Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Interfaces GRE

    IPsec
    3
    6
    4.3k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      Stephane
      last edited by

      Hi all,
      I'm preparing a full mesh VPN IPSec over GRE design. We will have many sites.
      How many GRE interfaces is possible to set in PFSense 2.0 ?

      Thanks for your help.

      Stephane

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        There aren't any limits in the GUI

        Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • D
          dhatz
          last edited by

          With regard to creating fully-meshed IPSEC VPNs consisting of many sites, does pfsense support something like Cisco's VTI (Virtual Tunnel Interface) tunnel technology ?

          Juniper calls it "Secure Tunnel Interface", Fortinet calls it "Interface mode IPSEC" and all are compatible with each other..

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            pfSense 2.0 support both Tunnel mode (the mode everyone is used to) as well as Transport mode, which just encrypts between the endpoints, and then you run your own GIF/GRE/Whatever on top of that.

            I'm not sure what mode they run in for that kind of setup, but either way it can probably be made to work.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • D
              dhatz
              last edited by

              Thx jimp, I'll look into it.

              Basically what I had in mind was a setup of OSPF over GRE over IPSEC, such as the one described at http://forums.juniper.net/t5/SRX-Services-Gateway/srx-210-and-cisco-870-ospf-over-gre-over-ipsec/td-p/35672

              1 Reply Last reply Reply Quote 0
              • S
                Stephane
                last edited by

                Hi dhatz,

                That's what I'm trying to do also. Although I'm able to ping all hosts, I've an issue when I try to access a webpage. See my other post : http://forum.pfsense.org/index.php/topic,41522.0.html.

                Feel free to ask question about the conf if you need help.

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.