Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
19.7 Legacy Series
»
OpnSense to OpnSense VPN
« previous
next »
Print
Pages: [
1
]
Author
Topic: OpnSense to OpnSense VPN (Read 1935 times)
romey2042
Newbie
Posts: 2
Karma: 0
OpnSense to OpnSense VPN
«
on:
September 09, 2019, 09:06:30 pm »
So I have a OpnSense box at my house and it is connected to an OpnSense VM in the Azure cloud. I have them both configured the same and the IPSec VPN is up. From the Azure side I can ping the other side, however from home I can not ping anything in azure. I have the routes set up. Am I missing something, could it be because Azure is nat'd and I need something there? I have the NSG set to allow all traffic in.
(Home: 10.1.10.0/24)
(Azure: 10.0.0.0/24)
Has anyone got this to work?
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: OpnSense to OpnSense VPN
«
Reply #1 on:
September 09, 2019, 09:35:16 pm »
Is this a routed ipsec tunnel? Can you check if you have ipsec networks in automatic outbound nat (which doesn't work)?
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
sl1200mk2
Newbie
Posts: 1
Karma: 0
Re: OpnSense to OpnSense VPN
«
Reply #2 on:
October 24, 2019, 05:44:42 pm »
I had basically this same issue doing a lab with Opnsense to Opnsense (both VM's within Azure). I could ping both sides of the tunnel interfaces from within each Opnsense VM, but nothing else. My issue was having not enabled 'IP Forwarding' on the NIC's of each VM within the Azure portal. Once that was completed, everything was accessible on both sides.
"Any network interface attached to a virtual machine that forwards network traffic to an address other than its own must have the Azure Enable IP forwarding option enabled for it. "
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-networks-udr-overview
Hopefully this helps someone else.
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: OpnSense to OpnSense VPN
«
Reply #3 on:
October 24, 2019, 08:03:20 pm »
Thanks for sharing
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
19.7 Legacy Series
»
OpnSense to OpnSense VPN