(Solved) IPSEC Host to Host



  • Hello,

    i have difficulties getting my head around this.

    Current Status:
    Local LAN: 192.168.14.0/23
    PFsense LAN: 192.168.14.10/23
    Pfsense Virtual IP on LAN Interface: 192.168.14.168
    Remote Server to be reached: 192.168.149.3:66515

    Goal: establish ipsec tunnel host to host and make it possible that multiple users can connect to remote sharepoint server (192.168.149.3)

    reason for host to host and not complete subnet: the opposing site has to many clients as they open an entire subnet. So they only provide the neccesary ip.

    what has been done so far: ip sec tunnel is established.

    Problem to solve (main question): i dont know how (maybe it is not even possible) to get my clients get connect to 192.168.149.3:65515 using the established host to host vpn connection. If i add a route that says: "if you wanna go to 192.168.149.3:65515, then use 192.168.14.168!" it does not work.

    Additional info: on the opposing site every port is blocked except 65515.

    Any help is greatly appreciated.

    kind regards,



  • i have found the solution. The hint in this topic was a great help regarding the NAT. After doing as he advised, it worked straight away

    https://forum.pfsense.org/index.php?topic=81573.0