Lab Topology
Work Steps
- Make sure NSX-V Edge is working properly.
- Make sure OPNSense is working properly.
- Make sure Virtual Machines can connect to each SDN.
- Make sure network on Virtual Machines is configured properly.
- Make sure NAT for Virtual Machines is working properly.
Configure NSX-V Edge
- Login to vSphere web client > Networking & Security
- Choose NSX Edges > Your Edge > VPN > IPsec VPN
- Configure pre-shared key in global configuration status
- Choose add new IPsec (green icon).
- Configure IPsec, below is example
- Start IPsec Services.
Configure OPNSense - IPSec
- Login to OPNSense > VPN > IPSec > Pre-Shared Keys > Add
- Login to OPNSense > VPN > IPSec > Tunnel Settings
- Enable IPSec
- Add 2 Phase of IPSec configuration
- Phase 1
- IPSec summary of configuration
Configure OPNSense - Firewall
- Login to OPNSense > Firewall > Rules > IPSec
- Allow ICMP for testing
IPSec Verification
- Make sure ipsec is established/up
Client Testing
- Test connection with ping and traceroute.