<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>
	Comments on: Routing specific websites through your VPN gateway using pfSense	</title>
	<atom:link href="https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/feed/" rel="self" type="application/rss+xml" />
	<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/</link>
	<description>Trying to learn just a bit!</description>
	<lastBuildDate>Wed, 16 Apr 2025 06:07:47 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	
	<item>
		<title>
		By: Max		</title>
		<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-4738</link>

		<dc:creator><![CDATA[Max]]></dc:creator>
		<pubDate>Wed, 16 Apr 2025 06:07:47 +0000</pubDate>
		<guid isPermaLink="false">https://crepaldi.us/?p=809#comment-4738</guid>

					<description><![CDATA[Txs this is inspiring. 
I wonder if there is a Method to manage which VPN is used by looking up the geoip first instead of entering a view URLs?]]></description>
			<content:encoded><![CDATA[<p>Txs this is inspiring.<br />
I wonder if there is a Method to manage which VPN is used by looking up the geoip first instead of entering a view URLs?</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Matt		</title>
		<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-290</link>

		<dc:creator><![CDATA[Matt]]></dc:creator>
		<pubDate>Thu, 31 Aug 2023 17:42:44 +0000</pubDate>
		<guid isPermaLink="false">https://crepaldi.us/?p=809#comment-290</guid>

					<description><![CDATA[I think you also need to add an outbound rule on the OpenVPN Interface for all of your network IP&#039;s don&#039;t you?]]></description>
			<content:encoded><![CDATA[<p>I think you also need to add an outbound rule on the OpenVPN Interface for all of your network IP&#8217;s don&#8217;t you?</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: badgeramalama		</title>
		<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-279</link>

		<dc:creator><![CDATA[badgeramalama]]></dc:creator>
		<pubDate>Wed, 21 Jun 2023 22:53:11 +0000</pubDate>
		<guid isPermaLink="false">https://crepaldi.us/?p=809#comment-279</guid>

					<description><![CDATA[I&#039;d not understood the purpose of the tag before - nice. I block traffic leaking if the gateway goes down by checking the box at System &#062; Advanced &#062; Miscellaneous &#062; Gateway Monitoring &#062; Skip rules when gateway is down. Then, if the gateway is down (i.e. the VPN is down), the rule that would forward the traffic isn&#039;t created at all and there&#039;s no route. It certainly works if I turn off the VPN anyway.

Re creating aliases for Netflix IP addresses, you can use the pfBlocker package to generate aliases dynamically to look up the relevant IP addresses from Netflix&#039;s ASN that you can then use in a firewall rule as desired (I&#039;m doing the opposite; I want Netflix to skip the VPN). You can set up separate aliases for Amazon, BBC, whatever, and then use all of the matched addresses in your rules. And since pfBlocker updates on a schedule, the aliases are also kept up to date. It works really well.

Found this a while back (not my own work):

https://uniteinnovations.com/tutorials/bypassing-your-vpn-for-netflix-and-amazon-prime-video-with-pfsense/]]></description>
			<content:encoded><![CDATA[<p>I&#8217;d not understood the purpose of the tag before &#8211; nice. I block traffic leaking if the gateway goes down by checking the box at System &gt; Advanced &gt; Miscellaneous &gt; Gateway Monitoring &gt; Skip rules when gateway is down. Then, if the gateway is down (i.e. the VPN is down), the rule that would forward the traffic isn&#8217;t created at all and there&#8217;s no route. It certainly works if I turn off the VPN anyway.</p>
<p>Re creating aliases for Netflix IP addresses, you can use the pfBlocker package to generate aliases dynamically to look up the relevant IP addresses from Netflix&#8217;s ASN that you can then use in a firewall rule as desired (I&#8217;m doing the opposite; I want Netflix to skip the VPN). You can set up separate aliases for Amazon, BBC, whatever, and then use all of the matched addresses in your rules. And since pfBlocker updates on a schedule, the aliases are also kept up to date. It works really well.</p>
<p>Found this a while back (not my own work):</p>
<p><a href="https://uniteinnovations.com/tutorials/bypassing-your-vpn-for-netflix-and-amazon-prime-video-with-pfsense/" rel="nofollow ugc">https://uniteinnovations.com/tutorials/bypassing-your-vpn-for-netflix-and-amazon-prime-video-with-pfsense/</a></p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Thiago Crepaldi		</title>
		<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-264</link>

		<dc:creator><![CDATA[Thiago Crepaldi]]></dc:creator>
		<pubDate>Wed, 19 Apr 2023 14:54:27 +0000</pubDate>
		<guid isPermaLink="false">https://crepaldi.us/?p=809#comment-264</guid>

					<description><![CDATA[In reply to &lt;a href=&quot;https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-263&quot;&gt;daniel githinji&lt;/a&gt;.

Sorry, unfortunately I don’t. If you find, let me know and I will create a post for it.  Usually these lists are provided by the companies behind the DNS blocking solutions - and are paid. I am sure Netflix must rotate IPs to make it hard, but you can always use Wireshark to analyze your traffic and learn their IPs.]]></description>
			<content:encoded><![CDATA[<p>In reply to <a href="https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-263">daniel githinji</a>.</p>
<p>Sorry, unfortunately I don’t. If you find, let me know and I will create a post for it.  Usually these lists are provided by the companies behind the DNS blocking solutions &#8211; and are paid. I am sure Netflix must rotate IPs to make it hard, but you can always use Wireshark to analyze your traffic and learn their IPs.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: daniel githinji		</title>
		<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-263</link>

		<dc:creator><![CDATA[daniel githinji]]></dc:creator>
		<pubDate>Wed, 19 Apr 2023 12:32:22 +0000</pubDate>
		<guid isPermaLink="false">https://crepaldi.us/?p=809#comment-263</guid>

					<description><![CDATA[Hi there, appreciate the guide.
Quick one do you have a source on where you get all the websites domain i.e netflix]]></description>
			<content:encoded><![CDATA[<p>Hi there, appreciate the guide.<br />
Quick one do you have a source on where you get all the websites domain i.e netflix</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Thiago Crepaldi		</title>
		<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-155</link>

		<dc:creator><![CDATA[Thiago Crepaldi]]></dc:creator>
		<pubDate>Tue, 27 Jul 2021 14:23:28 +0000</pubDate>
		<guid isPermaLink="false">https://crepaldi.us/?p=809#comment-155</guid>

					<description><![CDATA[In reply to &lt;a href=&quot;https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-154&quot;&gt;Oli&lt;/a&gt;.

I usually wait for the Black Friday deals and get one of the 3 years package. I have tried both PIA and Surfshark. Both are to use on pfSense, especially for US locations. I don&#039;t try to use Netflix in different countries, but some people consider this an important criteria for the decision]]></description>
			<content:encoded><![CDATA[<p>In reply to <a href="https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-154">Oli</a>.</p>
<p>I usually wait for the Black Friday deals and get one of the 3 years package. I have tried both PIA and Surfshark. Both are to use on pfSense, especially for US locations. I don&#8217;t try to use Netflix in different countries, but some people consider this an important criteria for the decision</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Oli		</title>
		<link>https://geekistheway.com/2021/04/21/routing-specific-sites-through-your-vpn-gateway-using-pfsense/#comment-154</link>

		<dc:creator><![CDATA[Oli]]></dc:creator>
		<pubDate>Tue, 27 Jul 2021 08:20:54 +0000</pubDate>
		<guid isPermaLink="false">https://crepaldi.us/?p=809#comment-154</guid>

					<description><![CDATA[Thank you for the guide! 

What VPN service do you use as your endpoint in the US?]]></description>
			<content:encoded><![CDATA[<p>Thank you for the guide! </p>
<p>What VPN service do you use as your endpoint in the US?</p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Object Caching 27/164 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Minified using Disk
Database Caching 1/72 queries in 0.036 seconds using Redis

Served from: geekistheway.com @ 2026-05-16 04:40:11 by W3 Total Cache
-->