<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Multiple Site to Site and routing]]></title><description><![CDATA[<p dir="auto">Hey everyone,</p>
<p dir="auto">I have about 4 site to site VPN IPSec connections setup.</p>
<p dir="auto">My main site is cloud hosted using a pfSense 2.4.4 image and connects to my clients' site for remote monitoring and management</p>
<p dir="auto">I have a pfSense at my home office that connects to my cloud hosted pfSense.</p>
<p dir="auto">What I want to do is to route traffic from my home office to my cloud server then reach my clients' networks.</p>
<p dir="auto">Is this possible to do and how?</p>
<p dir="auto">I've included a diagram</p>
<p dir="auto">Apologies for the duplicate post.  I have posted this orginally in the incorrect pfSense forum.</p>
<p dir="auto">Thanks!</p>
<p dir="auto"><img src="/assets/uploads/files/1541539710607-vpn-routing.jpg" alt="0_1541539710594_VPN routing.jpg" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/topic/137495/multiple-site-to-site-and-routing</link><generator>RSS for Node</generator><lastBuildDate>Mon, 08 Jun 2026 17:04:31 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/137495.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 06 Nov 2018 21:28:45 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Multiple Site to Site and routing on Wed, 14 Nov 2018 04:14:36 GMT]]></title><description><![CDATA[<p dir="auto">So if I did this right this is what I did but it is not working.</p>
<p dir="auto">The following was added to the customer's pfSense.</p>
<p dir="auto"><img src="/assets/uploads/files/1542168612890-screen-shot-2018-11-10-at-12.09.43-pm-resized.png" alt="0_1542168612801_Screen Shot 2018-11-10 at 12.09.43 PM.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">I added this to my Home Office pfSense</p>
<p dir="auto"><img src="/assets/uploads/files/1542168832796-screen-shot-2018-11-10-at-12.07.45-pm-resized.png" alt="0_1542168832712_Screen Shot 2018-11-10 at 12.07.45 PM.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">Nothing was added to the Cloud pfSense but no luck.</p>
<p dir="auto">Any thoughts?</p>
]]></description><link>https://forum.netgate.com/post/804624</link><guid isPermaLink="true">https://forum.netgate.com/post/804624</guid><dc:creator><![CDATA[nappy_d]]></dc:creator><pubDate>Wed, 14 Nov 2018 04:14:36 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple Site to Site and routing on Thu, 08 Nov 2018 17:42:12 GMT]]></title><description><![CDATA[<p dir="auto">Yes. That is one way to do it. The customer sites need to know to send the traffic to your home network via IPsec. Another phase 2 will do that.</p>
]]></description><link>https://forum.netgate.com/post/803326</link><guid isPermaLink="true">https://forum.netgate.com/post/803326</guid><dc:creator><![CDATA[Derelict]]></dc:creator><pubDate>Thu, 08 Nov 2018 17:42:12 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple Site to Site and routing on Thu, 08 Nov 2018 14:53:59 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/derelict">@<bdi>derelict</bdi></a> Just re-reading this.</p>
<p dir="auto">Did you mean I should create additional P2 networks between client A and my home device or on the pfSense that is cloud hosted?</p>
]]></description><link>https://forum.netgate.com/post/803236</link><guid isPermaLink="true">https://forum.netgate.com/post/803236</guid><dc:creator><![CDATA[nappy_d]]></dc:creator><pubDate>Thu, 08 Nov 2018 14:53:59 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple Site to Site and routing on Wed, 07 Nov 2018 13:52:10 GMT]]></title><description><![CDATA[<p dir="auto">No, they are not averse to this.</p>
]]></description><link>https://forum.netgate.com/post/802877</link><guid isPermaLink="true">https://forum.netgate.com/post/802877</guid><dc:creator><![CDATA[nappy_d]]></dc:creator><pubDate>Wed, 07 Nov 2018 13:52:10 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple Site to Site and routing on Wed, 07 Nov 2018 00:05:51 GMT]]></title><description><![CDATA[<p dir="auto">OK</p>
<p dir="auto">So to Client A you have a Phase 2 like this:</p>
<p dir="auto">pfSense 10.1.96.0/24 &lt;-&gt; 10.1.1.0/24 Client A</p>
<p dir="auto">Are the clients averse to you adding more Phase2 networks to their tunnels? Because this would make it work:</p>
<p dir="auto">Phase 2 Networks:</p>
<p dir="auto">pfSense 10.1.96.0/24 &lt;-&gt; 10.1.1.0/24 Client A<br />
pfSense 172.16.0.0/24 &lt;-&gt; 10.1.1.0/24 Client A</p>
<p dir="auto">pfSense 10.1.96.0/24 &lt;-&gt; 172.16.0.0/24 Home<br />
pfSense 10.1.1.0/24 &lt;-&gt; 172.16.0.0/24 Home</p>
]]></description><link>https://forum.netgate.com/post/802871</link><guid isPermaLink="true">https://forum.netgate.com/post/802871</guid><dc:creator><![CDATA[Derelict]]></dc:creator><pubDate>Wed, 07 Nov 2018 00:05:51 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple Site to Site and routing on Tue, 06 Nov 2018 23:39:23 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/viragomann">@<bdi>viragomann</bdi></a> All site to site VPN connections are using IPSec</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/derelict">@<bdi>Derelict</bdi></a></p>
<ul>
<li>
<p dir="auto">The p2 network at my home office is 172.16.0/24</p>
</li>
<li>
<p dir="auto">The p2 network on my cloud pfSense is 10.1.96.0/24</p>
</li>
</ul>
]]></description><link>https://forum.netgate.com/post/802868</link><guid isPermaLink="true">https://forum.netgate.com/post/802868</guid><dc:creator><![CDATA[nappy_d]]></dc:creator><pubDate>Tue, 06 Nov 2018 23:39:23 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple Site to Site and routing on Tue, 06 Nov 2018 21:53:03 GMT]]></title><description><![CDATA[<p dir="auto">And, What are the existing Phase 2/traffic selector networks between your clients and the central pfSense? How do those relate to everyone.</p>
<p dir="auto">You might be able to play some games with NAT but it depends on what is where.</p>
]]></description><link>https://forum.netgate.com/post/802856</link><guid isPermaLink="true">https://forum.netgate.com/post/802856</guid><dc:creator><![CDATA[Derelict]]></dc:creator><pubDate>Tue, 06 Nov 2018 21:53:03 GMT</pubDate></item><item><title><![CDATA[Reply to Multiple Site to Site and routing on Tue, 06 Nov 2018 21:36:06 GMT]]></title><description><![CDATA[<p dir="auto">Which kind of VPN is the that one between your home office and the cloud hosted pfSense, is it also an IPSec?</p>
]]></description><link>https://forum.netgate.com/post/802852</link><guid isPermaLink="true">https://forum.netgate.com/post/802852</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Tue, 06 Nov 2018 21:36:06 GMT</pubDate></item></channel></rss>