Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How do i archieve this goal? please help

    Scheduled Pinned Locked Moved IPsec
    3 Posts 2 Posters 2.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mubin
      last edited by

      lan – VPN router – Pfsense ---adsl modem === Internet ==== adsl modem ---- vpn router --- lan

      that  my ideal graph

      I want to Ipsec between Those Vpn router

      I need pfsense to make my network more secure

      Or
      this graph

      lan --  Pfsense -- VPN router –-adsl modem === Internet ==== adsl modem ---- vpn router --- lan

      which one is better

      1.If it possible. how do i config pfsense to let my client site get through pfsense and connect to VPN router?

      ps. If this sound silly becasue i'm very new

      I still need a lot of advice

      Sorry for my language i'm not native

      Thank for all help

      **i already test i put my vpn router behind firewall connect lan to wan port on vpn and guess what it connect but
      i can't ping through vpn i can't use remote access but if i remove pfsense everything wil work fine so
      my guess is i don't know how i config pfsense

      • Pfsense already let my Ipsec vpn connect but pfsense
        Until now i don't know how to config pfsense i allow my site to site really connected so i can't ping and remote access even share file**

      Thank you very much

      1 Reply Last reply Reply Quote 0
      • Cry HavokC
        Cry Havok
        last edited by

        pfSense can do IPSec VPN, so if you're not tied to particular hardware it may be worth just using the pfSense box.

        Where to put it, only you can really answer that as it depends on whether you trust the far end of the IPSec VPN or not ;)  Assuming you do, stick it behind the pfSense box and tell the pfSense box to foreward ESP and 500/UDP.  Of course, that may not work (technical limitations) and you may have to put it on front of the pfSense box.

        1 Reply Last reply Reply Quote 0
        • M
          mubin
          last edited by

          OK now i try putting it in front but
          1. I normally ping from site that have pfsense but i can't ping from another site without pfsense it look like pfsense don't let me come in to lan.

          Help please thank

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.