Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Extending LAN Subnet Between 2 Datacenters?

    General pfSense Questions
    4
    10
    1.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mevans336
      last edited by

      Can anyone point me to the recommended method for extending a LAN subnet between two datacenters so they can share the same private IP address space on the LAN side of the pfSense?

      Example:

      192.168.1.1 LAN <–-> WAN <------> Public Internet <------> WAN <---> LAN 192.168.1.1

      1 Reply Last reply Reply Quote 0
      • J
        jasonlitka
        last edited by

        OpenVPN tap connection.  I'd try and do without it if you could though.  Why do you need the same network on each side?

        I can break anything.

        1 Reply Last reply Reply Quote 0
        • M
          mevans336
          last edited by

          @Jason:

          OpenVPN tap connection.  I'd try and do without it if you could though.  Why do you need the same network on each side?

          We're using Hyper-V replication to replicate a bunch of VMs. It will be much more seamless if I can just power them on without altering IPs and so forth.

          Does tap bridging work with 2.1? I thought 2.0 or 2.1 broke it?

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            I take it a nice layer 2 metro-e between the two is not an option?

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • M
              mevans336
              last edited by

              @Derelict:

              I take it a nice layer 2 metro-e between the two is not an option?

              That would make my life so much easier, but is not in the budget … yet.

              1 Reply Last reply Reply Quote 0
              • K
                kejianshi
                last edited by

                Have you considered a full mesh network VPN?

                1 Reply Last reply Reply Quote 0
                • M
                  mevans336
                  last edited by

                  @kejianshi:

                  Have you considered a full mesh network VPN?

                  I'm not sure what that is and what I found on Google isn't much help. Can you elaborate?

                  1 Reply Last reply Reply Quote 0
                  • K
                    kejianshi
                    last edited by

                    I was talking about the TINC package.

                    1 Reply Last reply Reply Quote 0
                    • M
                      mevans336
                      last edited by

                      @kejianshi:

                      I was talking about the TINC package.

                      That is very, very cool. I've added it to my list to try as the first solution.

                      EDIT:

                      Wow, that was super easy and works very well. I think I'm going to use it.

                      1 Reply Last reply Reply Quote 0
                      • K
                        kejianshi
                        last edited by

                        Yep - Its pretty cool for what you need.

                        There is another guy who is trying to get 3 or 4 separate sites communicating well - For him, this is probably also the best / easiest option.

                        But easy is relative - Maybe he will see your post and ask your instruction.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.