OPNsense Forum

English Forums => General Discussion => Topic started by: lonblu on September 04, 2017, 05:58:15 pm

Title: Routable ipsec vpn traffic
Post by: lonblu on September 04, 2017, 05:58:15 pm
I am posting here the same I have posted on Pfsense forum. I am using both but i have configure Pfsense only with ikev2 ipsec vpn. Is Opnsense any better at this?


Can I add a second Local subnet to my Ipsec configuration?

How do I forward vpn traffic to Internet?

At the moment I have only access to the configured Local subnet in Phase 2.

I cannot use the remote vpn gateway on my Windows laptop, because it won't connect to the internet, nor can I reach a remote subnet reachable from the Local subnet non-vpn clients.


With microsoft pptp VPN the client is put directly in the local subnet, and can use the remote gateway, and can access other subnets.

I have followed this article
https://doc.pfsense.org/index.php/IKEv2_with_EAP-MSCHAPv2

There is no gateway, the first client gets the .1 address. I have tried to add firewall rules to allow the traffic, but it does not seem to help.

Again, is vpn traffic routable?

Thanks
Title: Re: Routable ipsec vpn traffic
Post by: Ciprian on September 04, 2017, 07:28:10 pm
I can only assure you about OpenVPN and PPTP (I didn't use IPsec), you can have internet traffic through the tunnel with both OpenVPN (site-to-site & client VPN) and with clients connected through PPTP.

There are options to force the traffic through VPN, also settings for GW and DNS to be sent to connected clients.

I hope it helps! :)