OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 16.7 Legacy Series »
  • OpenVPN Bridge
« previous next »
  • Print
Pages: [1]

Author Topic: OpenVPN Bridge  (Read 5410 times)

s4rs

  • Full Member
  • ***
  • Posts: 113
  • Karma: 4
    • View Profile
OpenVPN Bridge
« on: December 09, 2016, 12:43:56 pm »
Is it possible and if so is there a guide to setup and openvpn bridge instead of a tunnel? This would be a client to server not site to site.
« Last Edit: December 09, 2016, 12:45:38 pm by s4rs »
Logged

bartjsmit

  • Hero Member
  • *****
  • Posts: 1604
  • Karma: 167
    • View Profile
Re: OpenVPN Bridge
« Reply #1 on: December 09, 2016, 01:20:06 pm »
Yes, configure the VPN with a tap (layer 2) instead of a tun (layer 3) device on both ends.

Bart...
Logged

s4rs

  • Full Member
  • ***
  • Posts: 113
  • Karma: 4
    • View Profile
Re: OpenVPN Bridge
« Reply #2 on: December 09, 2016, 01:22:51 pm »
So I can follow the OpenVPN road warrior guide and just select tap instead of tun? what about the IP address side of things? Or does the fill in form change when you select tap?
Logged

bartjsmit

  • Hero Member
  • *****
  • Posts: 1604
  • Karma: 167
    • View Profile
Re: OpenVPN Bridge
« Reply #3 on: December 09, 2016, 02:14:49 pm »
I haven't used it myself but the tap device let's the client use the internal dhcp. What is your requirement for bridging?

Bart...
Logged

s4rs

  • Full Member
  • ***
  • Posts: 113
  • Karma: 4
    • View Profile
Re: OpenVPN Bridge
« Reply #4 on: December 09, 2016, 03:04:51 pm »
Pretty self indulgent. I have Verizon FIOS and they allow in-home devices to act as a fully functional cable box/tv. When you are out of the house you have a limited channel set. I tend to travel and would like to have access to my local stations. I could have cheaped out and when with a slingbox but I figured I would take the time and learn about routers, VPNs etc so I went this route.

I could try the tunnel route but since the request would be coming from a different subnet I doubt Verizon would allow access. So I think a bridge is the right way to go. I was hoping someone did it before. I looked at pfsense and there was talk about having to add a plugin and wasn't sure if I had to do the same with Opnsense
Logged

bartjsmit

  • Hero Member
  • *****
  • Posts: 1604
  • Karma: 167
    • View Profile
Re: OpenVPN Bridge
« Reply #5 on: December 11, 2016, 12:48:28 am »
You could try a NAT for your routed tunnel so the traffic will appear to come from the LAN interface of the firewall.

Bart...
Logged

s4rs

  • Full Member
  • ***
  • Posts: 113
  • Karma: 4
    • View Profile
Re: OpenVPN Bridge
« Reply #6 on: December 11, 2016, 12:59:05 pm »
How would I configure inbound NAT?
Logged

bartjsmit

  • Hero Member
  • *****
  • Posts: 1604
  • Karma: 167
    • View Profile
Re: OpenVPN Bridge
« Reply #7 on: December 12, 2016, 10:50:33 am »
Good question! I had it set up on a Linux OpenVPN server but I can't see the option in OPNsense. Sorry

Bart...
Logged

s4rs

  • Full Member
  • ***
  • Posts: 113
  • Karma: 4
    • View Profile
Re: OpenVPN Bridge
« Reply #8 on: December 12, 2016, 09:05:50 pm »
Thanks anyone else know?
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 16.7 Legacy Series »
  • OpenVPN Bridge
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2