Gateway network over VPN

Hi,

I need to configure a "Gateway Network" in an architecture like bellow

The problem is all my Edge Gateways are accessed by the Central Gateway over a VPN, where the Central Gateway can ping all Edge Servers, but the Edge Servers can´t ping the Central Gateway.

Is it possible to work this way, where only the Central Site can see the Edge Servers? :grimacing:

I didn´t try yet, but as I saw, I would need to configure an "Outgoing Connection" on each Edge Gateway and accept it on the Central Gateway, and this would only be possible if the Edge Gateways can see the Central Gateway on the network.

You should be fine, configure the connections as "outgoing" from the central server. You'll see them as "incoming" on the Edge servers.

There's little difference between the two other than who initiates the connection.

1 Like