Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Problem setting up OPNsense box as Remote Access client
« previous
next »
Print
Pages: [
1
]
Author
Topic: Problem setting up OPNsense box as Remote Access client (Read 2261 times)
Pierre
Newbie
Posts: 2
Karma: 0
Problem setting up OPNsense box as Remote Access client
«
on:
June 12, 2018, 02:46:09 pm »
Hello everybody!
First of all let me say it's a great distro
We've already been using OPNsense devices for IPSEC tunneling to a CISCO ASA for some time, and that works fine!! (PSK)
Where I'm having trouble is trying to use an OPNsense box (Calexium brand, whatever) to connect to another OPNsense box using OpenVPN tunnel (or IPSEC).
The thing is, one (Server) has a fixed IP address, and the other will have a dynamic one (to be used in the field, moving around - a road warrior profile).
On the Client device all I find is a "Peer to Peer" connection that requires the SERVER to know the Client's IP...
(the internet if full of tutorials on how to connect an OpenVPN client (Windows, Android or iOS...) to an OPNsense server, and this is not what I want).
I haven't found a clear tutorial anywhere for this precise configuration, could someone point me in the right direction?
I thank anyone who took the time to read my words and hope I've been clear enough
Thank you!
«
Last Edit: June 12, 2018, 03:11:30 pm by Pierre
»
Logged
Pierre
Newbie
Posts: 2
Karma: 0
Re: Problem setting up OPNsense box as Remote Access client
«
Reply #1 on:
June 13, 2018, 11:09:38 am »
Basicaly, I can't get an OpenVPN tunnel from one OPNsense to another (one Server config, one Client)... whatever the config (SSL/TLS, or Shared Key), how hard can it be?
Logged
franco
Administrator
Hero Member
Posts: 17661
Karma: 1611
Re: Problem setting up OPNsense box as Remote Access client
«
Reply #2 on:
June 13, 2018, 02:26:09 pm »
Hi Pierre,
This basically works by using an OpenVPN client mode, set the DNS hostname and tick "Infinitely resolve remote server".
For IPsec it works normally when DPD is enabled, unless the "Peer ID" is required as the peer's IP address, which is less than optimal if it keeps moving around.
Cheers,
Franco
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Problem setting up OPNsense box as Remote Access client