Hi everyone,

just FYI, I also had to un-check "Address Pool" for our vpn with
"Static-IP-Overrides".

Regards,
Philipp

> -----Original Message-----
> From: List [mailto:[email protected]] On Behalf Of Chris
> Buechler
> Sent: 14 April, 2016 0:09
> To: pfSense Support and Discussion Mailing List
> Subject: Re: [pfSense] 2.3 show stopper -- in most cases openvpn
> client specific overrides will fail to send proper iroute/push route
>
> On Wed, Apr 13, 2016 at 6:08 AM, mayak <[email protected]> wrote:
> > hi all ,
> >
> > openvpn will fail on v2.3 if you are using `client specific
> overrides` where
> > `iroute` and `push route` are being used:
> >
> > if the `tunnel network` is:
> > 10.16.52.8/30
> >
> > and the `advanced section`:
> > iroute 172.16.32.0 255.255.255.0;
> > push "route 10.0.0.0 255.0.0.0";
> > push "route 172.16.0.0 255.240.0.0.0"
> >
>
> Sounds like this part of the release notes:
>
> OpenVPN topology change – configuration upgrade code was intended to
> set upgraded OpenVPN servers to topology net30, rather than the new
> default of topology subnet. This is not working as intended in some
> cases, but has been fixed for 2.3.1. In the mean time, editing your
> OpenVPN server instance and setting the topology to “net30” there
> will
> accomplish the same thing and fix it.
> _______________________________________________
> pfSense mailing list
> https://lists.pfsense.org/mailman/listinfo/list
> Support the project with Gold! https://pfsense.org/gold
_______________________________________________
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold

Reply via email to