I'm trying to setup a net-to-net / site-to-site VPN using OpenVPN on
pfSense 1.2.0.
I'm following the 'official' (and, it seems, only that I can find on the
web) pfSense tutorial on doing this, available at
http://www.pfsense.org/mirror.php?section=tutorials/openvpn/pfsense-ovpn.pdf.

It isn't working, so I'd just like to check that I have the right
understanding from that tutorial and that that tutorial itself is correct,
please.

These are my settings

Office 1 - server
-----------------

- Protocol: UDP (the default)

- Dynamic IP: on - I'm not sure why

- Local port: 1193 - I already have a server on 1194

- Address pool: 10.0.11.0/24 - something not used elsewhere

- Remote network - 10.0.0.0/24 - LAN address of Office 2

- Shared key: ...

- LZO compression: on



Office 2 - client
-----------------

- Protocol: UDP (the default)

- Server address: Internet IP of Office 2 - either pfSense or modem/router
with port forwarding to pfSense

- Server port: 1193

- Interface IP: 10.0.0.0/24 - LAN address of Office 2

- Remote network: 192.168.1.0/29 - LAN address of Office 1

- Shared key: ...

- LZO compression: on


The tutorial says 'Interface IP' "should be filled with your local
subnet". This address is used for tun0. If I use a different value for the
client's 'Interface IP' than I have for the server's 'Address pool' then
the log says "WARNING: 'ifconfig' is used inconsistently, local='ifconfig
10.0.0.2 10.0.0.1', remote='ifconfig 10.0.11.2 10.0.11.1'"

If I set both the client's 'Interface IP' and the server's 'Address pool'
to 10.0.11.0/24 then I don't get an error in the log.

Any help is much appreciated
Thanks
Pete Boyd




---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Commercial support available - https://portal.pfsense.org

Reply via email to