Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Openvpn through ipsec

    Scheduled Pinned Locked Moved OpenVPN
    4 Posts 2 Posters 736 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      acloete
      last edited by

      Re: Openvpn through ipsec
      Good day, I am new to the forum and would like to get advice from more senior techs on my issue.
      I have an OpenVPN setup for users to connect from home into our local network. We linked to a client's IPSEC and added in a phase 2 to our local lan and added another phase 2 for our OpenVPN subnet (works with minimum rules setup).
      I have created another OpenVPN with a new subnet to access our local lan (works great) and we added another new client IPSEC IKEv2 tunnel. Added in our local lan and can connect. However when we connect via our OpenVPN we cannot access the second client's IPSEC.
      Any ideas on how to resolve this?

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @acloete
        last edited by

        @acloete said in Openvpn through ipsec:

        I have created another OpenVPN with a new subnet to access our local lan (works great) and we added another new client IPSEC IKEv2 tunnel. Added in our local lan and can connect. However when we connect via our OpenVPN we cannot access the second client's IPSEC.

        Did you consider that you need an additional phase 2 for that new OpenVPN on both sites?

        1 Reply Last reply Reply Quote 0
        • A
          acloete
          last edited by

          The client is strict on security so we need to find a way to nat the openvpn to our local subnet but just cannot get it to work

          V 1 Reply Last reply Reply Quote 0
          • V
            viragomann @acloete
            last edited by

            @acloete
            Would be worth to mention.

            So configure PAT in your p 2 and use an IP which is routed to your site.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.