OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • Multiple OpenVPN Servers with different firewall rules. Please help.
« previous next »
  • Print
Pages: [1]

Author Topic: Multiple OpenVPN Servers with different firewall rules. Please help.  (Read 3391 times)

fosslibrarian

  • Newbie
  • *
  • Posts: 3
  • Karma: 0
    • View Profile
Multiple OpenVPN Servers with different firewall rules. Please help.
« on: November 19, 2019, 05:11:24 pm »
I am trying to set up two different openvpn servers with two different sets of firewall rules. I have read that you can simply disable the rules in the OpenVPN firewall section and assign the individual devices (ovpns1, ovpns2) to interfaces and then apply the firewall rules there. The issue is that when I do this, I can connect to the firewall fine. It assigns me an IP and everything, but I can't do anything. I cannot reach any machines within my lan (the primary purpose of these VPN's are to allow lan access from the road). I also cannot reach the internet when connected.

Everything works fine if the rules are on the OpenVPN interface. What is really confusing for me is that if I put the rules on the ovpns1 interface and force the gateway to be my wan gateway, I can then connect to the internet, but still not to machines on my lan.

I am pretty out of ideas and would appreciate any help in figuring this out.
Logged

fosslibrarian

  • Newbie
  • *
  • Posts: 3
  • Karma: 0
    • View Profile
Re: Multiple OpenVPN Servers with different firewall rules. Please help.
« Reply #1 on: November 20, 2019, 05:02:42 pm »
And then I did figure it out. It turns out that opnsense created a dynamic gateway for the vpn1 interface when I assigned the ovpns1 to it. Disabling this gateway made it work.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • Multiple OpenVPN Servers with different firewall rules. Please help.
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2