Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPSec Mobile Client from both Outside and Inside

    Scheduled Pinned Locked Moved IPsec
    3 Posts 2 Posters 522 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • keyserK
      keyser Rebel Alliance
      last edited by keyser

      We are using IPsec Mobile VPN for some admins to access a management network from the outside - works like a charm.

      But quite often those same people are on site (small locations) where they are only connected to the regular LAN, and due to security ALL access to management is blocked from LAN.

      Is there any way to get the same IPSec Mobile VPN working regardless if you are outside or Inside?
      The obvious way would be having the Mobile VPN listener also listening on LAN.

      But IPsec Mobile VPN server can only listen on one IP, and you cannot create multiple IPsec mobile VPN instances in pfSense.

      EDIT: IPv4 only, and we have only a few static WAN IP’s, so all internal networks are NAT’ed going to the Internet.

      Love the no fuss of using the official appliances :-)

      keyserK 1 Reply Last reply Reply Quote 0
      • keyserK
        keyser Rebel Alliance @keyser
        last edited by

        @keyser Updated: It actually works if your IPsec is running in tunnelmode and you make sure to resolve the vpn endpoint name to the public IP on the WAN interface, from the inside as well :-)

        Love the no fuss of using the official appliances :-)

        1 Reply Last reply Reply Quote 0
        • hackeronrentH
          hackeronrent
          last edited by hackeronrent

          This post is deleted!
          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.