ER605 site-to-site and client-to-site

ER605 site-to-site and client-to-site

ER605 site-to-site and client-to-site
ER605 site-to-site and client-to-site
2024-09-12 15:21:57 - last edited 2024-09-13 02:30:40
Tags: #VPN
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.2.6

Hello, I want to create a small VPN network in our branches to have access to cameras via VPN. 
We have 5 locations. Each location has an ER605 router installed. 

-Main office A 192.168.100.0/24
-Branch B 192.168.101.0/24
-Branch C 192.168.102.0/24
-Branch D 192.168.103.0/24
-Branch E 192.168.104.0/24
 

I created a site-to-site in between 

A<->B 192.168.100.0/24 and 192.168.101.0/24
A<->C 192.168.100.0/24 and 192.168.102.0/24
A<->D 192.168.100.0/24 and 192.168.103.0/24
A<->E 192.168.100.0/24 and 192.168.104.0/24

And client-to-site in A location 192.168.100.0/24

When I am connected to network A via LAN, everything works, I can see all devices in B C D E. 
 

Then I wanted to create a client-to-site on router A and connect with a VPN program on my computer to router A.
 

After connecting "from home" to client-to-site VPN A, I can only see devices from network A. Is it possible to set these VPNs so that a remote user connecting to Router A has access to the other VPNs as if it were connected via LAN?

  0      
  0      
#1
Options
1 Accepted Solution
Re:ER605 site-to-site and client-to-site-Solution
2024-09-13 00:58:42 - last edited 2024-09-13 02:30:40

Hi @rybakowski 

Thanks for posting in our business forum.

Possible.

How to Configure WireGuard to Enable Client to Access Remote IPsec Site

Steps are similar to this guide for other types of VPN.

We also have guides on our official website - FAQ.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  3  
  3  
#2
Options
3 Reply
Re:ER605 site-to-site and client-to-site-Solution
2024-09-13 00:58:42 - last edited 2024-09-13 02:30:40

Hi @rybakowski 

Thanks for posting in our business forum.

Possible.

How to Configure WireGuard to Enable Client to Access Remote IPsec Site

Steps are similar to this guide for other types of VPN.

We also have guides on our official website - FAQ.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  3  
  3  
#2
Options
Re:ER605 site-to-site and client-to-site
2024-09-13 11:38:47

  @rybakowski Thanks i will try this!

  1  
  1  
#3
Options
Re:ER605 site-to-site and client-to-site
2024-09-16 23:02:14

Okay, it works for wireguard, but I think there's a mistake in this tutorial. In "Step 3. Configure IPsec Site-to-Site VPN" it talks about remote subnets, but I think it should be local subnets. Then it works for me. The photo below from the summary shows the correct IP wireguard as a local subnet.

  0  
  0  
#4
Options