Re: [pfSense] openvpn site to site clients not communicating ??

2016-02-19 Thread A Mohan Rao
Pls check rule
Wan rule : source lan destination any your VPN port 1194.
If still not work go to your interface then uncheck two options. Block...

Regards
mohan
On Feb 19, 2016 3:25 AM, "Richard Lussier" 
wrote:

> Hi, This option is not available on a site to site ssl/tls server
>>>
>> If it's a fully routed network, my next step would be to use traceroute
>> on both ends to see where it's getting hung up at.
>>
>> Doug
>>
>
> Got it Doug
> On the server side, the rule on openvpn destination had to be to "any"
> instead of "lan net" !!!
> Thank you
>
> Richard
>
> ___
>> pfSense mailing list
>> https://lists.pfsense.org/mailman/listinfo/list
>> Support the project with Gold! https://pfsense.org/gold
>>
>
>
> ___
> pfSense mailing list
> https://lists.pfsense.org/mailman/listinfo/list
> Support the project with Gold! https://pfsense.org/gold
>
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


Re: [pfSense] openvpn site to site clients not communicating ??

2016-02-18 Thread Richard Lussier

Hi, This option is not available on a site to site ssl/tls server

If it's a fully routed network, my next step would be to use traceroute on both 
ends to see where it's getting hung up at.

Doug


Got it Doug
On the server side, the rule on openvpn destination had to be to "any" 
instead of "lan net" !!!

Thank you

Richard


___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold



___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


Re: [pfSense] openvpn site to site clients not communicating ??

2016-02-18 Thread Doug Lytle
>>> Hi, This option is not available on a site to site ssl/tls server

If it's a fully routed network, my next step would be to use traceroute on both 
ends to see where it's getting hung up at.

Doug

___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


Re: [pfSense] openvpn site to site clients not communicating ??

2016-02-18 Thread Richard Lussier

Hi,
This option is not available on a site to site ssl/tls server

On 2016-02-18 13:15, Doug Lytle wrote:

On Feb 18, 2016, at 1:01 PM, Richard Lussier richard.luss...@inter-node.com 
wrote:
each client connects well to server but wont reach other clients..
any ideas ?

On the OpenVPN Server did you check the option:

Allow communication between clients connected to this server

Doug
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


--

Richard Lussier
*inter-node.com*
réseaux numériques évolutifs
cuivre – sans-fil – fibre optique
t. 514.316.1623
c. 514.574.5111

___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold

Re: [pfSense] openvpn site to site clients not communicating ??

2016-02-18 Thread Doug Lytle
>>> On Feb 18, 2016, at 1:01 PM, Richard Lussier richard.luss...@inter-node.com 
>>> wrote:

>>> each client connects well to server but wont reach other clients..
>>> any ideas ?

On the OpenVPN Server did you check the option:

Allow communication between clients connected to this server

Doug
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


[pfSense] openvpn site to site clients not communicating ??

2016-02-18 Thread Richard Lussier

Hi,
I have a multi site setup with 1 server and 4 clients. v 2.2.6 release
The clients have to reach each other.
Clients cannot see each others.
My wans are set to 1.1.1.2 thru 1.1.1.6 in a simple switch

The server is set as described in the pfsense book 21draft :
- Local and remote networks identified
- routes added for each client with a push in advanced configuration
- firewall rules for each client on wan - firewall rule for tunnel to 
lan net on openvpn Clients specific override for each client

- common name, local and remote networks set
- iroute in advanced box

Clients set to
- list of remote networks set
- firewall rule on openvpn: any pass to lan net

each client connects well to server but wont reach other clients..
any ideas ?
Thank you

Richard
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold