Requires a Gateway tied to one of the interfaces in the firewall. Or can w use Null4 - 127.0.01 ? Here we created a UbuntuRoutedOpenvpn gateway with 192.18.25.202, and it works. That is, our Openvpn clients are able to access all devices in the LAN and not just the Openvpn server 192.168.25.202 (behind PfSense).