• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Routing Internet Trafic over VPN not working

Scheduled Pinned Locked Moved Routing and Multi WAN
2 Posts 1 Posters 199 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    dieterwolf
    last edited by Aug 27, 2024, 12:51 AM

    Hello all,

    given setup:

    Multiple Sites - we take Site A here as example:
    PfSense Router, mutliple Subnets / VLANs, 10.1.0.0/16
    IP of MGMT-Net: 10.1.1.1

    Cloud - PfSense Router, multiple Subnets / VLANs, 10.99.0.0/16
    IP of MGMT-Net: 10.99.1.1

    Site has multiple WAN Uplinks - for every uplink there is one server in Cloud PFS and one Client in Site PFS with a /30 transit network.

    Routing is done via BGP => working well.

    Ping from Site A to 10.1.1.1 as well as to other sites (B,C,...) possible - BGP Routing working.

    Now we want to route whole traffic of Site A (include internet) over Cloud. BGP Route annoncement of 0.0.0.0/0 not possible cause only few sites should do route-all-over-cloud.

    I created an Gateway on Site A PFS:
    GW2Cloud ==> Interface: MGMT (LAN), Gateway: 10.99.1.1, Monitor: 1.1.1.1, Non-local: Checked

    At Cloud PFS: Outbound NAT for Source 10.1.0.0/16 (Site A Nets) on WAN

    As soon as i create the Gateway on Site A, i´m not able to ping 10.99.1.1 anymore. Other interfaces in Cloud still pingable (10.99.2.1 e.g.). If i delete the interface it is working again.

    Any ideas?

    Thanks

    D 1 Reply Last reply Sep 20, 2024, 5:35 PM Reply Quote 0
    • D
      dieterwolf @dieterwolf
      last edited by Sep 20, 2024, 5:35 PM

      Solution for you guys having the same problem:

      Create an Interface on site A for both OVPN-Tunnels. Than assign the automativ created Gateways in the Gateway Group.

      Dont forget to do NAT on the Cloud side.

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
        This community forum collects and processes your personal information.
        consent.not_received