VPN Server with L3 Routing

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
bnpod
Posts: 2
Joined: Wed Feb 19, 2020 11:50 am

VPN Server with L3 Routing

Post by bnpod » Wed Feb 19, 2020 12:23 pm

Hallo SoftEther Community,

i am trying to setup a cloud VPN Server.

The VPN Network should look like that:

Server:
Virtual HUB for SITE_A
only one user : SITE_A
Virtual HUB for VPN_USER
Users from this HUB VPN_USER should be able to access SITE_A via Layer3

Site A ( 10.0.1.0/255.255.255.0)
Virtual HUB for VPN_Server
connected via Cascade to Virtual HUB SITE_A
I want to avoid L2 Routing. No Local Bridge.
Users from this Site

I have tried several things.
Classic LAN to LAN works. But prefer to do L3 switching without a Local Bridge, to avoid overhead on that connection.

How can i do that?
i want to avoid that VPN users (L2tp/IPSEC) route all traffic over the VPN. Any hint on that?

kind regards

bnpod

bnpod
Posts: 2
Joined: Wed Feb 19, 2020 11:50 am

Re: VPN Server with L3 Routing

Post by bnpod » Thu Feb 20, 2020 10:20 pm

I am thinking the Layer3 switch is not working.

I have setup up two sites:

Site A:
Virtual HUBs
USERS and UPLINK
Virtual switch:
192.168.10.1/255.255.255.0 Connected to UPLINK HUB
192.168.100.254/255.255.255.0 Connected to USERS HUB
USERS HUB is the VPN Entry Point.

Dial in Works fine. Users are able to surf the Web and stuff like ping to 192.168.10.1 (Virtual Switch for the UPLINK Network) works fine.

Site B:
Virtual HUBs
LOCAL and VPN
Virtual switch:
192.168.10.254/255.255.255.0 Connected to VPN HUB
192.168.1.254/255.255.255.0 Connected to LOCAL HUB
LOCAL HUB is the gateway into the Local Network. I can ping the Virtual Switch 192.168.1.254 from the internal network.

Site A and Site B are connected trough a cascaded connection (VPN-->UPLINK).

But i can't ping 192.168.10.254 from the VPN.
The connection is established between the HUB is online.
I have checked that, by giving both HUBs Virtual IPs (VPN 192.168.10.100 and UPLINK 192.168.10.101).

I was able to ping both IP when i was connected to the USERS HUB. So routing seems to work.
Just that virtual switch VPN (Site B) is not reachable.

I really don't want to use Layer2 based VPN, i just prefer Layer3 routing.

How can i get this solved? Did i miss something?

/bnpod

Post Reply