OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of Akitoo »
  • Show Posts »
  • Topics
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Topics - Akitoo

Pages: [1]
1
Virtual private networks / Site2Site IPsec connecting 2 corporate networks
« on: October 30, 2020, 10:25:18 am »
We tried to set up a Site2Site connection with IPsec in OPNsense, however after many days of trial and error it just wouldn't work.
We were given an IPsec configuration, put that into OPNsense and made, as far as we knew, all necessary changes, to make it work. The farthest we got is, that we were able to ping the other side, but its responses didn't arrive back. We tried a lot of different possibilities, but they did not work and to this day, we don't know too precisely what exactly the error was and why it did not work.
Due to trying to avoid the sunk cost fallacy, we wanted to get it to work, so we just set up an empty Linux server, installed the IPsec configuration, just as we did in OPNsense, and added a single firewall rule:

Code: [Select]
iptables -t nat -A postrouting -j MASQUERADE
Now it just works, without any issues.

Obviously, we are not networking experts (we both are mainly Software Engineers and similar positions). That's why you can maybe help us deduct, what went wrong with the installation of this scenario through OPNsense and how I could possibly fix it (the other one gave up on OPNsense, due to the frustration arising from this issue). I think there is only one small bit missing from the setup in OPNsense, that's why I don't just want to let it go and be damned.

P.S.: To add to the misery, we have extensive knowledge of Linux, but only beginner knowledge at most with *BSD.

2
19.7 Legacy Series / Create static IP addresses for clients connecting to OpenVPN on OPNsense
« on: November 28, 2019, 02:26:00 pm »
I want to do something like this:
https://openvpn.net/vpn-server-resources/assigning-a-static-vpn-client-ip-address-to-a-user/

I need to assign static IP addresses to each client that connects to a specific OpenVPN server. They need to be persistent through as many environment changes as possible.

How can I achieve that with OPNsense?

Pages: [1]
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2