OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Tutorials and FAQs »
  • HOWTO - Routing Traffic over Private VPN
« previous next »
  • Print
Pages: 1 ... 4 5 [6] 7 8 9

Author Topic: HOWTO - Routing Traffic over Private VPN  (Read 158712 times)

mimugmail

  • Hero Member
  • *****
  • Posts: 6293
  • Karma: 432
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #75 on: December 13, 2018, 08:06:39 pm »
Screenshots of Gateways, Gateway group, Firewall Rule and outbound Nat
Logged
Twitter: mimu_muc
WWW: www.routerperformance.net
Support plans: https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German): https://opnsense.max-it.de/

PaoPao

  • Newbie
  • *
  • Posts: 21
  • Karma: 0
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #76 on: December 17, 2018, 01:40:49 pm »
Here are the pictures of my configuration.
However I am not sure that it works as 100%.

I just noticed that the floating rule doesn't work (:

Are there any other errors in the configuration?
(Except copy errors in the filter descriptions)

Gateway (Single)


Gateway (Group)


Outbound


Floating rules


LAN rules


I also use Pi-Hole (Raspi) with Outbound DNS over TLS.
« Last Edit: December 17, 2018, 02:31:45 pm by PaoPao »
Logged

tibere86

  • Newbie
  • *
  • Posts: 10
  • Karma: 0
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #77 on: December 17, 2018, 06:57:07 pm »
Quote from: PaoPao on December 17, 2018, 01:40:49 pm
Here are the pictures of my configuration.
However I am not sure that it works as 100%.
What is in your "N_LOCALNETS" Alias? Mind sharing a screenshot?
Logged

PaoPao

  • Newbie
  • *
  • Posts: 21
  • Karma: 0
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #78 on: December 18, 2018, 02:30:23 pm »
Hi,

here the screenshot:


If you want the floating rule to work check this option:
Uncheck [ ] Skip rules when gateway is down
« Last Edit: December 18, 2018, 03:20:33 pm by PaoPao »
Logged

rdofl

  • Newbie
  • *
  • Posts: 2
  • Karma: 0
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #79 on: December 31, 2018, 11:59:50 am »
Edited - I've posted my question in a new thread.
« Last Edit: January 02, 2019, 01:27:47 am by rdofl »
Logged

HA4g3n

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #80 on: January 09, 2019, 08:49:08 pm »
 Hello,

Im been reading several posts about OPNsense and OpenVPN.
Im getting local DHCP clients getting routed throuh the VPN and its working.

But, i need to PortForward traffic over external VPN to a machine inside the LAN that uses static mapping but i really cant make it work..

Ill posty my config:

VPN:
Infinitely resolve remote server - Ticked
Don't pull routes - Unticked
Don't add/remove routes - Ticked
UDP enabled

Systsem\Gateways\Single:
WAN_GWv4 (default)   WAN

Port Forward:
OpenVPN:
TCP/UDP
NAT reflection - Enabled
Filter rule association - Rule Nat

Firwall\Settings\Advanced:
Reflection for port forwards - Ticked
Reflection for 1:1 - Unticked
Automatic outbound NAT for Reflection - Ticked

Running OPNsense 18.7.10-amd64

OVPN over openVPN.
WAN 172.22.1.4 - Edgemax 172.22.1.4 - ISP
LAN 192.168.1.2
VPN    10.128.64.xx Puiblic 185.x.x.x

Any tip is welcome
« Last Edit: January 10, 2019, 11:52:54 pm by HA4g3n »
Logged

TaceN

  • Newbie
  • *
  • Posts: 12
  • Karma: 0
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #81 on: January 18, 2019, 11:57:05 pm »
Hey,

thanks for a great guide. Works perfect connecting through VPN.

I just have a question that I can't really figure out.
Is it possible to setup this functionality like this.

I'm using a Unifi USG router with two WAN ports.
I'd like to connect the computer running OPNsense to my CPE (port 1, seperate IP) and use a usb network adapter which is connected to my USG WAN2.
I'll also connect my USG to the CPE (port 2, seperate IP). on WAN1.

My noob knowledge of this .. will it work routing through my usg. Tell devices to route through the OPNsense machine through my network of the USG. It can listen and see both WAN-ports.. so, my logic tells me it works. But what should I do in opnsense?

Wold be wonderful to get a hint of how.

Thanks
 
 / T
Logged

netizen

  • Newbie
  • *
  • Posts: 6
  • Karma: 1
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #82 on: February 06, 2019, 04:25:44 pm »
Hello all!

I have a slightly different requirement in mind. I am not into torrents however routing via VPN is probably what is needed to do the following:

- Assume a server I have root access to, sitting in a DC
- Assume a small subnet assigned to that server from the DC
- Assume a high-speed DSL connection at home
- What I want to do is use those IPs (say in web or email server) with the latter sitting at my home network. Not in the server at the DC.

Can this be done?
Excuse my ignorance. I am fairly knowledgeable in configuring devices like PfSense but only for LAN devices that directly connected to the LAN of the firewall. What about this remote setup?

Any help is much appreciated!
 
Logged

TaceN

  • Newbie
  • *
  • Posts: 12
  • Karma: 0
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #83 on: February 11, 2019, 08:35:10 pm »
Hey all,

I'm about to lose it soon throwing my firewall out the building.
I've done everything the guide says. The vpn connection works fine but I can not get any internet out or through the vpn.

Can someone please have a look at the screenshots and tell my if something is wrong?

Version: 19.1

Thanks
Logged

DanMc85

  • Jr. Member
  • **
  • Posts: 68
  • Karma: 3
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #84 on: April 03, 2019, 12:46:16 am »
Quote from: TaceN on February 11, 2019, 08:35:10 pm
Hey all,

I'm about to lose it soon throwing my firewall out the building.
I've done everything the guide says. The vpn connection works fine but I can not get any internet out or through the vpn.

Can someone please have a look at the screenshots and tell my if something is wrong?

Version: 19.1

Thanks

I opened up a bug report for this... I am having similar issues as you since going from 18.7.10 to 19.1.x

https://github.com/opnsense/core/issues/3381
Logged

Northguy

  • Full Member
  • ***
  • Posts: 117
  • Karma: 11
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #85 on: April 19, 2019, 09:08:43 am »
Quote from: TaceN on February 11, 2019, 08:35:10 pm
Hey all,

I'm about to lose it soon throwing my firewall out the building.
I've done everything the guide says. The vpn connection works fine but I can not get any internet out or through the vpn.

Can someone please have a look at the screenshots and tell my if something is wrong?

Version: 19.1

Thanks

Looks valid to me. Struggling with the same issue. VPN server is working fine (Remote login), VPN client (tunnel for internet) is a PITA. Following this thread for solutions.
Logged

eptesicus

  • Newbie
  • *
  • Posts: 20
  • Karma: 1
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #86 on: April 20, 2019, 07:30:56 pm »
Hey, all... I got some help on the subreddit, but I'm having a weird issue... I got VPN working for one of my VLANs only (VLAN10_DL in my case, which is what I want for right now), and web traffic on every other VLAN and the LAN is working fine. However, there's issues with ping.

On my VLAN10_DL network that's routing over VPN. Traffic is fine with the exception of ping/ICMP. I cannot ping outside to anything on the WAN via IP or domain name (pinging 8.8.8.8 fails, and pinging google.com fails). Also from the LAN, I can ping 10.0.70.41 in my VLAN10_DL network, but I can't ping 10.0.70.101 that's in that same network. pinging something on the LAN from 10.0.70.101 is successful however.

On my LAN and other subnets that aren't routing over VPN (just over the WAN), pinging IP resolves, but not domain name (pinging 8.8.8.8 is successful, but pinging google.com fails).

See much of the config below...





















What am I doing wrong? What could be cleaned up to make this simpler but still achieve what I'm wanting?
Logged

Northguy

  • Full Member
  • ***
  • Posts: 117
  • Karma: 11
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #87 on: May 12, 2019, 11:08:29 pm »
Quote from: mimugmail on August 28, 2018, 09:18:50 pm
I somebody can borrow me an account I can try to make an official guide, but I'm not willing to pay something for what I'm not using.

Does this offer still stand @mimugmail? If so, we can arrange something through PM.
Logged

mimugmail

  • Hero Member
  • *****
  • Posts: 6293
  • Karma: 432
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #88 on: May 13, 2019, 05:55:22 am »
Sure, next week is good
Logged
Twitter: mimu_muc
WWW: www.routerperformance.net
Support plans: https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German): https://opnsense.max-it.de/

Northguy

  • Full Member
  • ***
  • Posts: 117
  • Karma: 11
    • View Profile
Re: HOWTO - Routing Traffic over Private VPN
« Reply #89 on: May 15, 2019, 01:16:20 pm »
Quote from: mimugmail on May 13, 2019, 05:55:22 am
Sure, next week is good

Sent a response to your Gmail account. Let's pick up from there
Logged

  • Print
Pages: 1 ... 4 5 [6] 7 8 9
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Tutorials and FAQs »
  • HOWTO - Routing Traffic over Private VPN
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2