Pfsense IPsec configuration Working example wanted/Bounty
-
Dear all
I need an axample of a working IPSec configuration.
A vendor needs permanent access to a local machine behind pfsense.
So the tunnel should be limited to only a segment of the LAN/Specific IP's.
Alternative is to hire a know it all vpn guy to help set it up. Its urgent.
-
@cool_corona
IPsec Site-to-Site VPN Example with Pre-Shared KeysIf you want to allow access to a small segment of the LAN subnet you can state this in the phase 2 at "Local Network", type "Network".
Additionally you need a firewall rule on the IPSec tab to allow access. Here you can also state an alias with single IPs and ports as destination to lock permission down to the necessary destinations only.