Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - tivoti

#1
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 08:34:06 PM
Thanks everyone!!
I set up a VPN
I should have thought of that
#2
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 08:32:02 PM
Quote from: viragomann on April 22, 2025, 08:04:51 PMA client specific override is mandatory for a site to site OpenVPN to work if the tunnel network is bigger than a /30.

Thank you!!
#3
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 07:01:33 PM
Could this be the problem?

I don't understand how it works and how it is connected
Common name - test-client

#4
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 04:18:41 PM
Sent several times by mistake
#5
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 04:18:21 PM
Quote from: viragomann on April 22, 2025, 04:12:46 PMMaybe this one: https://forum.opnsense.org/index.php?action=dlattach;attach=44279;image

The problem is that the server can't ping the client's network. The client pings without problems
#6
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 04:17:40 PM
#8
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 04:06:11 PM
No restrictions
It still only works one way
#9
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 03:32:47 PM
Quote from: viragomann on April 22, 2025, 02:19:33 PMOn the OpenVPN interface you have to open the source for the remote sites LAN.

It's not quite clear. Go to Interfaces - Port assignment - Add the created VPN as an interface?
In the rules - Assignment specify LAN

#10
Virtual private networks / Re: 3 Sites OpenVPN
April 22, 2025, 11:18:37 AM
Quote from: NFKhalaychidi on April 22, 2025, 09:12:01 AM
Quote from: tivoti on April 21, 2025, 08:58:17 PMCan you show me your configuration?
Maybe I made a mistake somewhere

Attached

Looks like it's not a configuration error
Check firewalls on all devices


Help with firewall settings. I don't quite understand either.

The settings are the same on both OPNSense
#11
Virtual private networks / Re: 3 Sites OpenVPN
April 21, 2025, 08:58:17 PM
Quote from: NFKhalaychidi on February 27, 2025, 11:04:36 AMPlease help me in solving the problem.
There is a network shown in the attached diagram.
There are three OPNsense routers in it.
There is an OpenVPN tunnel (172.16.1.0/24) between routers site1-gw and site2-gw, and the same tunnel between routers site1-gw and site3-gw (172.16.2.0/24).
What should I configure so that the computer in Site 2 can access the computer in Site 3 and vice versa?
At the same time we can't set up another VPN tunnel between Site2 and Site3 for administrative reasons.
Can you show me your configuration?
Maybe I made a mistake somewhere
#12
Virtual private networks / Re: 3 Sites OpenVPN
April 21, 2025, 08:23:22 PM
Help. I can't figure out what the problem is!

VPN tunnel 10.0.2.0 is set up. I can ping Serv4 from Serv3, but not vice versa



traceroute to 192.168.5.11 (192.168.5.11), 30 hops max, 60 byte packets
1  _gateway (192.168.7.1)  1.011 ms  0.936 ms  0.912 ms
2  10.0.2.1 (10.0.2.1)  2.844 ms  2.855 ms  2.809 ms
3  192.168.5.11 (192.168.5.11)  3.948 ms  4.044 ms  3.998 ms


traceroute to 192.168.7.11 (192.168.7.11), 30 hops max, 60 byte packets
1  _gateway (192.168.5.1)  1.093 ms  1.036 ms  1.012 ms
2  * * *
3  * * *
4  * * *
5  * * *
6  * * *
7  *^C

I did everything according to the instructions but it only works in one direction.
https://docs.opnsense.org/manual/how-tos/sslvpn_instance_s2s.html