Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

pfSense as Remote Access SSL OpenVPN client

I'm having issues trying  to configure my pfSense router as an OpenVPN client (Remote Access) for UTM 9 deployed on AWS. The OpenVPN client can connect fine via TCP/443, however. Neither local devices on the LAN or the router itself is able to reach any remote network defined under UTM -> Remote Access -> SSL -> {Profile Name} -> Local Networks. The same SSL profile works on an Ubuntu desktop as well as an iPhone in that internal networks are pingable and devices are able to reach the Internet. On the other hand, configuring an OpenVPN client in pfSense does not work and I have a feeling it is related to missing iroute directives in the server config but from my understanding this isn't easy to modify within UTM. Has anyone had any luck configuring an OpenVPN client with pfSense? The client is assigned a dedicated interface which is the default gateway for all traffic leaving (Outbound NAT) as well as LAN firewall rules. The same config works with Remote Access to a pfSense OpenVPN server.

Thanks in advance!



This thread was automatically locked due to age.
Parents
  • Is there any particular reason for using openvpn over ipsec? I suggest you try ipsec instead, I haven't done any UTM to pfSense over openvpn, but IPsec has worked for me every time.

    Sophos UTM 9.3 Certified Engineer
    Sophos UTM 9.3 Certified Architect
    Sophos XG v.15 Certified Engineer
    Sophos XG v.17 Certified Engineer
    Sophos XG v.17 Certified Architect

Reply
  • Is there any particular reason for using openvpn over ipsec? I suggest you try ipsec instead, I haven't done any UTM to pfSense over openvpn, but IPsec has worked for me every time.

    Sophos UTM 9.3 Certified Engineer
    Sophos UTM 9.3 Certified Architect
    Sophos XG v.15 Certified Engineer
    Sophos XG v.17 Certified Engineer
    Sophos XG v.17 Certified Architect

Children
No Data