Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    L2 LAN - LAN bridging possible over L3 WAN?

    General pfSense Questions
    3
    3
    868
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      TedStriker
      last edited by

      Hi.

      Situation is two of our sites currently have a BT LES (Lan Extension Service) linking them and we've had an urgent notice that this will be ceased within days. As there isn't time to convert each site to a unique IP addressing scheme with local DHCP servers etc on each site, I need a quick and dirty way of maintaining the L2 connectivity between the sites.

      Each site has a WAN router and traffic is routed and allowed to pass between the two but we cannot touch the config of the WAN routers. Currently these routers are only used to access resources external to the two sites.

      I know it's possible to create a VPN tunnel between the sites over the WAN but this wouldn't work without re IPing everything into one subnet per site.

      So my question is - can I use a pfSense box on each site to create a L2 bridge/tunnel over the L3 WAN, and how would I go about it?

      Thanks,
      Graham

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        Probably an OpenVPN TAP mode connection. Not a recommended config but should provide enough google terms for you.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • ?
          Guest
          last edited by

          Might be that a L2TP/IPSec tunnel would matching right?

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.