Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    VPN and routeur

    Scheduled Pinned Locked Moved OpenVPN
    8 Posts 2 Posters 813 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      splinny
      last edited by

      Hi,

      I have a NAT routeur (networks : 88.X.X.X. <----> LAN).

      I want to configure a site to site VPN with PfSense and OpenVPN.

      How can I do ? Must I delete my NAT routeur and configure PfSense as the new routeur ?

      Regards.

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott @splinny
        last edited by

        @splinny

        Actually, you should get rid of the other router anyway, VPN or not. Having 2 routers means you have double NAT and once is bad enough. Also, if your ISP provides IPv6, you won't get it working properly, with that other router in the way.

        Beyond that, if you insist on using that other router, you'll have to say what type of VPN you're using.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        1 Reply Last reply Reply Quote 0
        • S
          splinny
          last edited by splinny

          Thank you for your answer.

          So, the PfSense will be :

          • VPN Client
          • Firewall
          • Routeur
          • Do I have to configure the NAT ?
          JKnottJ 1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott @splinny
            last edited by

            @splinny

            Yes, unless you have more than 1 public address, you'll have to configure NAT. Get your connection going first, then worry about the VPN.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • S
              splinny
              last edited by splinny

              @JKnott ,

              Thank you.

              Can the site to site VPN works with this configuration :

              • The ISP Routeur is present
              • The PFSENSE : Firewall + OpenVPN.

              alt text

              JKnottJ 1 Reply Last reply Reply Quote 0
              • JKnottJ
                JKnott @splinny
                last edited by

                @splinny

                All I see are 2 local LANs. Is there an Internet connection somewhere? Also, given you only have 1 pfsense system between them, where would you be using a VPN?

                PfSense running on Qotom mini PC
                i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                UniFi AC-Lite access point

                I haven't lost my mind. It's around here...somewhere...

                1 Reply Last reply Reply Quote 0
                • S
                  splinny
                  last edited by

                  Here is only one site. With the ISP routeur on the left.

                  My site B is the same.

                  JKnottJ 1 Reply Last reply Reply Quote 0
                  • JKnottJ
                    JKnott @splinny
                    last edited by

                    @splinny

                    Is that 192.168.1.0 actually from your ISP? If so, then you are behind NAT and a VPN will never work.

                    PfSense running on Qotom mini PC
                    i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                    UniFi AC-Lite access point

                    I haven't lost my mind. It's around here...somewhere...

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.