OpenVPN Client connection configuration in OPNsense

Applied to OPNsense v26.7.1

Client config

Order matters

Hint: when copy-past avoid whitespaces (trailing spaces, new lines breaks), includ only from '---BEGIN' until 'END---'

Trust, Authorities: Import CA

(img)

Trust, Certificates: Import client certificate and private key

(img)

VPN, OpenVPN, instances, Static keys,: Import static key

(img)

VPN, OpenVPN, instances, Instances: Add

(img)

Interfaces, Assignments, Add, choose unassigned interface, assign it

Enable new interface and, optionally, configure MTU/MSS to match the server side (use same values, or leave unconfigured)

System, Gateways, Configuration, Add

Now it is possible to add routes (if necessary). Although, routes should be pushed from the VPN server to the client.


Revision #2
Created 27 August 2026 03:13:26 by Anton
Updated 27 August 2026 03:37:01 by Anton