• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Extending LAN Subnet Between 2 Datacenters?

Scheduled Pinned Locked Moved General pfSense Questions
10 Posts 4 Posters 1.5k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M
    mevans336
    last edited by Sep 12, 2014, 4:22 PM

    Can anyone point me to the recommended method for extending a LAN subnet between two datacenters so they can share the same private IP address space on the LAN side of the pfSense?

    Example:

    192.168.1.1 LAN <–-> WAN <------> Public Internet <------> WAN <---> LAN 192.168.1.1

    1 Reply Last reply Reply Quote 0
    • J
      jasonlitka
      last edited by Sep 12, 2014, 4:47 PM

      OpenVPN tap connection.  I'd try and do without it if you could though.  Why do you need the same network on each side?

      I can break anything.

      1 Reply Last reply Reply Quote 0
      • M
        mevans336
        last edited by Sep 12, 2014, 4:52 PM

        @Jason:

        OpenVPN tap connection.  I'd try and do without it if you could though.  Why do you need the same network on each side?

        We're using Hyper-V replication to replicate a bunch of VMs. It will be much more seamless if I can just power them on without altering IPs and so forth.

        Does tap bridging work with 2.1? I thought 2.0 or 2.1 broke it?

        1 Reply Last reply Reply Quote 0
        • D
          Derelict LAYER 8 Netgate
          last edited by Sep 13, 2014, 10:59 PM

          I take it a nice layer 2 metro-e between the two is not an option?

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • M
            mevans336
            last edited by Sep 13, 2014, 11:16 PM

            @Derelict:

            I take it a nice layer 2 metro-e between the two is not an option?

            That would make my life so much easier, but is not in the budget … yet.

            1 Reply Last reply Reply Quote 0
            • K
              kejianshi
              last edited by Sep 14, 2014, 12:49 PM

              Have you considered a full mesh network VPN?

              1 Reply Last reply Reply Quote 0
              • M
                mevans336
                last edited by Sep 14, 2014, 2:42 PM

                @kejianshi:

                Have you considered a full mesh network VPN?

                I'm not sure what that is and what I found on Google isn't much help. Can you elaborate?

                1 Reply Last reply Reply Quote 0
                • K
                  kejianshi
                  last edited by Sep 14, 2014, 2:45 PM

                  I was talking about the TINC package.

                  1 Reply Last reply Reply Quote 0
                  • M
                    mevans336
                    last edited by Sep 14, 2014, 4:57 PM Sep 14, 2014, 4:37 PM

                    @kejianshi:

                    I was talking about the TINC package.

                    That is very, very cool. I've added it to my list to try as the first solution.

                    EDIT:

                    Wow, that was super easy and works very well. I think I'm going to use it.

                    1 Reply Last reply Reply Quote 0
                    • K
                      kejianshi
                      last edited by Sep 14, 2014, 5:37 PM Sep 14, 2014, 5:26 PM

                      Yep - Its pretty cool for what you need.

                      There is another guy who is trying to get 3 or 4 separate sites communicating well - For him, this is probably also the best / easiest option.

                      But easy is relative - Maybe he will see your post and ask your instruction.

                      1 Reply Last reply Reply Quote 0
                      10 out of 10
                      • First post
                        10/10
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                        This community forum collects and processes your personal information.
                        consent.not_received