OpenVPN and IPSEC



  • Hello all,
    We have been trying to do a multi-site openvpn and ipsec for a couple days without being able to ping everyone. Here is a quick overview:

    MASTER SITE (PFSENSE): 10.25.0.1

    OpenVPN Tunnel: 10.30.0.1

    OLD MASTER SITE (Cisco): 10.20.0.1

    REMOTE OFFICE: 10.26.0.1

    The connection we currently have:
    10.26.0.1 (OpenVPN Client pfsense) to 10.25.0.1 (OpenVPN Server pfsense)
    10.25.0.1 (IPSEC pfsense) to 10.20.0.1 (IPSEC Cisco)

    What works:
    Everyone in the OpenVPN can ping and remote each other
    Everyone in the IPSec tunnel can ping and remote each other
    Everyone can ping and remote the MASTER SITE (PFSENSE) - 10.25.0.1

    What doesn't works:
    Ping and remote each other from IPSEC (10.20.0.1) to OPENVPN (10.26.0.1)
    When I tracert from my 10.26.0.x computer, it seems like I'm getting out with the WAN on instead of:
    10.26.0.1
    10.30.0.1 (10.25.0.1)
    10.20.0.1

    It looks like we are missing some routes, nats or rules. We don't know where to look now.
    Any tips?

    Thanks,