Combine routing of internet traffic with accessing private network resources

Business solution to host your own OpenVPN server with web management interface and bundled clients.
Post Reply
assaf-2bcloud
OpenVpn Newbie
Posts: 2
Joined: Mon Mar 28, 2022 11:33 am

Combine routing of internet traffic with accessing private network resources

Post by assaf-2bcloud » Mon Mar 28, 2022 11:40 am

According to this article https://openvpn.net/vpn-server-resource ... ss-server/, combining the setting of "Should clients' Internet traffic be routed through the VPN" with "Should VPN clients have access to private subnets" is not possible on an access server,

Is there any recommended solution for a situation where this combination is required?

Thanks,
Assaf

User avatar
openvpn_inc
OpenVPN Inc.
Posts: 1332
Joined: Tue Feb 16, 2021 10:41 am

Re: Combine routing of internet traffic with accessing private network resources

Post by openvpn_inc » Mon Mar 28, 2022 11:49 am

Hello Assaf,

I have read the article 3 times from top to bottom but cannot come to the same conclusion as you have. It is possible to route client Internet traffic through the VPN server and allow access to private subnets at the same time. I do not know why you think it cannot be done. Perhaps if you could explain more clearly what the problem is?

Kind regards,
Johan
Image OpenVPN Inc.
Answers provided by OpenVPN Inc. staff members here are provided on a voluntary best-effort basis, and no rights can be claimed on the basis of answers posted in this public forum. If you wish to get official support from OpenVPN Inc. please use the official support ticket system: https://openvpn.net/support

assaf-2bcloud
OpenVpn Newbie
Posts: 2
Joined: Mon Mar 28, 2022 11:33 am

Re: Combine routing of internet traffic with accessing private network resources

Post by assaf-2bcloud » Mon Mar 28, 2022 1:33 pm

Actually this paragraph from the article https://openvpn.net/vpn-server-resource ... tup-wizard made me think that the two cannot coexist
> Should private subnets be accessible to clients by default?
Explanation: This option defines the default security setting of your OpenVPN Access Server. When Should client traffic be routed by default through the VPN? is set to no, it defines the list of subnets that your VPN clients are able to access. You are able to add more entries to this list once you login to the Admin Web UI area. This option will have no effect if Should client traffic be routed by default through the VPN? is set to yes.
After viewing the configuration in the admin I saw that subnets ip ranges were actually missing. Adding them made things work

I will update in case additional issues happen here or will open a new thread in case of a different problem,

Post Reply