killswitch: Killswitch is not working with OpenVPN
Hi, Thank you for this awesome utility. Recently, I am facing the following problem with KillSwitch. When connecting with IKEv2 and IPSec protocol the KillSwitch works great but as soon as I connect with OpenVPN (TCP or UDP) it stops the entire networks.
I have also checked it the rules are applied correctly using the command pfctl -s rules
and it shows me the rules applied.
@nbari Please help me in this context. I will really appreciate your help.
About this issue
- Original URL
- State: open
- Created 3 years ago
- Comments: 22 (10 by maintainers)
@nbari Awesome, I am trying to make few changes let see what happens 😃
hi @munibsiddiqui here sharing some initial tests/findings, I notice that the tunnel is not changing the default gateway:
if using other protocols, the interface instead of being
en1
could be something likeipsec
, I tried changing the config to use something likeredirect-gateway def1
orredirect-gateway autolocal
but no luck, just for testing after the VPN was up I changed the default gateway:but the default
killswitch
rules block whole traffic, I will continue testing but maybe also this info help from your side to test.What I am doing for debugging is:
Do some changes in the rules and load them:
Then check the logs with:
maybe we need to use the PF
reply-to
, not sure,but well give a try from your side and share your findings@nbari Sorry for late. Please see the following information. vpn-information.txt