Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    (Solved) IPSEC Host to Host

    Scheduled Pinned Locked Moved IPsec
    2 Posts 1 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Mindesbunister
      last edited by

      Hello,

      i have difficulties getting my head around this.

      Current Status:
      Local LAN: 192.168.14.0/23
      PFsense LAN: 192.168.14.10/23
      Pfsense Virtual IP on LAN Interface: 192.168.14.168
      Remote Server to be reached: 192.168.149.3:66515

      Goal: establish ipsec tunnel host to host and make it possible that multiple users can connect to remote sharepoint server (192.168.149.3)

      reason for host to host and not complete subnet: the opposing site has to many clients as they open an entire subnet. So they only provide the neccesary ip.

      what has been done so far: ip sec tunnel is established.

      Problem to solve (main question): i dont know how (maybe it is not even possible) to get my clients get connect to 192.168.149.3:65515 using the established host to host vpn connection. If i add a route that says: "if you wanna go to 192.168.149.3:65515, then use 192.168.14.168!" it does not work.

      Additional info: on the opposing site every port is blocked except 65515.

      Any help is greatly appreciated.

      kind regards,

      1 Reply Last reply Reply Quote 0
      • M
        Mindesbunister
        last edited by

        i have found the solution. The hint in this topic was a great help regarding the NAT. After doing as he advised, it worked straight away

        https://forum.pfsense.org/index.php?topic=81573.0

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.