Project

General

Profile

Actions

Feature #6754

closed

Use of aliases in OpenVPN configuration

Added by robi robi over 7 years ago. Updated over 6 years ago.

Status:
Duplicate
Priority:
Normal
Assignee:
-
Category:
OpenVPN
Target version:
-
Start date:
08/31/2016
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:

Description

OpenVPN has options where network groups can be specified. See these:
- Tunnel Settings > IPv4 Local Network/s and IPv6 Local Network/s
- Client Specific Overrides > IPv4 Local Network/s and IPv6 Local Network/s
- Client Specific Overrides > IPv4 Remote Network/s and IPv6 Remote Network/s

We have multiple sites connected to each other via OpenVPN. Each site has dozens of networks, we use aliases to handle firewall rules between them.
It would be very efficient to be able to use these aliases in the fields above also.

Here's one example of "Tunnel Settings > IPv4 Local Network/s" for one server...
172.22.222.0/24,172.22.223.0/24,172.22.221.0/24,172.22.213.0/24,172.22.212.0/24,172.22.211.0/24,172.22.210.0/24,192.168.0.0/24,192.168.119.0/24,192.168.120.0/24,172.16.15.0/24,172.16.19.0/24,172.16.22.0/24,172.16.24.0/24,172.16.27.0/24,172.16.31.0/24,192.168.20.0/24,192.168.21.0/24,192.168.23.0/24,192.168.30.0/24,172.17.15.0/24,172.17.19.0/24,172.17.124.0/22,192.168.11.0/24,172.18.19.0/24,172.18.20.0/24,172.18.15.0/24,172.18.31.0/24,10.0.4.0/24,10.0.6.0/23

Funny is, we have aliases defined for all of these nicely, nested. would be a lot better to just use the same aliases as we use for firewall rules in OpenVPN too.

Actions #1

Updated by Jim Pingle over 7 years ago

  • Target version deleted (2.3.2-p1)
Actions #2

Updated by Phillip Davis over 7 years ago

Have a read of https://redmine.pfsense.org/issues/2668
It is a similar feature request I put in a while ago.

Actions #4

Updated by Jim Pingle over 6 years ago

  • Status changed from New to Duplicate

Duplicate of #2668

Actions

Also available in: Atom PDF