Site-to-site VPN with one OC300 and Internet Gateway in DMZ

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Site-to-site VPN with one OC300 and Internet Gateway in DMZ

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Site-to-site VPN with one OC300 and Internet Gateway in DMZ
Site-to-site VPN with one OC300 and Internet Gateway in DMZ
2024-02-04 18:20:50 - last edited 2024-02-05 08:12:19
Tags: #VPN
Model: OC300  
Hardware Version: V1
Firmware Version: 5.13.22

Hi all,

I want to perform Site-to-Site VPN connection with one OC300 only and I'm trying to follow this FAQ:

https://www.tp-link.com/it/support/faq/3640/

 

I don't have all the required components now, but I'm going to purchase them (and I will have the same configuration as the FAQ), so I cannot try now! :)

However, I wanted to know what to do in my case.

I have Fixed Public IP at both sites, but I have one more piece in both sites: each site has an Internet Gateway from the ISP (xDSL modem/router) in DMZ to the ER605 router.

In this case, the fixed IP will be on the WAN side of the Internet Gateway, not on the WAN side of the ER605 directly...

 

First question: is this still going to work? I think so, right? I mean... In the picture on the FAQ page, the 2 sites are connected through Internet, so they should have something similar.

Second question: which IPs should I put in the IPSec Tunnel configuration on Omada?

 

Thank you,

Fra

  0      
  0      
#1
Options
1 Accepted Solution
Re:Site-to-site VPN with one OC300 and Internet Gateway in DMZ-Solution
2024-02-05 02:38:38 - last edited 2024-02-05 08:12:19

  @nicolati 

 

If you set DMZ on both sides, just need to set the modem router's IP address into the Remote Gateway when you set the VPN.

Just striving to develop myself while helping others.
Recommended Solution
  0  
  0  
#2
Options
2 Reply
Re:Site-to-site VPN with one OC300 and Internet Gateway in DMZ-Solution
2024-02-05 02:38:38 - last edited 2024-02-05 08:12:19

  @nicolati 

 

If you set DMZ on both sides, just need to set the modem router's IP address into the Remote Gateway when you set the VPN.

Just striving to develop myself while helping others.
Recommended Solution
  0  
  0  
#2
Options
Re:Site-to-site VPN with one OC300 and Internet Gateway in DMZ
2024-02-05 08:12:04

  @Virgo 

Hi Virgo,

yes, it will be in DMZ in both sites.

Ok, let me mark this as solution for the time being and then I will try that once I have all components.

 

Thank you,

Fra

  0  
  0  
#3
Options