Hi Alex,Test the tunnel by IP connections (e.g. trace route to 8.8.8. and confirm that the DNS server is resolving queries. Between them you have covered all OPNsense aspects I can imagine having any impact.Remember to allow ICMP for traffic going through the tunnel(s) you're testing.Bart...
also make sure that your DNS-Forwarder is configured to listen to specific interfaces (like LAN, OpenVPN-Server) to be able to talk from your road-warrior to the DNS-Forwarder on your OPNsense box -- https://forum.opnsense.org/index.php?topic=3598.0