Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to route traffic from OpenVPN remote clients to subnets through site-to-site tunnels.

    Scheduled Pinned Locked Moved OpenVPN
    6 Posts 4 Posters 708 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      hoegge
      last edited by

      I have a setup, with two sites, where I can dial in with OpenVPN remotely to both sites. Routing betwteen the two subnets when attached to them locally also works, but I cannot figure out how to route traffic from OpenVPN remote clients dialled in to one subnet to the other subnet. I've tried to illustrate. Both subnet are part of the OpenVPN client definitions as target networks, but does not seem to be enough

      dfa9f40a-9310-40cc-ae84-76cac6199ddc-image.png

      Thanks in advance
      /hoegge

      M 1 Reply Last reply Reply Quote 0
      • M
        mcury Rebel Alliance @hoegge
        last edited by

        @hoegge You need to include OpenVPN network inside the P2 of both sites.
        Also, include the the VPN local and remote networks inside OpenVPN IPv4 Local network(s) option.

        dead on arrival, nowhere to be found.

        F H 2 Replies Last reply Reply Quote 0
        • K kwriley87 referenced this topic on
        • F
          Fagundo13 @mcury
          last edited by

          This post is deleted!
          1 Reply Last reply Reply Quote 0
          • H
            hoegge @mcury
            last edited by

            @mcury Thanks - but what is P2?

            V 1 Reply Last reply Reply Quote 0
            • V
              viragomann @hoegge
              last edited by

              @hoegge said in How to route traffic from OpenVPN remote clients to subnets through site-to-site tunnels.:

              @mcury Thanks - but what is P2?

              That's a setting in IPSec.

              In OpenVPN, you just have to add the remote subnets to the "Local Networks" in the access server settings and the respective remote access server tunnel subnet to the "Remote Networks" in the s2s settings.

              So in the access server settings at both sites you should have
              192.168.0.0/24,192.168.128.0/22

              In the site-2-site server settings at 1 "Remote Networks":
              192.168.128.0/22,<site2 access server tunnel network>

              site 2 "Remote Networks":
              192.168.0.0/24,<site1 access server tunnel network>

              If you have configured the site-2-site with CSO you have to state the remote networks in the CSO as well.

              If you still have trouble come back with more details about your OpenVPN settings.

              H 1 Reply Last reply Reply Quote 0
              • H
                hoegge @viragomann
                last edited by

                @viragomann Thanks a lot - I will try that

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.