Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can I force all traffic over IPSEC VPN using 0.0.0.0/0?

    Routing and Multi WAN
    2
    2
    1605
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      Richie4236
      last edited by

      When setting up an IPSEC VPN between to pfSense firewalls, is it possible to set a remote subnet of 0.0.0.0/0 and effectively force all traffic over the VPN and allow nothing to the Internet?

      Thanks,

      Rich

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG
        GruensFroeschli
        last edited by

        afaik no.
        I dont use ipsec myself so i cant say for sure, but from what i read you cannot route over ipsec.

        This is possible with openVPN.
        (although not with a 0.0.0.0/0 route, but with 2 routes:
        0.0.0.0/1 and 128.0.0.0/1)

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • First post
          Last post