OpenVPN & Nftables

Home » CentOS » OpenVPN & Nftables
CentOS No Comments

Hi guys.

On CentOS Stream 8 with 4.18.0-348.el8.x86_64, I cannot get openvpn-2.4.11-1.el8.x86_64 with help of ‘nftables’ to allow certain traffic to get in. When OpenVPN does not use ‘client-to-client’ it is then supposed to pass to ‘nftables’ & let it handle all the traffic.

I’m doing something trivial – put ‘tun0’ iface into
‘trusted’ zone and add ‘forward’ but vpn connected clients cannot talk to each other. I also fiddle with ‘direct’ rules but to no avail and I hope some CentOSians have that already figured out and can advise.

many thanks, L.