Local VPN endpoint accessing local app in pfSense?
another company wants to send us messages via IPsec VPN.
I want to run the receiver on my pfSense CE box itself, its just a small script doing conversion and forward. It does not autostart as script in
/usr/local/etc/rc.d/, but using
@rebootin crontab does the trick.
How should the local network in IPsec Phase 2 be set up?
Should I setup the "Local network" just as single IP address 172.20.20.20, have the IP also as virtual IP on the box and have the app listen on that IP?
Or should I rather use a local network like 172.20.20.0/24, have the IP 172.20.20.20 just as virtual IP on the box and have the app listen on that IP?
Will either option work? Will packets be arriving at my local app automatically? Is there another option?