Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Un livebox, Un connection VPN et un reseau industriel

    Scheduled Pinned Locked Moved Français
    2 Posts 2 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      wowoteur
      last edited by

      Bonjour,
      J'ai besoin de votre aide.
      J'ai fait un serveur pfsense.
      J'ai connecté mon réseau livebox( j'ai enlevé le dhcp et mis ma carte réseau pfsense en dmz) 192.168.1.0
      J'ai connecté un modem vpn d'un de nos client. 192.168.71.0 (passerelle 71.1, pfsense 71.41 et mysql 71.42).
      Je veux que mon réseau Livebox communique avec les 3 machines du reseau VPN et seulement celle-ci.

      Voici les regles que j'ai fait :
      VPN:
      Proto Source Port Destination Port Gateway Queue Schedule Description
      [add new rule]
      [click to toggle enabled/disabled status] * 192.168.71.41 * 192.168.1.0/24 * * none   Modem Stella > Livebox 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.1.0/24 * 192.168.71.41 * * none   Livebox > Modem Stella 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.42 * 192.168.71.41 * * none   Mysql > pfsense 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.41 * 192.168.71.42 * * none   pfsense > Mysql 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.42 * 192.168.71.1 * * none   Mysql > Routeur stella 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.41 * 192.168.71.1 * * none   pfsense > Routeur stella 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.1 * 192.168.71.42 * * none   Modem Stella > Mysql 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.1 * 192.168.71.41 * * none   Modem Stella > pfsense 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.1.0/24 * 192.168.71.42 * * none   LIVEBOX > STELLA 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.42 * 192.168.1.0/24 * * none   STELLA > LIVEBOX 
      [edit rule]
      [delete rule]

      Livebox:
      ID Proto Source Port Destination Port Gateway Queue Schedule Description
      [add new rule]
        * * * LIVEBOX Address
      80 * * Anti-Lockout Rule
      [edit rule]
      [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.71.41 * 192.168.1.0/24 * * none   Routeur Stella > LIVEBOX 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.1.0/24 * 192.168.71.41 * * none   LIVEBOX > Routeur Stella 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status] * 192.168.1.0/24 * 192.168.71.42 * * none   LIVEBOX > STELLA 
      [edit rule]
      [delete rule] [add a new rule based on this one]
      [click to toggle enabled/disabled status]

      • 192.168.71.42 * 192.168.1.0/24 * * none   STELLA > LIVEBOX

      Est-ce que cela vous semble bon?
      Merci d'avance.

      1 Reply Last reply Reply Quote 0
      • C
        ccnet
        last edited by

        Est-ce que cela vous semble bon?

        A défaut de l'être c'est parfaitement obscure et brouillon.
        On ne sait pas de quel type de vpn il s'agit, où est la machine pfsense, modem vpn qu'est ce que cela signifie exactement.
        Un schéma et un plan d'adressage de l'ensemble serait un bon début. Pour les règles indiquées, on ne sait pas sur quel dispositif, quelle interface. Un problème bien posé est à moitié résolu. Commençons pas là.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.