Skip to main content

OpenVPN Client connection configuration in OPNsense

Applied to OPNsense v26.7.1

Client config

Order matters

Hint: when copy-past avoid whitespaces (trailing spaces, new lines breaks), includ only from '---BEGIN' until 'END---'

Trust, Authorities: Import CA

(img)

Trust, Certificates: Import client certificate and private key

(img)

VPN, OpenVPN, instances, Static keys,: Import static key

(img)

VPN, OpenVPN, instances, Instances: Add

(img)

Interfaces, Assignments, Add, choose unassigned interface, assign it

Enable new interface and, optionally, configure MTU/MSS to match the server side (use same values, or leave unconfigured)

System, Gateways, Configuration, Add

Now it is possible to add routeroutes (if necessary). Although, routes should be pushed from the VPN server to the client.