Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPSec VPN from home to Internet definition ?

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    4 Posts 3 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • _
      __nicolas__
      last edited by

      Hello all,

      I am trying to do the following using pfs 2.0 BETA1 (lastest from today).
      192.168.0.0/24 – Home-GW ==vpn=== Remote GW -- 0.0.0.0/0

      The idea is to "route" everything from 192.168.0.0/24 to Internet through the IPSec VPN.

      I did that on 1.2.3-RELEASE, but now, when setting a destination as "0.0.0.0/0", it raises an error (0 bit as a network mask is now refused).

      It is a bug ? Or am i wrong somewhere ?

      Do you have any idea ?

      Thank you.

      Nicolas.

      Nicolas

      1 Reply Last reply Reply Quote 0
      • J
        jlepthien
        last edited by

        What exactly are you trying to acomplish? That doesn't make any sense. Or do you want to secure your WLAN or something? Home-GW is pfSense? Who is Remote GW?

        | apple fanboy | music lover | network and security specialist | in love with cisco systems |

        1 Reply Last reply Reply Quote 0
        • _
          __nicolas__
          last edited by

          Hi,

          yes it makes sense ;-)

          I am a remote worker, at home. I am accessing many Internet networks through a centralized GW. I am using a dynamic IP, and I need a fixed IP for network access control.
          I want to use my VPN link to access between home and work for all destinations.

          So, I am configuring my local GW (not a pfsense, a linux IPSec gateway) to build a network using the following topology:
          192.168.1.0/24 – GW (public dynamic IP) ======== PFS 2.0 ------ Internet

          My question is only about topology and VPN. The destination topology (from my home point of view) is 0.0.0.0/0 (all networks).

          We are planning to replace commercial IPSec solution using (another solution, so why not) pfsense, but NAT-T is required (so, we are using pfsense 2.0 .....)
          So, we are trying to declare an IPSec configuration in the pfsense GUI, using local network 0.0.0.0/0.
          But it is forbidden by the GUI.

          Nicolas.

          Nicolas

          1 Reply Last reply Reply Quote 0
          • C
            cmb
            last edited by

            Confirmed. http://redmine.pfsense.org/issues/show/352

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.