On 21 Dec 2012, at 16:01, Mark Olliver <[email protected]> wrote:

> Hi,
> 
> The routing table for my mac the openvpn client is:
> Routing tables
> 
> Internet:
> Destination        Gateway            Flags        Refs      Use   Netif 
> Expire
> default            192.168.0.1        UGSc           17        0     en0
> default            tun0               UCSI            0        0    tun0
> 10                 10.208.11.253      UGSc            2       13    tun0
> 10.208.11/25       10.208.11.253      UGSc            0       74    tun0
> 10.208.11.248/29   10.208.11.253      UGSc            1        0    tun0
> 10.208.11.253      10.208.11.254      UH              5        0    tun0
> 127                127.0.0.1          UCS             0        0     lo0
> 127.0.0.1          127.0.0.1          UH              9   598251     lo0
> 169.254            link#4             UCS             0        0     en0
> 192.168.0          link#4             UCS             4        0     en0
> 192.168.0.1        3c:81:d8:9c:d0:2d  UHLWIir        18      286     en0   
> 1189
> 192.168.0.2        127.0.0.1          UHS             1        3     lo0
> 192.168.0.3        0:c:29:1d:73:ff    UHLWIi          1        7     en0   
> 1178
> 192.168.0.250      0:22:15:4b:a6:83   UHLWIi          2      233     en0   
> 1092
> 192.168.0.255      ff:ff:ff:ff:ff:ff  UHLWbI          0        3     en0
> 192.168.84         link#10            UC              2        0  vmnet8
> 192.168.84.1       0:50:56:c0:0:8     UHLWIi          1     9336     lo0
> 192.168.84.255     ff:ff:ff:ff:ff:ff  UHLWbI          0        5  vmnet8
> 192.168.171        link#9             UC              2        0  vmnet1
> 192.168.171.1      0:50:56:c0:0:1     UHLWIi          1     9336     lo0
> 192.168.171.255    ff:ff:ff:ff:ff:ff  UHLWbI          0        5  vmnet1
> 
> 
> The routing table for my pfsense box is:
$ netstat -rn
Routing tables

Internet:
Destination        Gateway            Flags    Refs      Use  Netif Expire
default            10.208.11.1        US          0     6450 ale0_v
10.208.11.0/25     link#12            U           0    24955 ale0_v
10.208.11.1        link#12            UHS         0     3750    lo0
10.208.11.248/29   10.208.11.250      UGS         0       17 ovpns2
10.208.11.249      link#14            UHS         0        0    lo0
10.208.11.250      link#14            UH          0        0 ovpns2
89.167.208.4       192.168.0.1        UGHS        0     2397 ale0_v
127.0.0.1          link#9             UH          0      158    lo0
192.168.0.0/24     link#11            U           0     5667 ale0_v
192.168.0.250      link#11            UHS         0        2    lo0
192.168.1.0/24     link#13            U           0     3567 ale0_v
192.168.1.1        link#13            UHS         0        0    lo0


> 
> Regards
> 
> Mark
> 
> 
> On 21 Dec 2012, at 15:54, WolfSec-Support <[email protected]> wrote:
> 
>> hi,
>> 
>> please post your routing table of both openvpn / pfsense boxes
>> 
>> regards
>> stephan
>> 
>> 
>> 2012/12/21 Mark Olliver <[email protected]>
>> Hi,
>> 
>> I have an OpenVPN connection setup where my LAN ip range is 192.168.10.0/25 
>> and my OpenVPN vpn range is 192.168.10.248/29. These are two distinct 
>> networks and do not overlap. They do however fit within one /24 which is 
>> what I need as I have IPSEC tunnels configured using 192.168.10.0/24 as 
>> their LAN source. My problem is that whilst on the OpenVPN connection I can 
>> talk to and thing over the IPSEC connection I can not talk to my local 
>> 192.168.10.0/25 network.
>> 
>> Looking at the logs OpenVPN is saying there is a conflict and that the LANs 
>> overlap, for some reason it is thinking my LAN is 192.168.10.0/24.
>> 
>> Any ideas how i can override openvpn and get it to recognise the correct 
>> settings.
>> 
>> Thanks
>> 
>> Mark
>> _______________________________________________
>> List mailing list
>> [email protected]
>> http://lists.pfsense.org/mailman/listinfo/list
>> 
>> 
>> 
>> -- 
>> 
>> Stephan Wolf
>> 
>> WolfSec
>> Rairing 65
>> CH-8108 Dällikon
>> 
>> +41 43 536 1191
>> +41 76 566 8222
>> http://www.wolfsec.ch _______________________________________________
>> List mailing list
>> [email protected]
>> http://lists.pfsense.org/mailman/listinfo/list
> 

_______________________________________________
List mailing list
[email protected]
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to