• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

OpenVPN and Dual Wan

Scheduled Pinned Locked Moved OpenVPN
3 Posts 2 Posters 2.6k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • G
    glanc
    last edited by Jun 15, 2007, 11:14 PM

    Hi all. I would like to know, if it's possible with pfsense to have two openvpn gateway to gateway to connect two office, and than choose with policy routing, which tunnel, hosts on either office internal lans use to communicate with each others. Like hostA when connecting to hostB on the remote site use vpnA but all the other host use vpnB.

    Thanks a lot.

    1 Reply Last reply Reply Quote 0
    • C
      cmb
      last edited by Jun 16, 2007, 1:51 AM

      Not at this time. We have some OpenVPN improvements planned for a future version and I added this to our wish list for when we start working on it.
      http://wiki.pfsense.com/wikka.php?wakka=OpenVPNWishlist

      1 Reply Last reply Reply Quote 0
      • G
        glanc
        last edited by Jun 16, 2007, 9:54 AM

        Hi! Thanks for replying. I've Pfsense 1.2-BETA-1, and with the OpenVPN package, i'm already capable of doing this three things:

        Listen on multiple ports

        Listen on multiple protos (tcp & udp)

        Listen on multiple IP's (multi-WAN)

        I just put on the "custom options" of the my two openvpn tunnel configuration this line:

        local 85.35.218.x;remote 85.35.219.x # for tunnel A

        local 85.35.219.x;remote 85.35.220.x # for tunnel A

        and doing a netstat -an it shows:

        udp4      0      0  85.35.218.138.1194    .
        udp4      0      0  85.35.219.219.1195    .

        So openvpn daemon is listening correctly on both two wans fo incoming connections (with tcpdump i've tested it). And changing the protocol tab of the config, should also do the trick to listen on different protocol (tcp/udp).

        But my question was referred to the possibility of doing policy routing for the two vpn, for the hosts inside the lan subnet of both sites. If i create a firewall rule, the tun0 and tun1 interface should appear in the gateway tab, so that i could choose the tunnel to use for a particular host/subnet to host/subnet communication. Is there another way to do this, waiting for the possibility to choose also the tun interfaces in the gateway tab of firewall rules option?

        Thanks again.

        PS. For failover over vpns i can wait, but the policy routing would be the choice to decide to switch or not to this great product.

        1 Reply Last reply Reply Quote 0
        1 out of 3
        • First post
          1/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received