Skip to main content

pfSense OpenVPN Client setup

To configure OpenVPN, you need to:
  • Get the file openvpn-clientX.vpn (request it from [email protected]).
  • Open openvpn-clientX.ovpn in a text editor.
  • Go to the pfSense Webconfigurator at System / Certificate / Authorities, and add a new authority CA as in figure 1.1 by importing it from the OpenVPN client.
  • Get the CA certificate from openvpn-clientX.ovpn by copying all text between <ca> and </ca>, excluding the tags themselves.
Install the client’s certificate and private key to connect to the OpenVPN server. Get the certificate and private key values from the openvpn-clientX file, and import the certificate under System / Certificate / Certificates as YourOrgOpenVPN, following the steps in the figures above. Go to VPN / OpenVPN / Client, configure it as shown above using the TLS cert from openvpn-clientX.ovpn, and save the configuration. In Status / OpenVPN, confirm the client VPN is active:

PFBlockerNG - OneFirewall Blacklist setup

To set up pfBlockerNG, configure the IPv4 blacklist as shown below.

Setup System Logs (syslogs) - Settings

To set up system log mirroring, follow the configuration in Status / System Logs / Settings, shown in figure 3.1: