L2TP / IPSEC – with two pfsense boxes/VMs?



  • Since L2TP / IPSEC is still not currently supported…..

    Would it work to set up two separate pfSense installs, each doing just one part of the role? This could be with two pieces of physical hardware or two virtual machines.

    1st VM providing only the IPSEC tunnel:
    WAN: NIC 1
    LAN:  VM VLAN 1

    2nd VM providing only the L2TP tunnel:

    WAN: VM VLAN 1
    LAN: NIC 2

    I am not an expert with VPNs so I don't know if there's interaction between these two protocols in the usual case where they're both used on a single VPN device.