Create a manual IPSec Unifi Site-to-Site VPN

preview_player
Показать описание
Configuring an IPSec site-to-site VPN between Ubiquiti Unifi gateways (USG/USG-Pro/UDM/UDM-Pro) is relatively straight forward process, but there are couple sticking points that can cause a hang up. This video walks through the setup for a manual VPN, when you can't use the automatic config.
Рекомендации по теме
Комментарии
Автор

Thank you i went from a usg pro4 to a uxg pro and couldn't figure out how to get the site to site to work anymore. This was very clear and straight forward.

brianheisner
Автор

Clear and concise, I will be doing this shortly, I update to see if its really that easy.

AZwupatki
Автор

Was about to say this don't work. But no I had pings disabled in windows firewall. RDP works perfectly and SMB shares work too. Thank you very much perfect video !!!

winchy
Автор

Hi Andrew, great video, thank you. Can you do a part 2 of this video to show how to add firewall rules to control which remote traffic can access my network?

thegamerfour
Автор

Can you do a subnet /32 to only allow one IP? Say if you have a server you would like to access on a different network but you are only allowed to access that one IP of that server. Thank you for your video.

JohnReade
Автор

I am relatively new to the Site to Site VPN configuration world (Mostly use peer to peer applications like VNC and LogMeIn Hamachi) and I had a specific question.
I am now looking to connect several offices with Site to Site and I have a Cisco RV340 at one location and a UDM Pro at another and wonder if and how the two can be setup as a site to site VPN.
Thanks for any guidance you can offer.

MarkStephenGardner
Автор

Hi, great and simple guide as to what to punch in and where but could you please be more clear on what you call "Remote Site" and what "Local". It is confusing since your commenting for UDM Pro as Remote and same time you call it Local. So which one in your case a Local and which one is Remote. Thanks,

rusynm
Автор

Great video! Thanks a lot! Would be great to learn how to create a site-to-site VPN with a UDM-Pro on the one side and a FritzBox on the other side, using Dynamic DNS ... :-) Many thanks in advance!

leiferichson
Автор

I have two UCG ultras on Tmobile ISP two separate sites and very new site to site VPN. I tried this method and I got an error saving the network.

ags
Автор

I've followed these steps multiple times for several hours and the site-to-site only worked once. When I made one change, it stopped working and can't get it back up again. So annoying and causing me headaches.

zsi
Автор

Loved the video and I believe I have set this up correctly, but I was given a NAT that is needed. I need to have the NAT my subnet to show up at the remote site in the 10.0.89.0/24. I am just not sure how to NAT on the USG and there is so much out there about it, but I am having a hard time deciding what is right. Background, I am using a USG on my end and have set it up properly and on the other end there is a SonicWall. I am seeing that the devices are talking to each other but the VPN tunnel is still down, I believe this to be because of the NAT that I am unable to figure out to do. I created a static route to the one of two servers that we are needing access to, but the ping is unsuccessful but it turns out there is some communication going. Any thoughts, maybe a video that requires access with a NAT to the remote end. I am pretty good at what I do, and can usually figure stuff out that is outside my skill set, but this is hurting my head. Thank you in advance for your time and thoughts.

EddieBecker
Автор

Hi, I was able to follow your instructions, I got the tunnel up, but I can only ping the router on both ends, can't ping or access any device on either side, Can you please help me??

Thank you

mottikolman
Автор

What if we have 3 or 4 sites (I have also IP3 and IP4)? What Peer IP should I use? IP1 or IP2 are ok?

nelsontovars