On 4/12/18 10:26 am, Andrew Udvare wrote: > On 03/12/2018 09:49, Michael Orlitzky wrote: >> On 12/3/18 5:55 AM, Andrew Udvare wrote: >>> iptables on server: >>> -A FORWARD -s 10.100.0.0/24 -i tun0 -o enp1s0f0 -m conntrack --ctstate >>> NEW -j ACCEPT >>> >> Is that only forwarding packets for new (i.e. not existing) connections? > ...
sent too soon, missed some ... As its a router, have you correctly configured openvpn's client-to-client, CCD and iroute setup? Google "openvpn networks behind server" BillK