Hi everyone, just FYI, I also had to un-check "Address Pool" for our vpn with "Static-IP-Overrides".
Regards, Philipp > -----Original Message----- > From: List [mailto:[email protected]] On Behalf Of Chris > Buechler > Sent: 14 April, 2016 0:09 > To: pfSense Support and Discussion Mailing List > Subject: Re: [pfSense] 2.3 show stopper -- in most cases openvpn > client specific overrides will fail to send proper iroute/push route > > On Wed, Apr 13, 2016 at 6:08 AM, mayak <[email protected]> wrote: > > hi all , > > > > openvpn will fail on v2.3 if you are using `client specific > overrides` where > > `iroute` and `push route` are being used: > > > > if the `tunnel network` is: > > 10.16.52.8/30 > > > > and the `advanced section`: > > iroute 172.16.32.0 255.255.255.0; > > push "route 10.0.0.0 255.0.0.0"; > > push "route 172.16.0.0 255.240.0.0.0" > > > > Sounds like this part of the release notes: > > OpenVPN topology change – configuration upgrade code was intended to > set upgraded OpenVPN servers to topology net30, rather than the new > default of topology subnet. This is not working as intended in some > cases, but has been fixed for 2.3.1. In the mean time, editing your > OpenVPN server instance and setting the topology to “net30” there > will > accomplish the same thing and fix it. > _______________________________________________ > pfSense mailing list > https://lists.pfsense.org/mailman/listinfo/list > Support the project with Gold! https://pfsense.org/gold _______________________________________________ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold
