Configuring Routing and DNS/AD Access Between VLANs Over SpeedFusion VPN

Question:

I have a setup with the following:Preformatted text

  • Peplink B One (Hub):
    • VLAN 21 (172.20.0.1/24) with Microsoft AD (172.20.0.4) and Microsoft DNS (172.20.0.4)
    • NAS (172.20.0.6)
  • BR1 (Client Router) - MAX BR1 Pro 5G:
    • VLAN 121 (172.20.121.1/24)

The Setup:

I’ve established a SpeedFusion VPN between the two routers (Peplink B One and MAX BR1 Pro 5G) via the Advanced > SpeedFusion VPN settings on each router. The VPN connection is up and shows as “established” on both router dashboards. I am not using the InControl2 method for setting up the VPN.

The Issue:

I need devices on VLAN 121 (BR1) to be able to:

  1. Use the Microsoft DNS (172.20.0.4) for name resolution.
  2. Authenticate against the Microsoft AD (172.20.0.4) for domain login.
  3. Access the NAS (172.20.0.6) for file sharing.

I know I need routing between VLAN 121 and VLAN 21, but I’m not sure what settings to apply on the Peplink B One and BR1 to allow this communication through the VPN tunnel.

Questions:

  1. How do I configure routing on the Peplink B One and BR1 to ensure devices on VLAN 121 can reach VLAN 21 (specifically the AD, DNS server at 172.20.0.4, and NAS at 172.20.0.6)?
  2. What settings are needed to ensure that devices on VLAN 121 use the correct DNS and can authenticate with AD when they join the domain?

I would appreciate any guidance on what routing, DHCP, or other configurations are required for this to work through the SpeedFusion VPN.

Peplink devices use OSPF to share routes between each other, so with default settings VLAN 121 and 20 should be able to route to each other already.

In LAN settings for VLAN 121 set the DNS servers for the SpeedFusion VPN to 172.20.0.4.