How to connect 2 sites behind Firewall?

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
claudelu
Posts: 32
Joined: Mon Aug 29, 2016 11:42 pm

How to connect 2 sites behind Firewall?

Post by claudelu » Fri Sep 23, 2016 6:11 pm

Hi guys!

I find myself stuck while trying to connect 2 remote Networks using SE VPN Software.
My situation is a bit complicated and I try to describe it.

I have 2 remote Sites and a few Home PCs.
Site A is the HQ: 192.168.2.x/24
Site B is remote: 192.101.103.x/24

I would like to connect to the HQ Site A, the remote Site B and all Home PCs, so I believe I want to make a one-to-many topology.

Each Network has its own Gateway(Router). The administration task of these routers is externalised. I can't change that nor the IP Classes of the Networks.
I managed to Port Forward Port 443 to specific IP in Routers:
Site A: TCP Port 443 -> 192.168.2.16
Site B: TCP Port 443 -> 192.101.103.240

On Site A:
I have installed SE VPN Server on a physical Server (Windows Srv2012 R2 Std) -> 192.168.2.16
I have created a Virtual Hub on this Server (say HQ Hub) and I have connected this Hub to the physical (192.168.2.x/24 ) Network through the Servers physical Network Card using "Local Bridge Setting".

On Site B:
I have installed SE VPN Bridge on a physical Server (Windows Srv 2008 R2 Std) -> 192.101.103.240
I have connected the Bridge Virtual Hub to the physical (192.101.103.x/24) Network through the Servers physical Network Card using "Local Bridge Setting".

On the Home PCs (Windows):
I have installed SE VPN Client. I created a virtual Network Adapter(VPN) and configured a Connection to the HQ and tested the VPN connection. The remote PCs (Windows) are communicatig successfully with HQ VPN Server in both directions.

Is there an Option to successfully connect the 2 sites giving my Networks Limitations?
I would apreciate your suggestions very much. Please help me!

raafat
Posts: 223
Joined: Fri Jul 03, 2015 2:21 pm

Re: How to connect 2 sites behind Firewall?

Post by raafat » Fri Sep 23, 2016 7:19 pm

Since you can't add "Routing Entries" into your routers and you can't change the IP network numbers on any site, my suggestion is to implement a Secure NAT technology. With that you can achieve connecting your sites to each other. Check out these two next links :

* https://softether.org/index.php?title=4 ... CP_Servers

* https://softether.org/4-docs/1-manual/A ... Permission

Good luck (:

claudelu
Posts: 32
Joined: Mon Aug 29, 2016 11:42 pm

Re: How to connect 2 sites behind Firewall?

Post by claudelu » Sat Sep 24, 2016 7:43 pm

Hi raafat!

Thank you for your Suggestions. I will check them this weekend and come back with updates.

Best Regards!

thisjun
Posts: 2458
Joined: Mon Feb 24, 2014 11:03 am

Re: How to connect 2 sites behind Firewall?

Post by thisjun » Tue Oct 11, 2016 7:58 am

Do you want to connect Site A and Site B?
If so, please read virtual L3 switch manual.
https://www.softether.org/4-docs/1-manu ... P_Routing)

Post Reply