Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Ipsec clients x openvpn clients communication

    Scheduled Pinned Locked Moved IPsec
    2 Posts 2 Posters 233 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      diegoavelinogomes
      last edited by

      Hello for all

      I have a Firewall called "A" that connects to Firewall called "B" through an IPSEC Tunnel.

      I also have some clients that connect to Firewall "B" using OpenVPN.

      I need to allow the clients that are behind Firewall "A" (which has an IPSEC with Firewall "B") to communicate with the clients that are connected to OpenVPN on site "B".

      I've been racking my brains for a week and I can't do it.

      Thanks!

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @diegoavelinogomes
        last edited by

        @diegoavelinogomes
        You need to add an IPSec phase 2 for the OpenVPN tunnel network:
        A:
        local: A clients subnet
        remote: OpenVPN tunnel subnet
        B:
        local: OpenVPN tunnel subnet
        remote: A clients subnet

        In the OpenVPN access server settings you have to add the "A clients subnet" to the "Local networks".

        However, OpenVPN clients might block access from the remote site by their own firewalls by default. You will have to configure their firewalls accordingly.
        Possibly masquerading the source IP with the OpenVPN interface IP can circumvent firewall restrictions.

        1 Reply Last reply Reply Quote 1
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.