Anyway to use IPsec on a site-to-site VPN with one side dynamic?



  • I have bunches of IPsec connections running under PFsense, and they work well.  I need to setup a VPN connection to a location that only has a dynamic IP address, but know the address will change at times.

    Is there anyway to use IPsec to setup a site to site link, if one of the two links is dynamic??

    I have 10.3.0.0/16 on the LAN with a static, and want to use 10.4.0.0/16 on the side with the dynamic IP.  I have a PFsense box on each side running the current 2.4.1 code.

    Any help or hints on if this is possible would be appreciated..


  • Rebel Alliance Developer Netgate

    Sure, you just need to setup a dynamic DNS hostname on the side that changes. Then on the static side, use that hostname as the peer address.


Log in to reply