To add an OpenVPN server on pfSense, go to "VPN -> OpenVPN".
On the "VPN / OpenVPN / Servers" page that appears, go to "Servers" and click: Add.
On the "VPN / OpenVPN / Servers / Edit" page that appears, configure these settings:
In the "Cryptographic Settings" section, configure these settings:
In the "Tunnel Settings" section, complete these 3 fields:
In the "Ping settings" section, enter "0" in the "Inactive" box to disable automatic VPN tunnel expiration.
So once the VPN tunnel is established, it will remain established.
At the bottom of the page, click Save.
Your OpenVPN server has been created.
As you saw earlier, when you configure your OpenVPN server, you need to list all the subnets used by all the OpenVPN clients that will connect to it.
However, for OpenVPN to correctly route network traffic for which subnet, you must add specific configuration per OpenVPN client to indicate which subnet is used at which physical site.
To do this, go to the "Client Specific Overrides" tab and click: Add.
To begin, indicate:
To find the common name to indicate for an OpenVPN client, open a new tab and go to: System -> Certificate Manager -> Cerificates.
Locate the certificates of type "User Certificate" (indicated in the "Name" column), then locate the value indicated as the common name (CN) for it.
Next, in the "Tunnel Settings" section of a client's specific configuration, indicate the subnet used at the client site affected by the VPN client referenced above.
In our case, we are creating a specific configuration for the future OpenVPN Paris client.
So, we indicate the subnet "10.0.2.0/24" used on site 2 (Paris) in the "IPv4 Remote Network(s)" box.
At the bottom of the page, click Save.
The specific configuration for the future OpenVPN Paris client appears.
Important : if you have several physical sites where you want to install an OpenVPN client, don't forget to create a specific configuration per OpenVPN client.
Firewall 7/30/2025
Firewall 6/6/2025
Firewall 6/20/2025
Firewall 6/13/2025
Pinned content
Contact
® InformatiWeb-Pro.net - InformatiWeb.net 2008-2022 - © Lionel Eppe - All rights reserved.
Total or partial reproduction of this site is prohibited and constitutes an infringement punishable by articles L.335-2 and following of the intellectual property Code.
No comment