Openvpn Site-2-Site only from one Firewall

Started by netzfenster, September 06, 2023, 10:59:17 AM

Previous topic - Next topic
Hello,
my setup ist:

2 x opnsense-business
Version   23.4.2

I want a site 2 site vpn
Networks:
192.168.77.0/24
192.168.22.0/24

On server i used: SSL + TLS + User auth

The Ovpn Tunnel is up without any erros:

2023-09-06T10:52:49   Notice   openvpn_server2   nf-bbm-SSL-VPN/XX.85.75.25:35027 MULTI_sva: pool returned IPv4=10.0.7.6, IPv6=(Not enabled)   
2023-09-06T10:52:48   Notice   openvpn   user 'nf-bbm-SSL-VPN' authenticated using 'Local Database'   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 [nf-bbm-SSL-VPN] Peer Connection Initiated with [AF_INET]109.85.75.25:35027   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_COMP_STUBv2=1   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_COMP_STUB=1   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_LZO_STUB=1   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_PROTO=990   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_CIPHERS=AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_NCP=2   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_MTU=1600   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_TCPNL=1   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_PLAT=freebsd   
2023-09-06T10:52:48   Notice   openvpn_server2   XX.85.75.25:35027 peer info: IV_VER=2.6.5   
2023-09-06T10:52:47   Notice   openvpn_server2   TCP connection established with [AF_INET]109.85.75.25:35027   
2023-09-06T10:42:56   Error   openvpn_server2   nf-bbm-SSL-VPN/XX.85.75.25:32247 Connection reset, restarting
  • [/sup]


    But i can't ping from both sites the other.

    From Client site, from terminal of OPNSense ping works.
    From Server site from terminal of OPNSense ping NOT works.

    I have no idea why.
    Thank you in advance
    Micha

du bist hier im deutschen bereich
Internet: Willy.tel Down: 1Gbit/s, UP: 250Mbit/s Glasfaser  |
Router/Firewall: pfSense+ 23.09  |
Hardware: Netgate 6100