WAN 1 is connected to a DSL-modem. To reach the manamgent-IP of the DSL-modem, I have set up the Management-IP on the WAN-interface of the Balance ONE device.
→ I can reach the modem-management-IP from the local network.
Now I want to reach it from my remote-site. Can you tell me how to advertise that management-IP-network through OSPF?
Hi KPS, you can reach the local network from your remote site, via PepVpn between Balance in local site and a Balance in remote site, or you can connect the Balance One via IpSec VPN .
Is the default gateway on WAN 1 the same IP address (or at least in the same subnet) as the management IP?
If it is you can go to Network → OSPF on that balance One and manually add the WAN to be advertised over OSPF.
If its not - perhaps you’re using pppoe, then advertising it over OSPF will be a bit tricky.
I tend to set up an outbound policy rule on the remote device I want to access it from with the management IP as the destination and the PepVPN tunnel as the path. So when I try and access the IP, my local router forwards it to the remote one (the balance one in your case) which then knows to pass it to the modem on the WAN.
Or rather, yes you can advertise the additional IP on the WAN over OSPF, but the modem you want to route to would need to know a route back over VPN to the remote device you’re trying to access it from (so you’d need a static route on the modem to enable this) and the WAN would have to be in IP forwarding mode to allow the traffic back from the modem which isn’t really compatible with a topology that is using PPPoE.
The outbound policy method you’re already using is the only viable way to configure this I think.