Quantcast
Channel: EdgeRouter topics
Viewing all articles
Browse latest Browse all 20028

Ipsec tunnel to AWS: Clients can communicate, router cannot

$
0
0

I have a site (192.168.1.0/24) with an EdgeMAX router connecting to an AWS VPC (10.7.0.0/16) through IPSec tunnel set up with dynamic routing (BGP). The tunnel itself works: The clients on site can ping and access the servers inside the VPC. However, when I try to ping or access them from the router it fails.

 

My research so far has led me to believe that the router sends its pings out the wrong interface (to the ISP instead of the tunnel). If I specify the router's source address while doing a ping it works: /bin/ping -I 192.168.1.1 10.7.0.1

 

However, I need the router to not only do pings, but also send DNS queries inside the VPC. How can I configure it so that traffic that originates from the router and that is directed at hosts inside 10.7.0.1/16 also goes through the tunnel?


Viewing all articles
Browse latest Browse all 20028

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>