Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Interfaces GRE

    IPsec
    3
    6
    3963
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      Stephane last edited by

      Hi all,
      I'm preparing a full mesh VPN IPSec over GRE design. We will have many sites.
      How many GRE interfaces is possible to set in PFSense 2.0 ?

      Thanks for your help.

      Stephane

      1 Reply Last reply Reply Quote 0
      • jimp
        jimp Rebel Alliance Developer Netgate last edited by

        There aren't any limits in the GUI

        Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • D
          dhatz last edited by

          With regard to creating fully-meshed IPSEC VPNs consisting of many sites, does pfsense support something like Cisco's VTI (Virtual Tunnel Interface) tunnel technology ?

          Juniper calls it "Secure Tunnel Interface", Fortinet calls it "Interface mode IPSEC" and all are compatible with each other..

          1 Reply Last reply Reply Quote 0
          • jimp
            jimp Rebel Alliance Developer Netgate last edited by

            pfSense 2.0 support both Tunnel mode (the mode everyone is used to) as well as Transport mode, which just encrypts between the endpoints, and then you run your own GIF/GRE/Whatever on top of that.

            I'm not sure what mode they run in for that kind of setup, but either way it can probably be made to work.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • D
              dhatz last edited by

              Thx jimp, I'll look into it.

              Basically what I had in mind was a setup of OSPF over GRE over IPSEC, such as the one described at http://forums.juniper.net/t5/SRX-Services-Gateway/srx-210-and-cisco-870-ospf-over-gre-over-ipsec/td-p/35672

              1 Reply Last reply Reply Quote 0
              • S
                Stephane last edited by

                Hi dhatz,

                That's what I'm trying to do also. Although I'm able to ping all hosts, I've an issue when I try to access a webpage. See my other post : http://forum.pfsense.org/index.php/topic,41522.0.html.

                Feel free to ask question about the conf if you need help.

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post