As on the other physical site, you must assign the virtual interface of the OpenVPN client to a logical interface (OPTx).
To do this, on site 2 (Paris), go to: Interfaces -> Assignments.
An "Available network ports" section appears with the virtual interface "ovpnc1" which corresponds to your OpenVPN client (named in our case "Connect to Brux VPN server").
Select this virtual interface "ovpnc1" and click: Add.
The interface has been assigned to a logical interface (OPT1 in our case).
Click on its name (OPT1) or go to: Interfaces -> OPT1.
Enable this OPT1 logical interface by checking the "Enable interface" box, then rename it "OpenVPN_L2" using the "Description" field.
At the bottom of the page, click Save.
Click: Apply Changes.
The OPT1 interface has been enabled and renamed to "OpenVPN_L2".
As on the other physical site, you must create a bridge between the LAN network (of site 2 (Paris) in this case) and the TAP interface of your OpenVPN client.
To do this, go to: Interfaces -> Assignments.
In the "Bridges" tab, click: Add.
For the "Member Interfaces" parameter, select your "LAN" and "OPENVPN_L2" interfaces.
Then, specify "OPENVPN_L2_BRIDGE" as the description and click Save.
Your network bridge has been created.
Like the other physical site, you must allow network traffic to pass through the OpenVPN tunnel.
To do this, go to: Firewall -> Rules.
In the "OPENVPN_L2" tab, click on: Add.
Configure this rule to allow all network traffic on the "OPENVPN_L2" interface, regardless of source and destination (since this only affects what passes through the OpenVPN tunnel):
Then click Save.
Click: Apply Changes.
Network traffic is allowed in the OpenVPN L2 tunnel.
Create the same rule for the OpenVPN interface which concerns all the OpenVPN tunnels that you would have configured on pfSense.
Firewall 5/28/2025
Firewall 5/9/2025
Firewall 7/2/2025
Firewall 8/1/2025
Pinned content
Contact
® InformatiWeb-Pro.net - InformatiWeb.net 2008-2022 - © Lionel Eppe - All rights reserved.
Total or partial reproduction of this site is prohibited and constitutes an infringement punishable by articles L.335-2 and following of the intellectual property Code.
No comment