<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[&quot;Don&#x27;t pull routes&quot; and firewall rules]]></title><description><![CDATA[<p dir="auto">I'm not a very experienced pfSense or OpenVPN user, but I know enough to be dangerous.</p>
<p dir="auto">I've followed a tutorial (https://forum.pfsense.org/index.php?topic=106305.0) to get PIA working on my pfSense (2.3) router and set up a firewall rule and alias so that only a few machines in my house are using the VPN while the rest use the regular gateway.</p>
<p dir="auto">My problem is that if I don't check the "Don't pull routes" box in the OpenVPN config, every computer in the house goes through the VPN gateway rather than following the firewall rules I have set up.</p>
<p dir="auto">But if I check that box, dnsleaktest.com shows my ISP, which I take to mean there's a leak. If the box is unchecked, I see Choopa, LLC, which is PIA I think.</p>
<p dir="auto">Any ideas what I don't understand here?</p>
]]></description><link>https://forum.netgate.com/topic/99483/don-t-pull-routes-and-firewall-rules</link><generator>RSS for Node</generator><lastBuildDate>Mon, 16 Mar 2026 08:54:00 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/99483.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 06 May 2016 02:54:07 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to &quot;Don&#x27;t pull routes&quot; and firewall rules on Mon, 16 Oct 2017 23:09:54 GMT]]></title><description><![CDATA[<p dir="auto">That is because you already have that route in the routing table from your other connection.</p>
<p dir="auto">#notabug</p>
<p dir="auto"><strong>Diagnostics &gt; Routes</strong></p>
]]></description><link>https://forum.netgate.com/post/728310</link><guid isPermaLink="true">https://forum.netgate.com/post/728310</guid><dc:creator><![CDATA[Derelict]]></dc:creator><pubDate>Mon, 16 Oct 2017 23:09:54 GMT</pubDate></item><item><title><![CDATA[Reply to &quot;Don&#x27;t pull routes&quot; and firewall rules on Mon, 16 Oct 2017 22:57:55 GMT]]></title><description><![CDATA[<p dir="auto">Heh, was just about to necrobump this thread.  :)</p>
<p dir="auto">There's gotta be some routing bug here, but it's hard to narrow down or reproduce it.  I'm getting some FreeBSD routing errors in the OpenVPN logs…</p>
<pre><code>Oct 16 18:49:33 	openvpn 	56370 	/sbin/route add -net 0.0.0.0 10.61.15.5 128.0.0.0
Oct 16 18:49:33 	openvpn 	56370 	ERROR: FreeBSD route add command failed: external program exited with error status: 1 
</code></pre>
]]></description><link>https://forum.netgate.com/post/728303</link><guid isPermaLink="true">https://forum.netgate.com/post/728303</guid><dc:creator><![CDATA[Finger79]]></dc:creator><pubDate>Mon, 16 Oct 2017 22:57:55 GMT</pubDate></item><item><title><![CDATA[Reply to &quot;Don&#x27;t pull routes&quot; and firewall rules on Mon, 16 Oct 2017 22:39:45 GMT]]></title><description><![CDATA[<p dir="auto">https://forum.pfsense.org/index.php?topic=138078.msg755873#msg755873</p>
]]></description><link>https://forum.netgate.com/post/728295</link><guid isPermaLink="true">https://forum.netgate.com/post/728295</guid><dc:creator><![CDATA[luckman212]]></dc:creator><pubDate>Mon, 16 Oct 2017 22:39:45 GMT</pubDate></item></channel></rss>