安装好 pfsense 后 
在浏览器输入
http://lan-ip/
预设帐号密码是: admin/pfSense
建议马上更新新的密码

测试环境
OS: pfSense-CE-2.4.4-RELEASE-p1-amd64
Site A
public ip: 10.1.1.1
lan ip: 192.168.100.254

Site B:
public ip: 10.2.2.2
lan ip: 192.168.200.254

如果是建立 site to site openvpn
首先要定义好 server 和 client
本次的环境是以site A 为 server 端
site B 为 client 端

[ Site A config ]
VPN -> OpenVPN -> Servers -> Add
以下几个栏位稍微注意一下,剩下的几乎都用预设值即可
Server mode: Peer to Peer (Shared Key)
Description: Site-A-Server
IPv4 Tunnel Network: 172.16.0.252/30 (两个site 之间的vpn 路由)
IPv4 Remote network(s): 192.168.200.0/24
存档

[ Site B config ]
VPN -> OpenVPN -> Clients -> Add
Server mode: Peer to Peer (Shared Key)
Description: Site-B-Client
Auto generate: uncheck
回到Site-A 设定,复制Shared Key 到 Site-B
IPv4 Tunnel Network: 172.16.0.252/30 (两个site 之间的vpn 路由)
IPv4 Remote network(s): 192.168.100.0/24

防火墙rule 设定
Firewall -> Rules -> OpenVPN -> Add
Protocol : Any
存档

检视VPN 连线状态
Status -> OpenVPN

最后测试两边的电脑是否都可以透过lan network互相连线
收工


 

相关文章