Netgate SG-1000 microFirewall

Author Topic: pfsense openvpn to different subnet  (Read 1230 times)

0 Members and 1 Guest are viewing this topic.

Offline source

  • Jr. Member
  • **
  • Posts: 29
  • Karma: +0/-0
    • View Profile
pfsense openvpn to different subnet
« on: April 17, 2013, 07:12:34 pm »
i have a 2wire att gw with static ips. Behind it i have an pfsense appliance.   I would like to vpn from the local att 2wire network 192.168.xx to the other network behind the pfsense appliance at 172.16.x.x.  If i try to do this  from the outside, it works fine 

say im at starbucks and i try to vpn to 172.16.x.x network, it connects, and authenticates.   If im local behind the 2wire but outside of the pfense box, i can connect but it never authenticates, just says

Apr 17 19:18:38: TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
Apr 17 19:18:38: TLS Error: TLS handshake failed
Apr 17 19:18:38: SIGUSR1[soft,tls-error] received, process restarting

I know the 2wire is not blocking the access to the vpn port,  1195 ( on purpose),  So im thinking maybe its a firewall rule on pfsense?

thanks in advance