• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Access Remote IPSec Site-to-Site Network via OpenVPN

Scheduled Pinned Locked Moved OpenVPN
4 Posts 2 Posters 474 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • G
    groliveira18
    last edited by Aug 1, 2021, 3:07 PM

    Guys,

    I have a pfsense with an OpenVPN Server configured and working ok! I also have a Site-to-Site IPSec VPN for a branch office.

    I would like my OpenVPN clients to be able to access the remote network from my IPSec VPN, but I cannot find a solution. Try using the push "route xxx.xxx.xxx.xxx. Xxx.xxx.xxx.xxx".

    pfSense Network: 172.17.xxx.xxx/16
    OpenVPN tunnel: 10.100.xxx.xxx/24
    Remote Network IPSec: 192.168.xxx.xxx/24

    Is there any practical solution to solve this problem? On an OpenVPN installed on a CentOS7 I managed to solve this using the "push route". But unfortunately I don't find a solution for pfSense.

    V 1 Reply Last reply Aug 1, 2021, 6:37 PM Reply Quote 0
    • V
      viragomann @groliveira18
      last edited by Aug 1, 2021, 6:37 PM

      @groliveira18
      Setting the routes in OpenVPN is only the half part of the solution, you also have to set the routes in IPSec.

      Instead of "push route..." you should put the remote network behind the IPSec into the "Local Networks" box in the OpenVPN server settings.

      In the IPSec settings you have to add an additional phase 2 for the OpenVPN tunnel and the remote network network (10.100.xxx.xxx/24 <> 192.168.xxx.xxx/24) on both endpoint.

      G 2 Replies Last reply Aug 1, 2021, 7:28 PM Reply Quote 0
      • G
        groliveira18 @viragomann
        last edited by Aug 1, 2021, 7:28 PM

        This post is deleted!
        1 Reply Last reply Reply Quote 0
        • G
          groliveira18 @viragomann
          last edited by Aug 1, 2021, 7:32 PM

          @viragomann man, thank you immensely! I had never thought about it from that perspective. Worked perfectly!

          1 Reply Last reply Reply Quote 0
          4 out of 4
          • First post
            4/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
            This community forum collects and processes your personal information.
            consent.not_received