / pinging each other)?

        1 Reply Last reply Reply Quote 0
        • D
          dohko_44
          last edited by

          I have the same question, the setting is unchecked but clients can ping, RDP is going through too.

          1 Reply Last reply Reply Quote 0
          • F
            fhaut
            last edited by

            bump

            I'm using version "2.3.4-RELEASE-p1 (amd64)  built on Fri Jul 14 14:52:43 CDT 2017  FreeBSD 10.3-RELEASE-p19"  and still the same situation or any has found another solution?

            1 Reply Last reply Reply Quote 0
            • M
              mazide
              last edited by

              I also have the same question, all vpn clients ping each other without this option to be checked.
              I wonder what is that option for ?

              1 Reply Last reply Reply Quote 0
              • PippinP
                Pippin
                last edited by Pippin

                With Inter-client communication inactive, firewall rules apply.
                So if you want to block that, make rules on VPN interface.

                With Inter-client communication active, firewall rules do not apply.
                This is because in that case packets are routed internal to OpenVPN and pfSense does not see those packets at all.
                Maybe picture says more:
                ovpn-flow12.png

                I gloomily came to the ironic conclusion that if you take a highly intelligent person and give them the best possible, elite education, then you will most likely wind up with an academic who is completely impervious to reality.
                Halton Arp

                S 1 Reply Last reply Reply Quote 0
                • S slu referenced this topic on
                • S slu referenced this topic on
                • S
                  slu @Pippin
                  last edited by

                  @pippin said in Inter-client communication Setting:

                  With Inter-client communication inactive, firewall rules apply.
                  So if you want to block that, make rules on VPN interface.

                  100% block OpenVPN traffic is only possible if..
                  ..Inter-client communication disabled
                  ..no firewall rule match on the pfSense OpenVPN interface

                  Right?
                  There is no change in OpenVPN 2.5 or?

                  pfSense Gold subscription

                  1 Reply Last reply Reply Quote 0
                  • PippinP
                    Pippin
                    last edited by

                    Yes, right and no change :)

                    I gloomily came to the ironic conclusion that if you take a highly intelligent person and give them the best possible, elite education, then you will most likely wind up with an academic who is completely impervious to reality.
                    Halton Arp

                    1 Reply Last reply Reply Quote 1
                    • PippinP Pippin referenced this topic on
                    • S slu referenced this topic on
                    • L lucasll referenced this topic on
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.