Access to IPSec on VLAN
-
Not sure to post this here, or in routing, if it's misplaced, let me know.
I'm trying to get the following setup to work, but failing spectacularly.
There's an IPSec tunnel configured on my pfsense box which is working fine. It's running on a VLAN and everything on that VLAN can use the tunnel fine.I've got an AP on the LAN (not VLAN) that needs to use a RADIUS server on the other end of the tunnel.
How do I set it up so the AP can contact the RADIUS server? I'm thinking I need to set up routing of some sort and configure firewall rules, but exactly what is where I come up short.The setup is this:
LAN 192.168.0.0/24
VLAN 192.168.10.0/24
IPSec tunnel 10.1.0.0/23I'm probably missing some details, that I can't see, if so, please let me know.
-
Solved it by adding a P2 for the LAN and blocking all traffic except 1812/tcp from the AP.