Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Virtual private networks
»
(SOLVED) OpenVPN cannot reach remote lan trough site to site Wireguard VPN
« previous
next »
Print
Pages: [
1
]
Author
Topic: (SOLVED) OpenVPN cannot reach remote lan trough site to site Wireguard VPN (Read 1485 times)
mvv_vmd
Newbie
Posts: 2
Karma: 0
(SOLVED) OpenVPN cannot reach remote lan trough site to site Wireguard VPN
«
on:
October 28, 2022, 10:35:40 am »
We have a Wireguard site to site VPN which is working. We can reach the remote lan from our local lan and vice versa. We also have OpenVPN configured on our OPNsense, clients (laptops) connect to our local lan trough this when offsite. Now I wan't these OpenVPN clients to connect to the remote lan also but I cannot get it to work.
The firewall rule for OpenVNP is to allow all from any to any right now. I have added the remote lan ip range in "IPv4 Local Network" and the client gets the route set as expected. Still no joy, I also tried enabling Redirect Gateway but then the client can only reach the local lan, not even the internet or the remote lan.
I've tested adding explicit allow rules on several points in the firewall, this makes no difference. Also I stopped and started the OpenVPN server and removed and re-added a newly downloaded OpenVPN client configuration on the laptop after every change.
We have a OpenVPN and Wireguard on separate servers in our local lan, these do work. I need to retire those so am trying to get OpenVPN working on OPNsense. Any help on this would be greatly appreciated.
«
Last Edit: October 28, 2022, 04:05:55 pm by mvv_vmd
»
Logged
Demusman
Sr. Member
Posts: 304
Karma: 13
Re: OpenVPN cannot reach remote lan trough site to site Wireguard VPN
«
Reply #1 on:
October 28, 2022, 12:15:00 pm »
You'll need to add the OpenVPN 'tunnel' network to the allowed IP's of the remote Wireguard config.
You can test it by using the packet capture. Run it on the remote box, then try to ping the remote LAN from an OpenVPN client. I would assume you will see the traffic getting to the remote site, but it will be replying out the remote WAN.
Once you add the tunnel network to allowed IP's it will know to send replies through the Wireguard tunnel.
Logged
mvv_vmd
Newbie
Posts: 2
Karma: 0
Re: OpenVPN cannot reach remote lan trough site to site Wireguard VPN
«
Reply #2 on:
October 28, 2022, 04:05:42 pm »
Great. thank you, that works
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Virtual private networks
»
(SOLVED) OpenVPN cannot reach remote lan trough site to site Wireguard VPN