1
19.7 Legacy Series / [SOLVED - Sort of] OPNsense and VPN Tunnels with Dynamic IPs
« on: January 20, 2020, 09:24:47 am »
Hi there,
I'm new to OPNsense and I'm looking to replace my old Netscreen-25 (don't laugh) and while about everything on OPNsense looks like I'm good to go, I think I've run into a snag.
I'm currently using a mix of
Dial VPN (ok, OPNsense looks to do that via Mobile VPN)
Static VPN site-to-site tunnels (Both Sites are on Static IPs with MainMode negotiation)
Partial Static/Dynamic VPN tunnels (One site is static, the other is dynamic)
The last one looks like the sticker. In ScreenOS and JunOS (for newer Juniper units), the remote gateway doesn't necessarily have to have an IP entered in the near gateway. Just a unique host-id of sorts and aggressive mode negotiations.
Am I correct in this conclusion or is there a way to do this I'm not seeing?
Thanks!
-Ben
I'm new to OPNsense and I'm looking to replace my old Netscreen-25 (don't laugh) and while about everything on OPNsense looks like I'm good to go, I think I've run into a snag.
I'm currently using a mix of
Dial VPN (ok, OPNsense looks to do that via Mobile VPN)
Static VPN site-to-site tunnels (Both Sites are on Static IPs with MainMode negotiation)
Partial Static/Dynamic VPN tunnels (One site is static, the other is dynamic)
The last one looks like the sticker. In ScreenOS and JunOS (for newer Juniper units), the remote gateway doesn't necessarily have to have an IP entered in the near gateway. Just a unique host-id of sorts and aggressive mode negotiations.
Am I correct in this conclusion or is there a way to do this I'm not seeing?
Thanks!
-Ben