<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Firewall &#8211; RAGASYS SISTEMAS</title>
	<atom:link href="https://blog.ragasys.es/tag/firewall/feed" rel="self" type="application/rss+xml" />
	<link>https://blog.ragasys.es</link>
	<description>Soporte técnico para las TIC</description>
	<lastBuildDate>Thu, 05 Mar 2026 12:32:50 +0000</lastBuildDate>
	<language>es</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/05/logoRGS_18_05_2020.png?fit=32%2C32&#038;ssl=1</url>
	<title>Firewall &#8211; RAGASYS SISTEMAS</title>
	<link>https://blog.ragasys.es</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">111701399</site>	<item>
		<title>Configuración Fortigate – VPN IPSEC de Acceso Remoto</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Thu, 05 Mar 2026 08:42:26 +0000</pubDate>
				<category><![CDATA[Accesos remotos]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Forticlient]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[IPsec]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=21841</guid>

					<description><![CDATA[Hola a tod@s. En este post vamos a ver como configurar una VPN IPSEC de acceso remoto en un firewall Fortigate, con este tipo de VPN usando el protocolo IPSec nos podemos conectar desde cualquier equipo con conexión a Internet&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar una VPN IPSEC de acceso remoto en un firewall Fortigate, con este tipo de VPN usando el protocolo IPSec nos podemos conectar desde cualquier equipo con conexión a Internet hacia nuestra red interna, dónde todo el tráfico irá encriptado.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?ssl=1" data-lbwps-width="1109" data-lbwps-height="618" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21842" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?fit=1109%2C618&amp;ssl=1" data-orig-size="1109,618" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?fit=640%2C357&amp;ssl=1" class="aligncenter size-full wp-image-21842" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=640%2C357&#038;ssl=1" alt="" width="640" height="357" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?w=1109&amp;ssl=1 1109w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=595%2C332&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=960%2C535&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=768%2C428&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será, crear los usuarios locales que accederán a través de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?ssl=1" data-lbwps-width="1650" data-lbwps-height="392" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2-1536x365.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21843" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?fit=1650%2C392&amp;ssl=1" data-orig-size="1650,392" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?fit=640%2C152&amp;ssl=1" class="aligncenter size-full wp-image-21843" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=640%2C152&#038;ssl=1" alt="" width="640" height="152" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?w=1650&amp;ssl=1 1650w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=595%2C141&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=960%2C228&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=768%2C182&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=1536%2C365&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para una correcta administración, los usuarios que nos hemos creado anteriormente los vamos a anidar en un grupo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?ssl=1" data-lbwps-width="1692" data-lbwps-height="444" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3-1536x403.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21844" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?fit=1692%2C444&amp;ssl=1" data-orig-size="1692,444" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?fit=640%2C168&amp;ssl=1" class="aligncenter size-full wp-image-21844" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=640%2C168&#038;ssl=1" alt="" width="640" height="168" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?w=1692&amp;ssl=1 1692w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=595%2C156&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=960%2C252&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=768%2C202&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=1536%2C403&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez creados los usuarios y grupos, vamos a crearnos el túnel IPSec, para ello, accedemos a <strong>VPN &gt; Túneles Ipsec &gt; Crear nuevo &gt; IPsec Tunnel</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?ssl=1" data-lbwps-width="1617" data-lbwps-height="376" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4-1536x357.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21845" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?fit=1617%2C376&amp;ssl=1" data-orig-size="1617,376" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?fit=640%2C149&amp;ssl=1" class="aligncenter size-full wp-image-21845" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=640%2C149&#038;ssl=1" alt="" width="640" height="149" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?w=1617&amp;ssl=1 1617w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=595%2C138&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=960%2C223&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=768%2C179&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=1536%2C357&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Configuración de VPN</strong>, le indicamos un <strong>nombre</strong> y seleccionamos <strong>Acceso remoto, Siguiente</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?ssl=1" data-lbwps-width="1669" data-lbwps-height="398" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5-1536x366.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21846" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?fit=1669%2C398&amp;ssl=1" data-orig-size="1669,398" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?fit=640%2C153&amp;ssl=1" class="aligncenter size-full wp-image-21846" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=640%2C153&#038;ssl=1" alt="" width="640" height="153" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?w=1669&amp;ssl=1 1669w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=595%2C142&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=960%2C229&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=768%2C183&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=1536%2C366&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Autenticación</strong>, le indicamos la interface de entrada, el método de autenticación por llave compartida y el grupo de usuario, este grupo lo eliminaremos de la configuración de las fases más tarde, ya que las políticas de acceso irán configuradas con grupos y no sería necesario, <strong>Siguiente</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?ssl=1" data-lbwps-width="1639" data-lbwps-height="416" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6-1536x390.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21847" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?fit=1639%2C416&amp;ssl=1" data-orig-size="1639,416" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?fit=640%2C163&amp;ssl=1" class="aligncenter size-full wp-image-21847" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=640%2C162&#038;ssl=1" alt="" width="640" height="162" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?w=1639&amp;ssl=1 1639w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=595%2C151&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=960%2C244&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=768%2C195&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=1536%2C390&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Política y Enrutamiento</strong>, vamos a configurar esta política, que más tarde vamos a eliminar, ya que iremos aplicando políticas más granulares y restrictivas, habilitamos el Split Tunnel, esto hará que los usuarios que se conecten a la VPN, tengan la salida a Internet por su propia conexión y no por la nuestra, <strong>Siguiente</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?ssl=1" data-lbwps-width="1637" data-lbwps-height="459" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7-1536x431.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21848" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?fit=1637%2C459&amp;ssl=1" data-orig-size="1637,459" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?fit=640%2C179&amp;ssl=1" class="aligncenter size-full wp-image-21848" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=640%2C179&#038;ssl=1" alt="" width="640" height="179" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?w=1637&amp;ssl=1 1637w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=595%2C167&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=960%2C269&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=768%2C215&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=1536%2C431&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Opciones de cliente</strong>, le indicamos que guarde la contraseña, y habilitamos el Keep Alive, <strong>Crear</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?ssl=1" data-lbwps-width="1645" data-lbwps-height="413" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8-1536x386.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21849" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?fit=1645%2C413&amp;ssl=1" data-orig-size="1645,413" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?fit=640%2C161&amp;ssl=1" class="aligncenter size-full wp-image-21849" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=640%2C161&#038;ssl=1" alt="" width="640" height="161" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?w=1645&amp;ssl=1 1645w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=595%2C149&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=960%2C241&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=768%2C193&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=1536%2C386&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí nos indica todo lo que hemos configurado, damos a <strong>Mostrar la lista de túnel</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?ssl=1" data-lbwps-width="1287" data-lbwps-height="482" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21850" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?fit=1287%2C482&amp;ssl=1" data-orig-size="1287,482" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?fit=640%2C240&amp;ssl=1" class="aligncenter size-full wp-image-21850" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=640%2C240&#038;ssl=1" alt="" width="640" height="240" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?w=1287&amp;ssl=1 1287w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=595%2C223&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=960%2C360&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=768%2C288&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Vemos el túnel IPsec que nos ha creado, damos a <strong>Editar</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?ssl=1" data-lbwps-width="1667" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10-1536x369.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21851" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?fit=1667%2C401&amp;ssl=1" data-orig-size="1667,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?fit=640%2C154&amp;ssl=1" class="aligncenter size-full wp-image-21851" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=640%2C154&#038;ssl=1" alt="" width="640" height="154" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?w=1667&amp;ssl=1 1667w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=595%2C143&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=960%2C231&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=768%2C185&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=1536%2C369&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Convertimos a túnel personalizado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?ssl=1" data-lbwps-width="1459" data-lbwps-height="691" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21852" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?fit=1459%2C691&amp;ssl=1" data-orig-size="1459,691" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?fit=640%2C303&amp;ssl=1" class="aligncenter size-full wp-image-21852" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=640%2C303&#038;ssl=1" alt="" width="640" height="303" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?w=1459&amp;ssl=1 1459w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=595%2C282&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=960%2C455&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=768%2C364&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para la parte de <strong>Red</strong>, configuramos estos parámetros:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?ssl=1" data-lbwps-width="644" data-lbwps-height="897" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21853" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?fit=644%2C897&amp;ssl=1" data-orig-size="644,897" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?fit=640%2C891&amp;ssl=1" class="aligncenter size-full wp-image-21853" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?resize=640%2C891&#038;ssl=1" alt="" width="640" height="891" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?w=644&amp;ssl=1 644w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?resize=595%2C829&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para la parte de <strong>Autenticación</strong>, configuramos lo siguiente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?ssl=1" data-lbwps-width="926" data-lbwps-height="638" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21854" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?fit=926%2C638&amp;ssl=1" data-orig-size="926,638" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?fit=640%2C441&amp;ssl=1" class="aligncenter size-full wp-image-21854" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?resize=640%2C441&#038;ssl=1" alt="" width="640" height="441" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?w=926&amp;ssl=1 926w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?resize=595%2C410&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?resize=768%2C529&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para la <strong>propuesta de la fase 1</strong>, configuramos estos parámetros:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?ssl=1" data-lbwps-width="921" data-lbwps-height="650" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21855" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?fit=921%2C650&amp;ssl=1" data-orig-size="921,650" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?fit=640%2C452&amp;ssl=1" class="aligncenter size-full wp-image-21855" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=640%2C452&#038;ssl=1" alt="" width="640" height="452" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?w=921&amp;ssl=1 921w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=595%2C420&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=768%2C542&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=250%2C175&amp;ssl=1 250w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para <strong>XAUTH</strong>, aquí es donde quitamos el grupo que configuramos al crear el túnel, y para el Grupo de Usuarios, le indicamos que los herede de las políticas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?ssl=1" data-lbwps-width="997" data-lbwps-height="815" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21856" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?fit=997%2C815&amp;ssl=1" data-orig-size="997,815" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?fit=640%2C523&amp;ssl=1" class="aligncenter size-full wp-image-21856" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=640%2C523&#038;ssl=1" alt="" width="640" height="523" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?w=997&amp;ssl=1 997w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=595%2C486&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=960%2C785&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=768%2C628&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para los <strong>Selectores de fase 2</strong>, configuramos estos parámetros, damos a <strong>OK</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?ssl=1" data-lbwps-width="1242" data-lbwps-height="913" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21857" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?fit=1242%2C913&amp;ssl=1" data-orig-size="1242,913" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?fit=640%2C471&amp;ssl=1" class="aligncenter size-full wp-image-21857" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=640%2C470&#038;ssl=1" alt="" width="640" height="470" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?w=1242&amp;ssl=1 1242w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=595%2C437&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=960%2C706&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=768%2C565&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí tenemos ya el túnel IPsec configurado de modo personalizado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?ssl=1" data-lbwps-width="1784" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17-1536x345.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21858" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?fit=1784%2C401&amp;ssl=1" data-orig-size="1784,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?fit=640%2C144&amp;ssl=1" class="aligncenter size-full wp-image-21858" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=640%2C144&#038;ssl=1" alt="" width="640" height="144" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?w=1784&amp;ssl=1 1784w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=595%2C134&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=960%2C216&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=768%2C173&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=1536%2C345&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Antes de seguir, vamos a explicar, estos dos objetos que se han creado al crear la VPN IPsec.</li>
<li>Uno de ellos es, <strong>ipsecra_range</strong>, este objeto es para asignar las direcciones IPs de los equipos que se conecten a nuestra VPN PIsec de acceso remoto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?ssl=1" data-lbwps-width="907" data-lbwps-height="467" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21859" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?fit=907%2C467&amp;ssl=1" data-orig-size="907,467" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?fit=640%2C330&amp;ssl=1" class="aligncenter size-full wp-image-21859" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?resize=640%2C330&#038;ssl=1" alt="" width="640" height="330" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?w=907&amp;ssl=1 907w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?resize=595%2C306&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?resize=768%2C395&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>El otro es, <strong>ipsecra_split</strong>, este objeto es un grupo de direcciones que actúa como una «lista blanca» de destinos, su función principal es decirle al cliente VPN (FortiClient) qué tráfico debe enviar obligatoriamente a través del túnel y cuál debe ignorar para que salga por su conexión local a Internet.</li>
<li>Cuando habilitamos el Split Tunneling (Túnel Dividido), el comportamiento es el siguiente:</li>
<li>Si el destino está en el objeto ipsecra_split, el FortiClient enruta ese tráfico por la VPN.</li>
<li>Si el destino NO está ahí, el FortiClient lo envía por la puerta de enlace predeterminada del usuario (su internet doméstico).</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?ssl=1" data-lbwps-width="1254" data-lbwps-height="695" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21860" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?fit=1254%2C695&amp;ssl=1" data-orig-size="1254,695" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?fit=640%2C355&amp;ssl=1" class="aligncenter size-full wp-image-21860" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=640%2C355&#038;ssl=1" alt="" width="640" height="355" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?w=1254&amp;ssl=1 1254w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=595%2C330&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=960%2C532&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=768%2C426&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>También podemos ver, que en la interface de red que le indicamos al túnel VPN IPsec, nos ha creado esta interface virtual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?ssl=1" data-lbwps-width="1494" data-lbwps-height="792" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21861" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?fit=1494%2C792&amp;ssl=1" data-orig-size="1494,792" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?fit=640%2C339&amp;ssl=1" class="aligncenter size-full wp-image-21861" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=640%2C339&#038;ssl=1" alt="" width="640" height="339" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?w=1494&amp;ssl=1 1494w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=595%2C315&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=960%2C509&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=768%2C407&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para terminar de configurar la VPN IPsec de acceso remoto, debemos de crear las reglas o políticas para que los equipos que se conecten a través de la VPN, tengan acceso a las redes internas configuradas en nuestro firewall, voy a mostrar sólo una de ellas ya que para las demás sería exactamente igual, editamos la regla que se nos creó al crear el túnel IPsec:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?ssl=1" data-lbwps-width="1257" data-lbwps-height="1080" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21862" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?fit=1257%2C1080&amp;ssl=1" data-orig-size="1257,1080" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?fit=640%2C550&amp;ssl=1" class="aligncenter size-full wp-image-21862" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=640%2C550&#038;ssl=1" alt="" width="640" height="550" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?w=1257&amp;ssl=1 1257w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=595%2C511&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=960%2C825&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=768%2C660&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con esto ya tendríamos configurada y operativa nuestra VPN IPsec de acceso remoto, ahora desde cualquier equipo con conexión a internet, le instalaremos el Forticlient y configuraremos los parámetros de la VPN IPsec para conectarnos desde cualquier lugar del mundo a las redes internas de nuestra infraestructura, dónde todo el tráfico irá encriptado mediante IPsec:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?ssl=1" data-lbwps-width="877" data-lbwps-height="701" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21863" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?fit=877%2C701&amp;ssl=1" data-orig-size="877,701" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?fit=640%2C512&amp;ssl=1" class="aligncenter size-full wp-image-21863" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?resize=640%2C512&#038;ssl=1" alt="" width="640" height="512" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?w=877&amp;ssl=1 877w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?resize=595%2C476&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?resize=768%2C614&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?ssl=1" data-lbwps-width="876" data-lbwps-height="681" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21864" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?fit=876%2C681&amp;ssl=1" data-orig-size="876,681" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?fit=640%2C498&amp;ssl=1" class="aligncenter size-full wp-image-21864" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?resize=640%2C498&#038;ssl=1" alt="" width="640" height="498" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?w=876&amp;ssl=1 876w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?resize=595%2C463&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?resize=768%2C597&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?ssl=1" data-lbwps-width="880" data-lbwps-height="690" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21865" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?fit=880%2C690&amp;ssl=1" data-orig-size="880,690" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?fit=640%2C502&amp;ssl=1" class="aligncenter size-full wp-image-21865" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?resize=640%2C502&#038;ssl=1" alt="" width="640" height="502" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?w=880&amp;ssl=1 880w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?resize=595%2C467&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?resize=768%2C602&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya estamos conectados y nos está sirviendo una dirección IP del rango que habíamos configurado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?ssl=1" data-lbwps-width="876" data-lbwps-height="683" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21866" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?fit=876%2C683&amp;ssl=1" data-orig-size="876,683" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?fit=640%2C499&amp;ssl=1" class="aligncenter size-full wp-image-21866" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?resize=640%2C499&#038;ssl=1" alt="" width="640" height="499" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?w=876&amp;ssl=1 876w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?resize=595%2C464&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?resize=768%2C599&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos el túnel levantado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?ssl=1" data-lbwps-width="1665" data-lbwps-height="371" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26-1536x342.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21867" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?fit=1665%2C371&amp;ssl=1" data-orig-size="1665,371" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?fit=640%2C143&amp;ssl=1" class="aligncenter size-full wp-image-21867" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=640%2C143&#038;ssl=1" alt="" width="640" height="143" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?w=1665&amp;ssl=1 1665w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=595%2C133&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=960%2C214&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=768%2C171&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=1536%2C342&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde el Monitor IPsec de nuestro Fortigate podemos ver los usuarios conectados a través de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?ssl=1" data-lbwps-width="1916" data-lbwps-height="663" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27-1536x532.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21868" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?fit=1916%2C663&amp;ssl=1" data-orig-size="1916,663" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?fit=640%2C221&amp;ssl=1" class="aligncenter size-full wp-image-21868" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=640%2C221&#038;ssl=1" alt="" width="640" height="221" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?w=1916&amp;ssl=1 1916w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=595%2C206&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=960%2C332&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=768%2C266&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=1536%2C532&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde la opción <strong>VPN &gt; VPN Location Map</strong> podemos ver desde que parte del mundo se están conectando los usuarios que hemos creado y configurado para nuestra VPN IPsec de acceso remoto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?ssl=1" data-lbwps-width="1918" data-lbwps-height="875" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28-1536x701.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21869" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?fit=1918%2C875&amp;ssl=1" data-orig-size="1918,875" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?fit=640%2C292&amp;ssl=1" class="aligncenter size-full wp-image-21869" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=640%2C292&#038;ssl=1" alt="" width="640" height="292" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?w=1918&amp;ssl=1 1918w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=595%2C271&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=960%2C438&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=768%2C350&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=1536%2C701&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/feed</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">21841</post-id>	</item>
		<item>
		<title>Despliegue y configuración de Firewalls OPNSense clúster HA en Azure</title>
		<link>https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure</link>
					<comments>https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 16 Jun 2025 07:58:22 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Cluster]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[HA]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<category><![CDATA[TIC]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=20134</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo desplegar y configurar dos firewalls OPNSense en modo clúster HA en Azure. La topología que vamos a utilizar será esta: Lo primero que vamos a realizar es acceder a este&#8230; <a href="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo desplegar y configurar dos firewalls OPNSense en modo clúster HA en Azure.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?ssl=1" data-lbwps-width="1251" data-lbwps-height="786" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20135" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?fit=1251%2C786&amp;ssl=1" data-orig-size="1251,786" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?fit=640%2C402&amp;ssl=1" class="aligncenter size-full wp-image-20135" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?resize=640%2C402&#038;ssl=1" alt="" width="640" height="402" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?w=1251&amp;ssl=1 1251w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?resize=595%2C374&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?resize=960%2C603&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_1.png?resize=768%2C483&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar es acceder <a href="https://github.com/dmauser/opnazure" target="_blank" rel="noopener">a este link de dmauser</a>, aquí vamos a encontrar un desarrollo para desplegar dos firewalls OPNSense sobre FreeBSD en modo cluster HA Activo-Activo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?ssl=1" data-lbwps-width="1230" data-lbwps-height="758" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20136" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?fit=1230%2C758&amp;ssl=1" data-orig-size="1230,758" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?fit=640%2C395&amp;ssl=1" class="aligncenter size-full wp-image-20136" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?resize=640%2C394&#038;ssl=1" alt="" width="640" height="394" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?w=1230&amp;ssl=1 1230w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?resize=595%2C367&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?resize=960%2C592&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_2.png?resize=768%2C473&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Se nos abrirá esta plantilla para el despliegue de OPNSense, sobre <strong>Deployment Scenarios</strong> le indicamos la suscripción, el grupo de recursos, la región y muy importante OPNSense Scenario que le indicamos <strong>Active-Active</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?ssl=1" data-lbwps-width="1001" data-lbwps-height="887" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20137" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?fit=1001%2C887&amp;ssl=1" data-orig-size="1001,887" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?fit=640%2C567&amp;ssl=1" class="aligncenter size-full wp-image-20137" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?resize=640%2C567&#038;ssl=1" alt="" width="640" height="567" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?w=1001&amp;ssl=1 1001w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?resize=595%2C527&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?resize=960%2C851&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_3.png?resize=768%2C681&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Virtual Machine Settings</strong> le indicamos el nombre y tamaño de máquina, la URL para la descarga del script, la versión de OPNSense y la versión del agente de Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?ssl=1" data-lbwps-width="967" data-lbwps-height="889" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20138" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?fit=967%2C889&amp;ssl=1" data-orig-size="967,889" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?fit=640%2C589&amp;ssl=1" class="aligncenter size-full wp-image-20138" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?resize=640%2C588&#038;ssl=1" alt="" width="640" height="588" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?w=967&amp;ssl=1 967w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?resize=595%2C547&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?resize=960%2C883&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_4.png?resize=768%2C706&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para el despliegue y la configuración de la red virtual en Azure, vamos a seleccionar un espacio de direcciones en la red virtual, y le configuraremos las distintas subredes que va a utilizar el firewall y la que utilizaremos como la red local de Azure dónde se conectarán nuestras máquinas virtuales (ésta última la configuraremos a posteriori de la plantilla de despliegue):</li>
<li>Red virtual: <strong>opnsenseha-vnet</strong>168.128.0/18</li>
<li>Subred Externa: <strong>Un</strong><strong>trusted-Subnet</strong>168.191.0/27</li>
<li>Subred Interna: <strong>Trusted-Subnet</strong>168.191.32/27</li>
<li>LAN Azure: <strong>Sub</strong><strong>netLAN-192_168_128_0-24</strong></li>
<li>DMZ Azure: <strong>Sub</strong><strong>netLAN-192_168_129_0-24</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?ssl=1" data-lbwps-width="1021" data-lbwps-height="885" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20139" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?fit=1021%2C885&amp;ssl=1" data-orig-size="1021,885" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?fit=640%2C555&amp;ssl=1" class="aligncenter size-full wp-image-20139" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?resize=640%2C555&#038;ssl=1" alt="" width="640" height="555" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?w=1021&amp;ssl=1 1021w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?resize=595%2C516&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?resize=960%2C832&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_5.png?resize=768%2C666&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Virtual Network Settings</strong> estas serían las configuraciones para nuestra infraestructura:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png?ssl=1" data-lbwps-width="960" data-lbwps-height="893" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20140" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png?fit=960%2C893&amp;ssl=1" data-orig-size="960,893" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png?fit=640%2C595&amp;ssl=1" class="aligncenter size-full wp-image-20140" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png?resize=640%2C595&#038;ssl=1" alt="" width="640" height="595" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png?w=960&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png?resize=595%2C553&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_6.png?resize=768%2C714&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Revisar y crear</strong>, nos muestra un resumen de todas las configuraciones realizadas, comenzamos a <strong>Crear</strong> todos los recursos de la plantilla OPNSense deployment:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?ssl=1" data-lbwps-width="1013" data-lbwps-height="974" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20141" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?fit=1013%2C974&amp;ssl=1" data-orig-size="1013,974" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?fit=640%2C615&amp;ssl=1" class="aligncenter size-full wp-image-20141" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?resize=640%2C615&#038;ssl=1" alt="" width="640" height="615" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?w=1013&amp;ssl=1 1013w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?resize=595%2C572&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?resize=960%2C923&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_7.png?resize=768%2C738&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?ssl=1" data-lbwps-width="980" data-lbwps-height="892" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20142" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?fit=980%2C892&amp;ssl=1" data-orig-size="980,892" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?fit=640%2C583&amp;ssl=1" class="aligncenter size-full wp-image-20142" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?resize=640%2C583&#038;ssl=1" alt="" width="640" height="583" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?w=980&amp;ssl=1 980w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?resize=595%2C542&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?resize=960%2C874&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_8.png?resize=768%2C699&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, comienza el despliegue:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?ssl=1" data-lbwps-width="1602" data-lbwps-height="569" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9-1536x546.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20143" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?fit=1602%2C569&amp;ssl=1" data-orig-size="1602,569" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?fit=640%2C227&amp;ssl=1" class="aligncenter size-full wp-image-20143" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?resize=640%2C227&#038;ssl=1" alt="" width="640" height="227" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?w=1602&amp;ssl=1 1602w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?resize=595%2C211&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?resize=960%2C341&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?resize=768%2C273&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?resize=1536%2C546&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que ya ha terminado y se ha implementado correctamente, podemos ver, los distintos recursos que ha creado el despliegue de esta plantilla:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?ssl=1" data-lbwps-width="1620" data-lbwps-height="894" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10-1536x848.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20144" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?fit=1620%2C894&amp;ssl=1" data-orig-size="1620,894" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?fit=640%2C353&amp;ssl=1" class="aligncenter size-full wp-image-20144" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?resize=640%2C353&#038;ssl=1" alt="" width="640" height="353" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?w=1620&amp;ssl=1 1620w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?resize=595%2C328&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?resize=960%2C530&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?resize=768%2C424&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?resize=1536%2C848&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos al grupo de recursos y vemos todos los recursos que se nos han creado, entre ellos, dos firewalls opnsense (primario y secundario), dos Load Balancer (Externo e Interno) y una IP pública:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?ssl=1" data-lbwps-width="1907" data-lbwps-height="892" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11-1536x718.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20145" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?fit=1907%2C892&amp;ssl=1" data-orig-size="1907,892" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?fit=640%2C299&amp;ssl=1" class="aligncenter size-full wp-image-20145" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?resize=640%2C299&#038;ssl=1" alt="" width="640" height="299" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?w=1907&amp;ssl=1 1907w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?resize=595%2C278&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?resize=960%2C449&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?resize=768%2C359&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?resize=1536%2C718&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a clicar sobre la máquina virtual opnsense-Primary:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?ssl=1" data-lbwps-width="1729" data-lbwps-height="882" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12-1536x784.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20146" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?fit=1729%2C882&amp;ssl=1" data-orig-size="1729,882" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?fit=640%2C327&amp;ssl=1" class="aligncenter size-full wp-image-20146" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?resize=640%2C326&#038;ssl=1" alt="" width="640" height="326" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?w=1729&amp;ssl=1 1729w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?resize=595%2C304&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?resize=960%2C490&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?resize=768%2C392&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?resize=1536%2C784&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la máquina virtual accedemos a Configuración de red y cómo podemos ver tenemos dos interfaces de red, una es la interface WAN de OPNSense que tiene asignada una IP privada del rango de la subred Untrusted, y la otra es la interface LAN que tiene asignada una IP privada del rango de la subred Trusted:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?ssl=1" data-lbwps-width="1878" data-lbwps-height="1034" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13-1536x846.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20147" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?fit=1878%2C1034&amp;ssl=1" data-orig-size="1878,1034" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?fit=640%2C353&amp;ssl=1" class="aligncenter size-full wp-image-20147" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?resize=640%2C352&#038;ssl=1" alt="" width="640" height="352" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?w=1878&amp;ssl=1 1878w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?resize=595%2C328&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?resize=960%2C529&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?resize=768%2C423&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?resize=1536%2C846&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?ssl=1" data-lbwps-width="1887" data-lbwps-height="1019" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14-1536x829.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20148" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?fit=1887%2C1019&amp;ssl=1" data-orig-size="1887,1019" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-20148" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?resize=640%2C346&#038;ssl=1" alt="" width="640" height="346" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?w=1887&amp;ssl=1 1887w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?resize=595%2C321&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?resize=960%2C518&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?resize=768%2C415&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?resize=1536%2C829&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Debemos de configurar las IPs privadas como estáticas, tanto la WAN cono la LAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?ssl=1" data-lbwps-width="1345" data-lbwps-height="617" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20149" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?fit=1345%2C617&amp;ssl=1" data-orig-size="1345,617" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?fit=640%2C293&amp;ssl=1" class="aligncenter size-full wp-image-20149" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?resize=640%2C294&#038;ssl=1" alt="" width="640" height="294" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?w=1345&amp;ssl=1 1345w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?resize=595%2C273&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?resize=960%2C440&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?resize=768%2C352&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?ssl=1" data-lbwps-width="1363" data-lbwps-height="607" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20150" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?fit=1363%2C607&amp;ssl=1" data-orig-size="1363,607" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?fit=640%2C285&amp;ssl=1" class="aligncenter size-full wp-image-20150" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?resize=640%2C285&#038;ssl=1" alt="" width="640" height="285" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?w=1363&amp;ssl=1 1363w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?resize=595%2C265&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?resize=960%2C428&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?resize=768%2C342&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?resize=300%2C135&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para la máquina opnsense-Secondary hacemos lo mismo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?ssl=1" data-lbwps-width="1886" data-lbwps-height="876" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17-1536x713.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20151" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?fit=1886%2C876&amp;ssl=1" data-orig-size="1886,876" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-20151" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?resize=640%2C297&#038;ssl=1" alt="" width="640" height="297" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?w=1886&amp;ssl=1 1886w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?resize=595%2C276&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?resize=960%2C446&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?resize=768%2C357&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?resize=1536%2C713&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?ssl=1" data-lbwps-width="1375" data-lbwps-height="602" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20152" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?fit=1375%2C602&amp;ssl=1" data-orig-size="1375,602" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?fit=640%2C280&amp;ssl=1" class="aligncenter size-full wp-image-20152" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?resize=640%2C280&#038;ssl=1" alt="" width="640" height="280" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?w=1375&amp;ssl=1 1375w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?resize=595%2C261&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?resize=960%2C420&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?resize=768%2C336&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_18.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?ssl=1" data-lbwps-width="1386" data-lbwps-height="595" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20153" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?fit=1386%2C595&amp;ssl=1" data-orig-size="1386,595" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?fit=640%2C275&amp;ssl=1" class="aligncenter size-full wp-image-20153" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?resize=640%2C275&#038;ssl=1" alt="" width="640" height="275" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?w=1386&amp;ssl=1 1386w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?resize=595%2C255&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?resize=960%2C412&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?resize=768%2C330&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_19.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Otro de los recursos que se han creado es el Load Balancer Interno:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?ssl=1" data-lbwps-width="1889" data-lbwps-height="900" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20-1536x732.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20154" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?fit=1889%2C900&amp;ssl=1" data-orig-size="1889,900" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?fit=640%2C305&amp;ssl=1" class="aligncenter size-full wp-image-20154" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?resize=640%2C305&#038;ssl=1" alt="" width="640" height="305" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?w=1889&amp;ssl=1 1889w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?resize=595%2C283&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?resize=960%2C457&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?resize=768%2C366&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?resize=1536%2C732&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Configuración de IP de front-end</strong>, vemos que la IP asignada es una IP del rango de la subred Trusted:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?ssl=1" data-lbwps-width="1535" data-lbwps-height="459" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20155" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?fit=1535%2C459&amp;ssl=1" data-orig-size="1535,459" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?fit=640%2C191&amp;ssl=1" class="aligncenter size-full wp-image-20155" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?resize=640%2C191&#038;ssl=1" alt="" width="640" height="191" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?w=1535&amp;ssl=1 1535w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?resize=595%2C178&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?resize=960%2C287&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?resize=768%2C230&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_21.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Grupos de back-end</strong>, vemos que tenemos asignados los dos firewall opnsense en su interface Trusted:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?ssl=1" data-lbwps-width="1910" data-lbwps-height="534" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22-1536x429.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20156" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?fit=1910%2C534&amp;ssl=1" data-orig-size="1910,534" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?fit=640%2C179&amp;ssl=1" class="aligncenter size-full wp-image-20156" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?resize=640%2C179&#038;ssl=1" alt="" width="640" height="179" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?w=1910&amp;ssl=1 1910w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?resize=595%2C166&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?resize=960%2C268&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?resize=768%2C215&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?resize=1536%2C429&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_22.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Sondeos de estado</strong>, vemos que tenemos uno agregado para el protocolo TCP puerto 443:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?ssl=1" data-lbwps-width="1904" data-lbwps-height="568" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23-1536x458.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20157" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?fit=1904%2C568&amp;ssl=1" data-orig-size="1904,568" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?fit=640%2C191&amp;ssl=1" class="aligncenter size-full wp-image-20157" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?resize=640%2C191&#038;ssl=1" alt="" width="640" height="191" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?w=1904&amp;ssl=1 1904w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?resize=595%2C178&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?resize=960%2C286&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?resize=768%2C229&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?resize=1536%2C458&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_23.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?ssl=1" data-lbwps-width="1080" data-lbwps-height="521" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20158" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?fit=1080%2C521&amp;ssl=1" data-orig-size="1080,521" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?fit=640%2C309&amp;ssl=1" class="aligncenter size-full wp-image-20158" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?resize=640%2C309&#038;ssl=1" alt="" width="640" height="309" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?w=1080&amp;ssl=1 1080w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?resize=595%2C287&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?resize=960%2C463&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_24.png?resize=768%2C370&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Reglas de equilibrio de carga</strong>, vemos que tenemos una regla configurada para equilibrar la carga entre los dos firewalls:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="564" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25-1536x453.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20159" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?fit=1913%2C564&amp;ssl=1" data-orig-size="1913,564" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?fit=640%2C189&amp;ssl=1" class="aligncenter size-full wp-image-20159" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?resize=640%2C189&#038;ssl=1" alt="" width="640" height="189" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?resize=595%2C175&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?resize=960%2C283&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?resize=768%2C226&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?resize=1536%2C453&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_25.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?ssl=1" data-lbwps-width="1051" data-lbwps-height="885" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20160" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?fit=1051%2C885&amp;ssl=1" data-orig-size="1051,885" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?fit=640%2C539&amp;ssl=1" class="aligncenter size-full wp-image-20160" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?resize=640%2C539&#038;ssl=1" alt="" width="640" height="539" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?w=1051&amp;ssl=1 1051w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?resize=595%2C501&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?resize=960%2C808&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_26.png?resize=768%2C647&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Otro de los recursos que se han creado es el Load Balancer Externo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?ssl=1" data-lbwps-width="1885" data-lbwps-height="893" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27-1536x728.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20161" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?fit=1885%2C893&amp;ssl=1" data-orig-size="1885,893" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?fit=640%2C303&amp;ssl=1" class="aligncenter size-full wp-image-20161" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?resize=640%2C303&#038;ssl=1" alt="" width="640" height="303" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?w=1885&amp;ssl=1 1885w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?resize=595%2C282&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?resize=960%2C455&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?resize=768%2C364&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?resize=1536%2C728&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Configuración de IP de front-end</strong>, vemos que la IP asignada es una IP pública, que será la que nos dará la entrada y salida desde y hacia la WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?ssl=1" data-lbwps-width="1812" data-lbwps-height="607" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28-1536x515.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20162" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?fit=1812%2C607&amp;ssl=1" data-orig-size="1812,607" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?fit=640%2C215&amp;ssl=1" class="aligncenter size-full wp-image-20162" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?resize=640%2C214&#038;ssl=1" alt="" width="640" height="214" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?w=1812&amp;ssl=1 1812w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?resize=595%2C199&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?resize=960%2C322&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?resize=768%2C257&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?resize=1536%2C515&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_28.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Grupos de back-end</strong>, vemos que tenemos asignados los dos firewall opnsense en su interface Untrusted:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="596" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29-1536x478.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20163" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?fit=1914%2C596&amp;ssl=1" data-orig-size="1914,596" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?fit=640%2C199&amp;ssl=1" class="aligncenter size-full wp-image-20163" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?resize=640%2C199&#038;ssl=1" alt="" width="640" height="199" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?resize=595%2C185&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?resize=960%2C299&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?resize=768%2C239&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?resize=1536%2C478&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_29.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Sondeos de estado</strong>, vemos que tenemos uno agregado para el protocolo TCP puerto 443:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?ssl=1" data-lbwps-width="1902" data-lbwps-height="598" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30-1536x483.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20164" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?fit=1902%2C598&amp;ssl=1" data-orig-size="1902,598" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?fit=640%2C201&amp;ssl=1" class="aligncenter size-full wp-image-20164" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?resize=640%2C201&#038;ssl=1" alt="" width="640" height="201" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?w=1902&amp;ssl=1 1902w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?resize=595%2C187&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?resize=960%2C302&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?resize=768%2C241&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?resize=1536%2C483&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_30.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?ssl=1" data-lbwps-width="1086" data-lbwps-height="523" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20165" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?fit=1086%2C523&amp;ssl=1" data-orig-size="1086,523" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?fit=640%2C308&amp;ssl=1" class="aligncenter size-full wp-image-20165" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?resize=640%2C308&#038;ssl=1" alt="" width="640" height="308" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?w=1086&amp;ssl=1 1086w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?resize=595%2C287&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?resize=960%2C462&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_31.png?resize=768%2C370&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Reglas de equilibrio de carga</strong>, vemos que tenemos una regla configurada a modo de ejemplo para definir cómo se distribuye el tráfico entrante a todas las instancias del grupo de back-end, en este ejemplo sería una regla creada en el puerto 3389 para equilibrar la carga del tráfico RDP:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="599" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32-1536x480.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20166" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_32#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?fit=1915%2C599&amp;ssl=1" data-orig-size="1915,599" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_32" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?fit=640%2C200&amp;ssl=1" class="aligncenter size-full wp-image-20166" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?resize=640%2C200&#038;ssl=1" alt="" width="640" height="200" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?resize=595%2C186&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?resize=960%2C300&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?resize=768%2C240&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?resize=1536%2C480&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_32.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?ssl=1" data-lbwps-width="994" data-lbwps-height="663" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20167" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_33#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?fit=994%2C663&amp;ssl=1" data-orig-size="994,663" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_33" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?fit=640%2C427&amp;ssl=1" class="aligncenter size-full wp-image-20167" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?resize=640%2C427&#038;ssl=1" alt="" width="640" height="427" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?w=994&amp;ssl=1 994w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?resize=595%2C397&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?resize=960%2C640&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_33.png?resize=768%2C512&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png?ssl=1" data-lbwps-width="779" data-lbwps-height="478" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20168" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_34#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png?fit=779%2C478&amp;ssl=1" data-orig-size="779,478" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_34" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png?fit=640%2C393&amp;ssl=1" class="aligncenter size-full wp-image-20168" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png?resize=640%2C393&#038;ssl=1" alt="" width="640" height="393" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png?w=779&amp;ssl=1 779w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png?resize=595%2C365&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_34.png?resize=768%2C471&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Regla NAT de entrada</strong>, tenemos dos reglas configuradas para el acceso a los firewalls opnsense a través de su IP pública, al firewall primario se accede por el puerto 50443 y al firewall secundario por el puerto 50444, que como vemos está mapeado al puerto 443 de cada firewall:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?ssl=1" data-lbwps-width="1903" data-lbwps-height="601" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35-1536x485.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20169" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_35#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?fit=1903%2C601&amp;ssl=1" data-orig-size="1903,601" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_35" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?fit=640%2C202&amp;ssl=1" class="aligncenter size-full wp-image-20169" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?resize=640%2C202&#038;ssl=1" alt="" width="640" height="202" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?w=1903&amp;ssl=1 1903w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?resize=595%2C188&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?resize=960%2C303&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?resize=768%2C243&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?resize=1536%2C485&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_35.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Reglas de salida</strong>, tenemos configurada una regla para la salida a la WAN de nuestra infraestructura, con esta regla todas las máquinas ubicadas detrás de los firewalls van a salir a Internet con la IP pública de nuestro load balancer externo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="632" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36-1536x507.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20170" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_36#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?fit=1913%2C632&amp;ssl=1" data-orig-size="1913,632" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_36" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?fit=640%2C211&amp;ssl=1" class="aligncenter size-full wp-image-20170" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?resize=640%2C211&#038;ssl=1" alt="" width="640" height="211" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?resize=595%2C197&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?resize=960%2C317&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?resize=768%2C254&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?resize=1536%2C507&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_36.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?ssl=1" data-lbwps-width="1905" data-lbwps-height="892" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37-1536x719.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20171" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_37#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?fit=1905%2C892&amp;ssl=1" data-orig-size="1905,892" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_37" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?fit=640%2C300&amp;ssl=1" class="aligncenter size-full wp-image-20171" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?resize=640%2C300&#038;ssl=1" alt="" width="640" height="300" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?w=1905&amp;ssl=1 1905w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?resize=595%2C279&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?resize=960%2C450&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?resize=768%2C360&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?resize=1536%2C719&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_37.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para acceder a los firewalls accedemos a través de su IP pública, https://PublicIP:50443 para el primario y https://publicip:50444 para el secundario, las credenciales por defecto son root/opnsense:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?ssl=1" data-lbwps-width="1266" data-lbwps-height="603" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20172" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_38#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?fit=1266%2C603&amp;ssl=1" data-orig-size="1266,603" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_38" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?fit=640%2C305&amp;ssl=1" class="aligncenter size-full wp-image-20172" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?resize=640%2C305&#038;ssl=1" alt="" width="640" height="305" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?w=1266&amp;ssl=1 1266w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?resize=595%2C283&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?resize=960%2C457&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_38.png?resize=768%2C366&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?ssl=1" data-lbwps-width="1208" data-lbwps-height="583" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20173" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_39#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?fit=1208%2C583&amp;ssl=1" data-orig-size="1208,583" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_39" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?fit=640%2C309&amp;ssl=1" class="aligncenter size-full wp-image-20173" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?resize=640%2C309&#038;ssl=1" alt="" width="640" height="309" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?w=1208&amp;ssl=1 1208w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?resize=595%2C287&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?resize=960%2C463&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_39.png?resize=768%2C371&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a configurar en los firewall opnsense, va a ser la configuración de HA.</li>
<li>Nos vamos primero al firewall primario y sobre <strong>System &gt; High Availability &gt; Settings</strong> configuramos el peer del firewall secundario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?ssl=1" data-lbwps-width="1541" data-lbwps-height="904" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40-1536x901.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20174" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_40#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?fit=1541%2C904&amp;ssl=1" data-orig-size="1541,904" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_40" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?fit=640%2C375&amp;ssl=1" class="aligncenter size-full wp-image-20174" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?resize=640%2C375&#038;ssl=1" alt="" width="640" height="375" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?w=1541&amp;ssl=1 1541w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?resize=595%2C349&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?resize=960%2C563&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?resize=768%2C451&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?resize=1536%2C901&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_40.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora accedemos al firewall secundario y sobre <strong>System &gt; High Availability &gt; Settings</strong> configuramos el peer del firewall primario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?ssl=1" data-lbwps-width="1442" data-lbwps-height="914" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20175" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_41#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?fit=1442%2C914&amp;ssl=1" data-orig-size="1442,914" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_41" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?fit=640%2C405&amp;ssl=1" class="aligncenter size-full wp-image-20175" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?resize=640%2C406&#038;ssl=1" alt="" width="640" height="406" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?w=1442&amp;ssl=1 1442w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?resize=595%2C377&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?resize=960%2C608&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?resize=768%2C487&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_41.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos de nuevo al firewall primario y sobre <strong>System &gt; High Availability &gt; Status </strong>sincronizamos y reconfiguramos todo, una vez configurado este cambio, todo lo que hagamos y configuremos en el firewall opnsense primario se va a replicar en el firewall opnsense secundario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?ssl=1" data-lbwps-width="1910" data-lbwps-height="940" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42-1536x756.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20176" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_42#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?fit=1910%2C940&amp;ssl=1" data-orig-size="1910,940" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_42" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?fit=640%2C315&amp;ssl=1" class="aligncenter size-full wp-image-20176" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?resize=640%2C315&#038;ssl=1" alt="" width="640" height="315" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?w=1910&amp;ssl=1 1910w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?resize=595%2C293&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?resize=960%2C472&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?resize=768%2C378&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?resize=1536%2C756&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_42.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Veamos un ejemplo, hemos configurado los servidores NTP en el firewall primario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="761" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43-1536x611.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20177" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_43#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?fit=1913%2C761&amp;ssl=1" data-orig-size="1913,761" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_43" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?fit=640%2C255&amp;ssl=1" class="aligncenter size-full wp-image-20177" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?resize=640%2C255&#038;ssl=1" alt="" width="640" height="255" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?resize=595%2C237&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?resize=960%2C382&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?resize=768%2C306&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?resize=1536%2C611&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_43.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sincronizamos todos los servicios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?ssl=1" data-lbwps-width="1910" data-lbwps-height="940" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44-1536x756.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20178" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_44#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?fit=1910%2C940&amp;ssl=1" data-orig-size="1910,940" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_44" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?fit=640%2C315&amp;ssl=1" class="aligncenter size-full wp-image-20178" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?resize=640%2C315&#038;ssl=1" alt="" width="640" height="315" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?w=1910&amp;ssl=1 1910w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?resize=595%2C293&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?resize=960%2C472&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?resize=768%2C378&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?resize=1536%2C756&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_44.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez que se ha sincronizado todo, si accedemos al firewall secundario, vemos que la configuración de los servidores NTP se ha replicado correctamente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="765" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45-1536x614.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20179" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_45#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?fit=1914%2C765&amp;ssl=1" data-orig-size="1914,765" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_45" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?fit=640%2C256&amp;ssl=1" class="aligncenter size-full wp-image-20179" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?resize=640%2C256&#038;ssl=1" alt="" width="640" height="256" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?resize=595%2C238&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?resize=960%2C384&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?resize=768%2C307&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?resize=1536%2C614&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_45.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como comentamos anteriormente, vamos a configurar la red local de Azure dónde se conectarán nuestras máquinas virtuales, LAN Azure: <strong>Sub</strong><strong>netLAN-192_168_128_0-24</strong> y DMZ Azure: <strong>Sub</strong><strong>netDMZ-192_168_129_0-24</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="708" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46-1536x568.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20180" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_46#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?fit=1914%2C708&amp;ssl=1" data-orig-size="1914,708" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_46" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?fit=640%2C237&amp;ssl=1" class="aligncenter size-full wp-image-20180" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?resize=640%2C237&#038;ssl=1" alt="" width="640" height="237" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?resize=595%2C220&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?resize=960%2C355&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?resize=768%2C284&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?resize=1536%2C568&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_46.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo siguiente que vamos a desplegar y configurar es una tabla de rutas UDR (User Definition Routes) en Azure.</li>
<li>Accedemos al Marketplace, buscamos Route table y damos a crear:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png?ssl=1" data-lbwps-width="881" data-lbwps-height="637" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20181" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_47#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png?fit=881%2C637&amp;ssl=1" data-orig-size="881,637" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_47" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png?fit=640%2C463&amp;ssl=1" class="aligncenter size-full wp-image-20181" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png?resize=640%2C463&#038;ssl=1" alt="" width="640" height="463" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png?w=881&amp;ssl=1 881w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png?resize=595%2C430&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_47.png?resize=768%2C555&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Básico</strong> le indicamos el grupo de recursos, la región, le damos un nombre y le indicamos que propague las rutas de puerta de enlace:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?ssl=1" data-lbwps-width="979" data-lbwps-height="889" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20182" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_48#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?fit=979%2C889&amp;ssl=1" data-orig-size="979,889" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_48" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?fit=640%2C581&amp;ssl=1" class="aligncenter size-full wp-image-20182" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?resize=640%2C581&#038;ssl=1" alt="" width="640" height="581" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?w=979&amp;ssl=1 979w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?resize=595%2C540&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?resize=960%2C872&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_48.png?resize=768%2C697&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Etiquetas</strong> podemos configurar las que nos interesen:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png?ssl=1" data-lbwps-width="954" data-lbwps-height="888" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20183" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_49#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png?fit=954%2C888&amp;ssl=1" data-orig-size="954,888" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_49" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png?fit=640%2C596&amp;ssl=1" class="aligncenter size-full wp-image-20183" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png?resize=640%2C596&#038;ssl=1" alt="" width="640" height="596" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png?w=954&amp;ssl=1 954w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png?resize=595%2C554&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_49.png?resize=768%2C715&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Revisar y crear</strong> nos muestra un resumen sobre todo lo que le hemos configurado a la tabla de rutas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png?ssl=1" data-lbwps-width="944" data-lbwps-height="890" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20184" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_50#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png?fit=944%2C890&amp;ssl=1" data-orig-size="944,890" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_50" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png?fit=640%2C603&amp;ssl=1" class="aligncenter size-full wp-image-20184" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png?resize=640%2C603&#038;ssl=1" alt="" width="640" height="603" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png?w=944&amp;ssl=1 944w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png?resize=595%2C561&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_50.png?resize=768%2C724&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que se ha implementado correctamente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?ssl=1" data-lbwps-width="1601" data-lbwps-height="506" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51-1536x485.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20185" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_51#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?fit=1601%2C506&amp;ssl=1" data-orig-size="1601,506" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_51" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?fit=640%2C202&amp;ssl=1" class="aligncenter size-full wp-image-20185" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?resize=640%2C202&#038;ssl=1" alt="" width="640" height="202" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?w=1601&amp;ssl=1 1601w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?resize=595%2C188&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?resize=960%2C303&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?resize=768%2C243&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?resize=1536%2C485&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_51.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos al recurso y sobre subredes vamos a asociar las subredes LAN y DMZ que configuramos anteriormente, estas subredes son dónde vamos a ubicar las máquinas virtuales de nuestra infraestructura en Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?ssl=1" data-lbwps-width="1755" data-lbwps-height="633" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52-1536x554.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20186" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_52#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?fit=1755%2C633&amp;ssl=1" data-orig-size="1755,633" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_52" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-20186" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?resize=640%2C231&#038;ssl=1" alt="" width="640" height="231" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?w=1755&amp;ssl=1 1755w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?resize=595%2C215&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?resize=960%2C346&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?resize=768%2C277&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?resize=1536%2C554&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_52.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?ssl=1" data-lbwps-width="1906" data-lbwps-height="884" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53-1536x712.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20187" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_53#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?fit=1906%2C884&amp;ssl=1" data-orig-size="1906,884" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_53" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-20187" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?resize=640%2C297&#038;ssl=1" alt="" width="640" height="297" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?w=1906&amp;ssl=1 1906w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?resize=595%2C276&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?resize=960%2C445&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?resize=768%2C356&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?resize=1536%2C712&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_53.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?ssl=1" data-lbwps-width="1898" data-lbwps-height="892" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54-1536x722.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20188" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_54#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?fit=1898%2C892&amp;ssl=1" data-orig-size="1898,892" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_54" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?fit=640%2C301&amp;ssl=1" class="aligncenter size-full wp-image-20188" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?resize=640%2C301&#038;ssl=1" alt="" width="640" height="301" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?w=1898&amp;ssl=1 1898w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?resize=595%2C280&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?resize=960%2C451&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?resize=768%2C361&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?resize=1536%2C722&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_54.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya las tenemos asociadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?ssl=1" data-lbwps-width="1683" data-lbwps-height="652" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55-1536x595.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20189" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_55#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?fit=1683%2C652&amp;ssl=1" data-orig-size="1683,652" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_55" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?fit=640%2C248&amp;ssl=1" class="aligncenter size-full wp-image-20189" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?resize=640%2C248&#038;ssl=1" alt="" width="640" height="248" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?w=1683&amp;ssl=1 1683w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?resize=595%2C231&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?resize=960%2C372&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?resize=768%2C298&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?resize=1536%2C595&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_55.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a configurar las rutas, para ello, accedemos a <strong>Rutas &gt; Agregar</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?ssl=1" data-lbwps-width="1720" data-lbwps-height="509" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56-1536x455.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20190" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_56#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?fit=1720%2C509&amp;ssl=1" data-orig-size="1720,509" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_56" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?fit=640%2C189&amp;ssl=1" class="aligncenter size-full wp-image-20190" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?resize=640%2C189&#038;ssl=1" alt="" width="640" height="189" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?w=1720&amp;ssl=1 1720w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?resize=595%2C176&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?resize=960%2C284&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?resize=768%2C227&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?resize=1536%2C455&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_56.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La primera ruta que vamos a agregar, será la ruta por defecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="885" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57-1536x711.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20191" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_57#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?fit=1912%2C885&amp;ssl=1" data-orig-size="1912,885" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_57" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?fit=640%2C296&amp;ssl=1" class="aligncenter size-full wp-image-20191" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?resize=640%2C296&#038;ssl=1" alt="" width="640" height="296" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?resize=595%2C275&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?resize=960%2C444&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?resize=768%2C355&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?resize=1536%2C711&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_57.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La siguiente ruta será para el acceso a la subred LAN dónde vamos a ubicar nuestras máquinas virtuales:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?ssl=1" data-lbwps-width="1905" data-lbwps-height="889" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58-1536x717.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20192" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_58#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?fit=1905%2C889&amp;ssl=1" data-orig-size="1905,889" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_58" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?fit=640%2C299&amp;ssl=1" class="aligncenter size-full wp-image-20192" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?resize=640%2C299&#038;ssl=1" alt="" width="640" height="299" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?w=1905&amp;ssl=1 1905w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?resize=595%2C278&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?resize=960%2C448&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?resize=768%2C358&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?resize=1536%2C717&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_58.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La siguiente ruta será para el acceso a la subred DMZ dónde vamos a ubicar nuestras máquinas virtuales:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="891" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59-1536x715.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20193" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_59#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?fit=1914%2C891&amp;ssl=1" data-orig-size="1914,891" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_59" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?fit=640%2C298&amp;ssl=1" class="aligncenter size-full wp-image-20193" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?resize=640%2C298&#038;ssl=1" alt="" width="640" height="298" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?resize=595%2C277&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?resize=960%2C447&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?resize=768%2C358&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?resize=1536%2C715&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_59.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos las rutas agregadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="505" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60-1536x405.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20194" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_60#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?fit=1915%2C505&amp;ssl=1" data-orig-size="1915,505" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_60" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-20194" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?resize=960%2C253&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?resize=1536%2C405&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_60.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Información genera</strong>l en la tabla de rutas, podemos ver, todo lo que se ha configurado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="689" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61-1536x553.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20195" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_61#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?fit=1914%2C689&amp;ssl=1" data-orig-size="1914,689" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_61" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-20195" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?resize=640%2C230&#038;ssl=1" alt="" width="640" height="230" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?resize=595%2C214&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?resize=960%2C346&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?resize=768%2C276&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?resize=1536%2C553&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_61.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez configurada la tabla de rutas, accedemos a nuestro OPNSense HA en Azure, y nos vamos a crear estas dos rutas estáticas, la primera es la ruta por defecto, para que todo lo que no se encuentre en la tabla de enrutamiento del OPNSense lo envíe por la interface WAN al gateway de la subred Untrusted, y la segunda ruta son para servicios internos de Azure, para que lo envíe por la interface LAN al gateway de la subred Trusted:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?ssl=1" data-lbwps-width="1911" data-lbwps-height="698" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62-1536x561.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20196" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/dycdfwopnsclthaeaz_62#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?fit=1911%2C698&amp;ssl=1" data-orig-size="1911,698" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycdfwopnsclthaeaz_62" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?fit=640%2C234&amp;ssl=1" class="aligncenter size-full wp-image-20196" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?resize=640%2C234&#038;ssl=1" alt="" width="640" height="234" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?w=1911&amp;ssl=1 1911w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?resize=595%2C217&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?resize=960%2C351&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?resize=768%2C281&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?resize=1536%2C561&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/05/dycdfwopnsclthaeaz_62.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para todas las demás configuraciones de opnsense, <a href="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure" target="_blank" rel="noopener">podemos seguir los enlaces a estos post creados hace algún tiempo en el blog</a>.</li>
</ul>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/despliegue-y-configuracion-de-firewalls-opnsense-cluster-ha-en-azure/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">20134</post-id>	</item>
		<item>
		<title>FrontalWeb Apache sobre Ubuntu Server 24.04 LTS y certificados de Let&#8217;s Encrypt</title>
		<link>https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt</link>
					<comments>https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 31 Mar 2025 06:58:38 +0000</pubDate>
				<category><![CDATA[Apache Linux]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[FrontalWeb]]></category>
		<category><![CDATA[Let's Encrypt]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Proxy]]></category>
		<category><![CDATA[Ubuntu]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=19679</guid>

					<description><![CDATA[Hola a tod@s. En este post vamos a ver como montar un FrontalWeb con Apache (Reverse Proxy) sobre una máquina Ubuntu Server 24.04 LTS utilizando certificados de Let´s Encrypt, con esta implementación le vamos a dar un punto más de&#8230; <a href="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como montar un FrontalWeb con Apache (Reverse Proxy) sobre una máquina Ubuntu Server 24.04 LTS utilizando certificados de Let´s Encrypt, con esta implementación le vamos a dar un punto más de seguridad a nuestra infraestructura perimetral, ya que sólo vamos a exponer directamente a Internet un único servidor, sólo va a ser necesario abrir un puerto en nuestro Firewall, ya que a través del Frontalweb vamos a poder alcanzar a los demás servidores, los certificados digitales los vamos a instalar y administrar en un solo servidor, a través del Frontalweb que se va a encargar de cifrar todos los contenidos.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?ssl=1" data-lbwps-width="1258" data-lbwps-height="864" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19680" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle01#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?fit=1258%2C864&amp;ssl=1" data-orig-size="1258,864" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle01" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?fit=640%2C439&amp;ssl=1" class="aligncenter size-full wp-image-19680" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?resize=640%2C440&#038;ssl=1" alt="" width="640" height="440" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?w=1258&amp;ssl=1 1258w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?resize=595%2C409&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?resize=960%2C659&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle01.png?resize=768%2C527&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será la instalación de Apache, para ello ejecutamos el comando <strong>apt-get install apache2</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?ssl=1" data-lbwps-width="1330" data-lbwps-height="327" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19681" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle02#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?fit=1330%2C327&amp;ssl=1" data-orig-size="1330,327" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle02" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?fit=640%2C157&amp;ssl=1" class="aligncenter size-full wp-image-19681" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?resize=640%2C157&#038;ssl=1" alt="" width="640" height="157" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?w=1330&amp;ssl=1 1330w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?resize=595%2C146&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?resize=960%2C236&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?resize=768%2C189&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle02.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez finalizada la instalación, con el comando <strong>apache2ctl -v </strong>podemos ver la versión de apache que hemos instalado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle03.png?ssl=1" data-lbwps-width="717" data-lbwps-height="184" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle03.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19682" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle03#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle03.png?fit=717%2C184&amp;ssl=1" data-orig-size="717,184" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle03" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle03.png?fit=640%2C164&amp;ssl=1" class="aligncenter size-full wp-image-19682" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle03.png?resize=640%2C164&#038;ssl=1" alt="" width="640" height="164" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle03.png?w=717&amp;ssl=1 717w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle03.png?resize=595%2C153&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con el comando <strong>ufw app list </strong>podemos ver los perfiles de aplicación que se pueden usar para habilitar o deshabilitar el acceso a Apache a través del firewall de Ubuntu:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle04.png?ssl=1" data-lbwps-width="702" data-lbwps-height="232" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle04.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19683" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle04#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle04.png?fit=702%2C232&amp;ssl=1" data-orig-size="702,232" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle04" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle04.png?fit=640%2C212&amp;ssl=1" class="aligncenter size-full wp-image-19683" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle04.png?resize=640%2C212&#038;ssl=1" alt="" width="640" height="212" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle04.png?w=702&amp;ssl=1 702w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle04.png?resize=595%2C197&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><em>Apache → Este perfil solo abre el puerto 80 (tráfico web normal sin cifrar)</em></p>
<p><em>Apache Full → Abre tanto el puerto 80 (tráfico web normal sin cifrar) como el puerto 443 (tráfico cifrado TLS / SSL)</em></p>
<p><em>Apache Secure → Este perfil solo abre el puerto 443 (tráfico cifrado TLS / SSL)</em></p>
<ul>
<li>En nuestro caso vamos a permitir el acceso a los dos puertos (80 y 443), <strong>ufw allow &#8216;Apache Full&#8217;</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle05.png?ssl=1" data-lbwps-width="610" data-lbwps-height="264" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle05.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19684" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle05#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle05.png?fit=610%2C264&amp;ssl=1" data-orig-size="610,264" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle05" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle05.png?fit=610%2C264&amp;ssl=1" class="aligncenter size-full wp-image-19684" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle05.png?resize=610%2C264&#038;ssl=1" alt="" width="610" height="264" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle05.png?w=610&amp;ssl=1 610w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle05.png?resize=595%2C258&amp;ssl=1 595w" sizes="auto, (max-width: 610px) 100vw, 610px" /></a></p>
<ul>
<li>Para verificar que el servidor Apache está funcionando, accedemos a la URL de nuestro servidor, http://frontalweb.ragasys.net:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?ssl=1" data-lbwps-width="1362" data-lbwps-height="1051" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19685" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle06#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?fit=1362%2C1051&amp;ssl=1" data-orig-size="1362,1051" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle06" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?fit=640%2C494&amp;ssl=1" class="aligncenter size-full wp-image-19685" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?resize=640%2C494&#038;ssl=1" alt="" width="640" height="494" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?w=1362&amp;ssl=1 1362w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?resize=595%2C459&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?resize=960%2C741&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?resize=768%2C593&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle06.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con el comando <strong>systemctl status apache2 </strong>podemos ver el estado del servicio del servidor Apache, que como podemos ver está activo y ejecutándose:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?ssl=1" data-lbwps-width="1650" data-lbwps-height="393" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07-1536x366.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19686" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle07#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?fit=1650%2C393&amp;ssl=1" data-orig-size="1650,393" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle07" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?fit=640%2C153&amp;ssl=1" class="aligncenter size-full wp-image-19686" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?resize=640%2C152&#038;ssl=1" alt="" width="640" height="152" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?w=1650&amp;ssl=1 1650w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?resize=595%2C142&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?resize=960%2C229&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?resize=768%2C183&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?resize=1536%2C366&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle07.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez que hemos instalado nuestro servidor de apache, vamos a habilitar los siguientes módulos:</li>
<li>a2enmod ssl</li>
<li>a2enmod proxy</li>
<li>a2enmod proxy_http</li>
<li>a2enmod proxy_balancer</li>
<li>a2enmod lbmethod_byrequests</li>
<li>a2enmod headers</li>
<li>a2enmod rewrite</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?ssl=1" data-lbwps-width="1031" data-lbwps-height="803" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19687" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle08#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?fit=1031%2C803&amp;ssl=1" data-orig-size="1031,803" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle08" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?fit=640%2C499&amp;ssl=1" class="aligncenter size-full wp-image-19687" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?resize=640%2C498&#038;ssl=1" alt="" width="640" height="498" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?w=1031&amp;ssl=1 1031w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?resize=595%2C463&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?resize=960%2C748&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle08.png?resize=768%2C598&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle09.png?ssl=1" data-lbwps-width="644" data-lbwps-height="206" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle09.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19688" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle09#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle09.png?fit=644%2C206&amp;ssl=1" data-orig-size="644,206" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle09" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle09.png?fit=640%2C205&amp;ssl=1" class="aligncenter size-full wp-image-19688" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle09.png?resize=640%2C205&#038;ssl=1" alt="" width="640" height="205" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle09.png?w=644&amp;ssl=1 644w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle09.png?resize=595%2C190&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con el comando <strong>systemctl restart apache2 </strong>reiniciamos el servicio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?ssl=1" data-lbwps-width="1665" data-lbwps-height="427" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10-1536x394.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19689" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?fit=1665%2C427&amp;ssl=1" data-orig-size="1665,427" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?fit=640%2C164&amp;ssl=1" class="aligncenter size-full wp-image-19689" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?resize=640%2C164&#038;ssl=1" alt="" width="640" height="164" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?w=1665&amp;ssl=1 1665w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?resize=595%2C153&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?resize=960%2C246&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?resize=768%2C197&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?resize=1536%2C394&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos vamos a crear nuestro primer VirtualHost, en la ruta <strong>/etc/apache2/sites-available</strong>, y ejecutando <strong>nano nextcloud.ragasys.eu.conf</strong>, este primer VirtualHost será un servidor de Nextcloud que tenemos en nuestra infraestructura, con este fichero, todo el tráfico http y https que llegue a la URL de dominio púbico indicada, se va a redirigir al servidor interno de nextcloud, siempre a través de conexión cifrada https:</li>
</ul>
<p>&lt;VirtualHost *:80&gt;<br />
ServerName nextcloud.ragasys.eu<br />
ServerAlias nextcloud.ragasys.eu</p>
<p>#RewriteEngine On<br />
#RewriteCond %{HTTPS} off<br />
#RewriteRule ^ https://%{HTTP_HOST}%{REQUEST_URI} [L,R=301]</p>
<p>ErrorLog /var/log/apache2/nextcloud.ragasys.eu/error.log<br />
CustomLog /var/log/apache2/nextcloud.ragasys.eu/access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p>&lt;VirtualHost *:443&gt;<br />
ServerName nextcloud.ragasys.eu<br />
ServerAlias nextcloud.ragasys.eu</p>
<p>#SSLEngine on<br />
#SSLCertificateFile /etc/letsencrypt/live/nextcloud.ragasys.eu/fullchain.pem<br />
#SSLCertificateKeyFile /etc/letsencrypt/live/netxcloud.ragasys.eu/privkey.pem</p>
<p>ProxyPreserveHost On<br />
ProxyPass / http://nextcloud.ragasys.net/<br />
ProxyPassReverse / http://nextcloud.ragasys.net/</p>
<p>ErrorLog /var/log/apache2/nextcloud.ragasys.eu/ssl-error.log<br />
CustomLog /var/log/apache2/nextcloud.ragasys.eu/ssl-access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png?ssl=1" data-lbwps-width="842" data-lbwps-height="140" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19690" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png?fit=842%2C140&amp;ssl=1" data-orig-size="842,140" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png?fit=640%2C106&amp;ssl=1" class="aligncenter size-full wp-image-19690" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png?resize=640%2C106&#038;ssl=1" alt="" width="640" height="106" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png?w=842&amp;ssl=1 842w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png?resize=595%2C99&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle11.png?resize=768%2C128&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?ssl=1" data-lbwps-width="1017" data-lbwps-height="641" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19691" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?fit=1017%2C641&amp;ssl=1" data-orig-size="1017,641" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?fit=640%2C403&amp;ssl=1" class="aligncenter size-full wp-image-19691" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?resize=640%2C403&#038;ssl=1" alt="" width="640" height="403" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?w=1017&amp;ssl=1 1017w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?resize=595%2C375&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?resize=960%2C605&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle12.png?resize=768%2C484&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos creamos nuestro segundo VirtualHost, en la ruta <strong>/etc/apache2/sites-available</strong>, y ejecutando <strong>nano guacamole.ragasys.eu.conf</strong>:</li>
</ul>
<p>&lt;VirtualHost *:80&gt;<br />
ServerName guacamole.ragasys.eu<br />
ServerAlias guacamole.ragasys.eu</p>
<p>#RewriteEngine On<br />
#RewriteCond %{HTTPS} off<br />
#RewriteRule ^ https://%{HTTP_HOST}%{REQUEST_URI} [L,R=301]</p>
<p>ErrorLog /var/log/apache2/guacamole.ragasys.eu/error.log<br />
CustomLog /var/log/apache2/guacamole.ragasys.eu/access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p>&lt;VirtualHost *:443&gt;<br />
ServerName guacamole.ragasys.eu<br />
ServerAlias guacamole.ragasys.eu</p>
<p>#SSLEngine on<br />
#SSLCertificateFile /etc/letsencrypt/live/guacamole.ragasys.eu/fullchain.pem<br />
#SSLCertificateKeyFile /etc/letsencrypt/live/guacamole.ragasys.eu/privkey.pem</p>
<p>ProxyPreserveHost On<br />
ProxyPass /guacamole http://guacamole.ragasys.net:8080/guacamole/ flushpackets=on<br />
ProxyPassReverse /guacamole http://guacamole.ragasys.net:8080/guacamole/</p>
<p>ErrorLog /var/log/apache2/guacamole.ragasys.eu/ssl-error.log<br />
CustomLog /var/log/apache2/guacamole.ragasys.eu/ssl-access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png?ssl=1" data-lbwps-width="848" data-lbwps-height="108" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19692" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png?fit=848%2C108&amp;ssl=1" data-orig-size="848,108" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png?fit=640%2C82&amp;ssl=1" class="aligncenter size-full wp-image-19692" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png?resize=640%2C82&#038;ssl=1" alt="" width="640" height="82" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png?w=848&amp;ssl=1 848w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png?resize=595%2C76&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle13.png?resize=768%2C98&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?ssl=1" data-lbwps-width="1023" data-lbwps-height="646" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19693" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?fit=1023%2C646&amp;ssl=1" data-orig-size="1023,646" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?fit=640%2C404&amp;ssl=1" class="aligncenter size-full wp-image-19693" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?resize=640%2C404&#038;ssl=1" alt="" width="640" height="404" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?w=1023&amp;ssl=1 1023w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?resize=595%2C376&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?resize=960%2C606&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle14.png?resize=768%2C485&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos creamos también el directorio para los logs de los sites virtuales:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?ssl=1" data-lbwps-width="993" data-lbwps-height="218" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19694" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?fit=993%2C218&amp;ssl=1" data-orig-size="993,218" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?fit=640%2C141&amp;ssl=1" class="aligncenter size-full wp-image-19694" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?resize=640%2C141&#038;ssl=1" alt="" width="640" height="141" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?w=993&amp;ssl=1 993w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?resize=595%2C131&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?resize=960%2C211&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle15.png?resize=768%2C169&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Habilitamos los VirtualHost con el comando <strong>a2ensite nextcloud.ragasys.eu.conf </strong>y <strong>a2ensite guacamole.ragasys.eu.conf </strong>y como podemos ver ya tenemos habilitados los sites:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png?ssl=1" data-lbwps-width="906" data-lbwps-height="306" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19695" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png?fit=906%2C306&amp;ssl=1" data-orig-size="906,306" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png?fit=640%2C216&amp;ssl=1" class="aligncenter size-full wp-image-19695" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png?resize=640%2C216&#038;ssl=1" alt="" width="640" height="216" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png?w=906&amp;ssl=1 906w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png?resize=595%2C201&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle16.png?resize=768%2C259&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Deshabilitamos el site por defecto <strong>a2dissite 000-default.conf</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png?ssl=1" data-lbwps-width="784" data-lbwps-height="207" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19696" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png?fit=784%2C207&amp;ssl=1" data-orig-size="784,207" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-19696" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png?w=784&amp;ssl=1 784w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle17.png?resize=768%2C203&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejecutamos <strong>systemctl restart apache2</strong> y <strong>systemctl status apache2</strong> para reiniciar y ver el estado del servicio<strong>:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?ssl=1" data-lbwps-width="1660" data-lbwps-height="441" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18-1536x408.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19697" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?fit=1660%2C441&amp;ssl=1" data-orig-size="1660,441" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?fit=640%2C170&amp;ssl=1" class="aligncenter size-full wp-image-19697" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?resize=640%2C170&#038;ssl=1" alt="" width="640" height="170" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?w=1660&amp;ssl=1 1660w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?resize=595%2C158&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?resize=960%2C255&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?resize=768%2C204&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?resize=1536%2C408&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle18.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora en nuestro Firewall, que en mi caso es un Fortigate, nos debemos de crear las reglas necesarias para publicar el puerto 443 apuntando al servidor FrontalWeb que va a ser el único que vamos a exponer en el perímetro, <a href="https://blog.ragasys.es/mapear-puertos-en-firewall-fortigate" target="_blank" rel="noopener">en este post de este mismo blog podemos ver como hacerlo</a>, primero realizamos un NAT estático y luego nos creamos la regla de acceso a los puertos HTTP y HTTPS para el NAT estático creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?ssl=1" data-lbwps-width="1252" data-lbwps-height="720" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19698" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?fit=1252%2C720&amp;ssl=1" data-orig-size="1252,720" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?fit=640%2C368&amp;ssl=1" class="aligncenter size-full wp-image-19698" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?resize=640%2C368&#038;ssl=1" alt="" width="640" height="368" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?w=1252&amp;ssl=1 1252w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?resize=595%2C342&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?resize=960%2C552&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle19.png?resize=768%2C442&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?ssl=1" data-lbwps-width="1244" data-lbwps-height="1080" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19699" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?fit=1244%2C1080&amp;ssl=1" data-orig-size="1244,1080" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?fit=640%2C555&amp;ssl=1" class="aligncenter size-full wp-image-19699" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?resize=640%2C556&#038;ssl=1" alt="" width="640" height="556" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?w=1244&amp;ssl=1 1244w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?resize=595%2C517&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?resize=960%2C833&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle20.png?resize=768%2C667&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestro DNS interno debemos de crearnos una zona de búsqueda directa, en mi caso, ragasys.eu, que es el dominio externo que hemos comprado a nuestro proveedor de DNS y que utilizaremos para publicar nuestros servicios, esto lo hacemos en nuestra infraestructura interna, para que los usuarios que accedan desde la red interna no salgan al exterior, en esta zona de búsqueda directa nos creamos estos registros Tipo A y CNAME:<strong> </strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?ssl=1" data-lbwps-width="1522" data-lbwps-height="351" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19700" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?fit=1522%2C351&amp;ssl=1" data-orig-size="1522,351" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?fit=640%2C147&amp;ssl=1" class="aligncenter size-full wp-image-19700" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?resize=640%2C148&#038;ssl=1" alt="" width="640" height="148" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?w=1522&amp;ssl=1 1522w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?resize=595%2C137&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?resize=960%2C221&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?resize=768%2C177&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle21.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestro DNS externo, el que tengamos contratado con nuestro proveedor de DNS, debemos de hacer algo parecido, es decir, debemos de crearnos un subdominio del tipo www.ragasys.eu con un registro tipo A apuntando a nuestra IP púbica, y nos crearemos subdominios por cada servicio que queramos publicar con un registro del tipo CNAME apuntando a www.ragasys.eu:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png?ssl=1" data-lbwps-width="945" data-lbwps-height="593" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19701" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png?fit=945%2C593&amp;ssl=1" data-orig-size="945,593" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png?fit=640%2C402&amp;ssl=1" class="aligncenter size-full wp-image-19701" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png?resize=640%2C402&#038;ssl=1" alt="" width="640" height="402" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png?w=945&amp;ssl=1 945w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png?resize=595%2C373&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle22.png?resize=768%2C482&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a instalar cerbot, para ello, ejecutamos <strong>apt install certbot python3-certbot-apache</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?ssl=1" data-lbwps-width="1547" data-lbwps-height="337" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23-1536x335.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19702" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?fit=1547%2C337&amp;ssl=1" data-orig-size="1547,337" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?fit=640%2C139&amp;ssl=1" class="aligncenter size-full wp-image-19702" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?resize=640%2C139&#038;ssl=1" alt="" width="640" height="139" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?w=1547&amp;ssl=1 1547w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?resize=595%2C130&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?resize=960%2C209&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?resize=768%2C167&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?resize=1536%2C335&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle23.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Obtenemos el certificado SSL de Let’s Encrypt para el primer site, para ello, ejecutamos <strong>certbot &#8211;apache -d nextcloud.ragasys.eu</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?ssl=1" data-lbwps-width="1143" data-lbwps-height="816" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19703" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?fit=1143%2C816&amp;ssl=1" data-orig-size="1143,816" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?fit=640%2C457&amp;ssl=1" class="aligncenter size-full wp-image-19703" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?resize=640%2C457&#038;ssl=1" alt="" width="640" height="457" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?w=1143&amp;ssl=1 1143w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?resize=595%2C425&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?resize=960%2C685&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle24.png?resize=768%2C548&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Obtenemos el certificado SSL de Let’s Encrypt para el segundo site, para ello, ejecutamos <strong>certbot &#8211;apache -d guacamole.ragasys.eu</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?ssl=1" data-lbwps-width="1122" data-lbwps-height="466" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19704" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?fit=1122%2C466&amp;ssl=1" data-orig-size="1122,466" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?fit=640%2C266&amp;ssl=1" class="aligncenter size-full wp-image-19704" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?resize=640%2C266&#038;ssl=1" alt="" width="640" height="266" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?w=1122&amp;ssl=1 1122w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?resize=595%2C247&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?resize=960%2C399&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle25.png?resize=768%2C319&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si accedemos a la configuración de los sites virtuales, nos ha quedado así tras el despliegue de los certificados SSL de Let’s Encrypt:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?ssl=1" data-lbwps-width="1040" data-lbwps-height="737" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19705" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?fit=1040%2C737&amp;ssl=1" data-orig-size="1040,737" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?fit=640%2C453&amp;ssl=1" class="aligncenter size-full wp-image-19705" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?resize=640%2C454&#038;ssl=1" alt="" width="640" height="454" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?w=1040&amp;ssl=1 1040w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?resize=595%2C422&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?resize=960%2C680&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle26.png?resize=768%2C544&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?ssl=1" data-lbwps-width="1028" data-lbwps-height="719" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19706" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?fit=1028%2C719&amp;ssl=1" data-orig-size="1028,719" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?fit=640%2C447&amp;ssl=1" class="aligncenter size-full wp-image-19706" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?resize=640%2C448&#038;ssl=1" alt="" width="640" height="448" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?w=1028&amp;ssl=1 1028w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?resize=595%2C416&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?resize=960%2C671&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?resize=768%2C537&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle27.png?resize=250%2C175&amp;ssl=1 250w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>El fichero bien estructurado del primer site debe quedar así:</li>
</ul>
<p>&lt;VirtualHost *:80&gt;<br />
ServerName nextcloud.ragasys.eu<br />
ServerAlias nextcloud.ragasys.eu</p>
<p>RewriteEngine on<br />
RewriteCond %{SERVER_NAME} =nextcloud.ragasys.eu<br />
RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,NE,R=permanent]</p>
<p>ErrorLog /var/log/apache2/nextcloud.ragasys.eu/error.log<br />
CustomLog /var/log/apache2/nextcloud.ragasys.eu/access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p>&lt;VirtualHost *:443&gt;<br />
ServerName nextcloud.ragasys.eu<br />
ServerAlias nextcloud.ragasys.eu</p>
<p>SSLEngine on<br />
SSLCertificateFile /etc/letsencrypt/live/nextcloud.ragasys.eu/fullchain.pem<br />
SSLCertificateKeyFile /etc/letsencrypt/live/nextcloud.ragasys.eu/privkey.pem<br />
Include /etc/letsencrypt/options-ssl-apache.conf</p>
<p>ProxyPreserveHost On<br />
ProxyPass / http://nextcloud.ragasys.net/<br />
ProxyPassReverse / http://nextcloud.ragasys.net/</p>
<p>ErrorLog /var/log/apache2/nextcloud.ragasys.eu/ssl-error.log<br />
CustomLog /var/log/apache2/nextcloud.ragasys.eu/ssl-access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?ssl=1" data-lbwps-width="1011" data-lbwps-height="659" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19707" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?fit=1011%2C659&amp;ssl=1" data-orig-size="1011,659" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?fit=640%2C417&amp;ssl=1" class="aligncenter size-full wp-image-19707" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?resize=640%2C417&#038;ssl=1" alt="" width="640" height="417" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?w=1011&amp;ssl=1 1011w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?resize=595%2C388&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?resize=960%2C626&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle28.png?resize=768%2C501&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>El fichero bien estructurado del segundo site debe quedar así:</li>
</ul>
<p>&lt;VirtualHost *:80&gt;<br />
ServerName guacamole.ragasys.eu<br />
ServerAlias guacamole.ragasys.eu</p>
<p>RewriteEngine on<br />
RewriteCond %{SERVER_NAME} =guacamole.ragasys.eu<br />
RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,NE,R=permanent]</p>
<p>ErrorLog /var/log/apache2/guacamole.ragasys.eu/error.log<br />
CustomLog /var/log/apache2/guacamole.ragasys.eu/access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p>&lt;VirtualHost *:443&gt;<br />
ServerName guacamole.ragasys.eu<br />
ServerAlias guacamole.ragasys.eu</p>
<p>SSLEngine on<br />
SSLCertificateFile /etc/letsencrypt/live/guacamole.ragasys.eu/fullchain.pem<br />
SSLCertificateKeyFile /etc/letsencrypt/live/guacamole.ragasys.eu/privkey.pem<br />
Include /etc/letsencrypt/options-ssl-apache.conf</p>
<p>ProxyPreserveHost On<br />
ProxyPass /guacamole http://guacamole.ragasys.net:8080/guacamole/ flushpackets=on<br />
ProxyPassReverse /guacamole http://guacamole.ragasys.net:8080/guacamole/</p>
<p>ErrorLog /var/log/apache2/guacamole.ragasys.eu/ssl-error.log<br />
CustomLog /var/log/apache2/guacamole.ragasys.eu/ssl-access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?ssl=1" data-lbwps-width="1001" data-lbwps-height="663" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19708" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?fit=1001%2C663&amp;ssl=1" data-orig-size="1001,663" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?fit=640%2C424&amp;ssl=1" class="aligncenter size-full wp-image-19708" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?resize=640%2C424&#038;ssl=1" alt="" width="640" height="424" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?w=1001&amp;ssl=1 1001w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?resize=595%2C394&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?resize=960%2C636&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle29.png?resize=768%2C509&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>El fichero de este segundo host me ha estado dando problemas, y no conseguía acceder, se iba siempre a la página por defecto de apache.</li>
<li>Para dejarlo fino y funcionando, se ha quedado así de manera definitiva:</li>
</ul>
<p>&lt;VirtualHost *:80&gt;<br />
ServerName guacamole.ragasys.eu<br />
ServerAlias guacamole.ragasys.eu</p>
<p>RewriteEngine on<br />
RewriteRule /(.*) https://guacamole.ragasys.eu/guacamole [R,L]</p>
<p>ErrorLog /var/log/apache2/guacamole.ragasys.eu/error.log<br />
CustomLog /var/log/apache2/guacamole.ragasys.eu/access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p>&lt;VirtualHost *:443&gt;<br />
ServerName guacamole.ragasys.eu<br />
ServerAlias guacamole.ragasys.eu</p>
<p>SSLEngine on<br />
SSLCertificateFile /etc/letsencrypt/live/guacamole.ragasys.eu/fullchain.pem<br />
SSLCertificateKeyFile /etc/letsencrypt/live/guacamole.ragasys.eu/privkey.pem<br />
Include /etc/letsencrypt/options-ssl-apache.conf</p>
<p>ProxyPreserveHost On<br />
SSLProxyEngine On<br />
RewriteEngine On</p>
<p>&lt;Location /&gt;<br />
ProxyPass http://guacamole.ragasys.net:8080/guacamole/ flushpackets=on<br />
ProxyPassReverse http://guacamole.ragasys.net:8080/guacamole/<br />
&lt;/Location&gt;<br />
ErrorLog /var/log/apache2/guacamole.ragasys.eu/ssl-error.log<br />
CustomLog /var/log/apache2/guacamole.ragasys.eu/ssl-access.log combined<br />
&lt;/VirtualHost&gt;</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?ssl=1" data-lbwps-width="1010" data-lbwps-height="685" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19709" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?fit=1010%2C685&amp;ssl=1" data-orig-size="1010,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?fit=640%2C434&amp;ssl=1" class="aligncenter size-full wp-image-19709" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?resize=640%2C434&#038;ssl=1" alt="" width="640" height="434" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?w=1010&amp;ssl=1 1010w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?resize=595%2C404&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?resize=960%2C651&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle30.png?resize=768%2C521&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Certbot renueva los certificados automáticamente, pero podemos verificarlo con, <strong>certbot renew &#8211;dry-run</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png?ssl=1" data-lbwps-width="831" data-lbwps-height="435" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19710" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png?fit=831%2C435&amp;ssl=1" data-orig-size="831,435" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png?fit=640%2C335&amp;ssl=1" class="aligncenter size-full wp-image-19710" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png?resize=640%2C335&#038;ssl=1" alt="" width="640" height="335" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png?w=831&amp;ssl=1 831w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png?resize=595%2C311&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle31.png?resize=768%2C402&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que ya podemos acceder a nuestro servidor de Nextcloud desde el exterior, a través del FrontalWeb, con los certificados SSL de Let’s Encrypt:<strong> </strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?ssl=1" data-lbwps-width="1181" data-lbwps-height="636" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19711" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle32#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?fit=1181%2C636&amp;ssl=1" data-orig-size="1181,636" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle32" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-19711" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?resize=640%2C345&#038;ssl=1" alt="" width="640" height="345" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?w=1181&amp;ssl=1 1181w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?resize=595%2C320&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?resize=960%2C517&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle32.png?resize=768%2C414&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?ssl=1" data-lbwps-width="1228" data-lbwps-height="524" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19712" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle33#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?fit=1228%2C524&amp;ssl=1" data-orig-size="1228,524" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle33" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?fit=640%2C273&amp;ssl=1" class="aligncenter size-full wp-image-19712" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?resize=640%2C273&#038;ssl=1" alt="" width="640" height="273" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?w=1228&amp;ssl=1 1228w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?resize=595%2C254&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?resize=960%2C410&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle33.png?resize=768%2C328&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que ya podemos acceder a nuestro servidor de Apache Guacamole desde el exterior, a través del FrontalWeb, con los certificados SSL de Let’s Encrypt:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?ssl=1" data-lbwps-width="1147" data-lbwps-height="776" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19713" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle34#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?fit=1147%2C776&amp;ssl=1" data-orig-size="1147,776" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle34" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?fit=640%2C433&amp;ssl=1" class="aligncenter size-full wp-image-19713" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?resize=640%2C433&#038;ssl=1" alt="" width="640" height="433" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?w=1147&amp;ssl=1 1147w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?resize=595%2C403&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?resize=960%2C649&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle34.png?resize=768%2C520&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="522" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19714" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle35#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?fit=1227%2C522&amp;ssl=1" data-orig-size="1227,522" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle35" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?fit=640%2C272&amp;ssl=1" class="aligncenter size-full wp-image-19714" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?resize=640%2C272&#038;ssl=1" alt="" width="640" height="272" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?resize=595%2C253&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?resize=960%2C408&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle35.png?resize=768%2C327&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para comprobar el certificado podemos acceder a  <a href="https://www.ssllabs.com/ssltest/" target="_blank" rel="noopener">https://www.ssllabs.com/ssltest/</a> y verificamos el certificado para nuestros dos sitios webs:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?ssl=1" data-lbwps-width="1364" data-lbwps-height="595" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19715" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle36#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?fit=1364%2C595&amp;ssl=1" data-orig-size="1364,595" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle36" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?fit=640%2C279&amp;ssl=1" class="aligncenter size-full wp-image-19715" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?resize=640%2C279&#038;ssl=1" alt="" width="640" height="279" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?w=1364&amp;ssl=1 1364w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?resize=595%2C260&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?resize=960%2C419&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?resize=768%2C335&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle36.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?ssl=1" data-lbwps-width="1358" data-lbwps-height="966" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19716" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle37#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?fit=1358%2C966&amp;ssl=1" data-orig-size="1358,966" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle37" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?fit=640%2C455&amp;ssl=1" class="aligncenter size-full wp-image-19716" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?resize=640%2C455&#038;ssl=1" alt="" width="640" height="455" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?w=1358&amp;ssl=1 1358w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?resize=595%2C423&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?resize=960%2C683&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?resize=768%2C546&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle37.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?ssl=1" data-lbwps-width="1369" data-lbwps-height="536" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19717" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle38#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?fit=1369%2C536&amp;ssl=1" data-orig-size="1369,536" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle38" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?fit=640%2C251&amp;ssl=1" class="aligncenter size-full wp-image-19717" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?resize=640%2C251&#038;ssl=1" alt="" width="640" height="251" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?w=1369&amp;ssl=1 1369w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?resize=595%2C233&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?resize=960%2C376&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?resize=768%2C301&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle38.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?ssl=1" data-lbwps-width="1357" data-lbwps-height="918" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19718" data-permalink="https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/fwasus2404ycle39#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?fit=1357%2C918&amp;ssl=1" data-orig-size="1357,918" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwasus2404ycle39" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?fit=640%2C433&amp;ssl=1" class="aligncenter size-full wp-image-19718" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?resize=640%2C433&#038;ssl=1" alt="" width="640" height="433" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?w=1357&amp;ssl=1 1357w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?resize=595%2C403&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?resize=960%2C649&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?resize=768%2C520&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwasus2404ycle39.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/frontalweb-apache-sobre-ubuntu-server-24-04-lts-y-certificados-de-lets-encrypt/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19679</post-id>	</item>
		<item>
		<title>Firewall VMARE vCenter Server Appliance</title>
		<link>https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance</link>
					<comments>https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 17 Mar 2025 08:55:25 +0000</pubDate>
				<category><![CDATA[Broadcom]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Seguridad]]></category>
		<category><![CDATA[vCenter]]></category>
		<category><![CDATA[VCSA]]></category>
		<category><![CDATA[Virtualización]]></category>
		<category><![CDATA[VMware]]></category>
		<category><![CDATA[vSphere]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=19569</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver como crear reglas del firewall en nuestro vCenter para limitar y supervisar el acceso a la plataforma. Para todo el tráfico de red entrante en el firewall se pueden aplicar esta&#8230; <a href="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver como crear reglas del firewall en nuestro vCenter para limitar y supervisar el acceso a la plataforma.</p>
<ul>
<li>Para todo el tráfico de red entrante en el firewall se pueden aplicar esta acciones:</li>
<li><strong>Aceptar</strong>, permite el paquete con la dirección correspondiente.</li>
<li><strong>Omitir</strong>, descarta el paquete con la dirección correspondiente.</li>
<li><strong>Rechazar</strong>, descarta el paquete con la dirección correspondiente mientras que no se puede acceder al destino de envío.</li>
<li><strong>Regresar</strong>, aplica reglas predeterminadas o específicas del puerto en un paquete con la dirección correspondiente.</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_1.png?ssl=1" data-lbwps-width="599" data-lbwps-height="426" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19570" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_1.png?fit=599%2C426&amp;ssl=1" data-orig-size="599,426" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_1.png?fit=599%2C426&amp;ssl=1" class="aligncenter size-full wp-image-19570" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_1.png?resize=599%2C426&#038;ssl=1" alt="" width="599" height="426" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_1.png?w=599&amp;ssl=1 599w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_1.png?resize=595%2C423&amp;ssl=1 595w" sizes="auto, (max-width: 599px) 100vw, 599px" /></a></p>
<ul>
<li>Para configurar reglas de firewall accedemos a la interface VAMI y accedemos a <strong>Firewall &gt; AGREGAR</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?ssl=1" data-lbwps-width="1585" data-lbwps-height="554" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2-1536x537.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19571" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?fit=1585%2C554&amp;ssl=1" data-orig-size="1585,554" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?fit=640%2C224&amp;ssl=1" class="aligncenter size-full wp-image-19571" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?resize=640%2C224&#038;ssl=1" alt="" width="640" height="224" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?w=1585&amp;ssl=1 1585w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?resize=595%2C208&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?resize=960%2C336&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?resize=768%2C268&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?resize=1536%2C537&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Vamos a crear una regla para permitir el acceso desde una determinada IP:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_3.png?ssl=1" data-lbwps-width="580" data-lbwps-height="375" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19572" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_3.png?fit=580%2C375&amp;ssl=1" data-orig-size="580,375" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_3.png?fit=580%2C375&amp;ssl=1" class="aligncenter size-full wp-image-19572" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_3.png?resize=580%2C375&#038;ssl=1" alt="" width="580" height="375" /></a></p>
<ul>
<li>Y otra regla para denegar todo lo demás:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_4.png?ssl=1" data-lbwps-width="581" data-lbwps-height="376" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19573" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_4.png?fit=581%2C376&amp;ssl=1" data-orig-size="581,376" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_4.png?fit=581%2C376&amp;ssl=1" class="aligncenter size-full wp-image-19573" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_4.png?resize=581%2C376&#038;ssl=1" alt="" width="581" height="376" /></a></p>
<ul>
<li>Aquí tenemos las dos reglas creadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?ssl=1" data-lbwps-width="1689" data-lbwps-height="502" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5-1536x457.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19574" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?fit=1689%2C502&amp;ssl=1" data-orig-size="1689,502" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?fit=640%2C190&amp;ssl=1" class="aligncenter size-full wp-image-19574" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?resize=640%2C190&#038;ssl=1" alt="" width="640" height="190" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?w=1689&amp;ssl=1 1689w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?resize=595%2C177&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?resize=960%2C285&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?resize=768%2C228&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?resize=1536%2C457&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora si accedemos por SSH a nuestro vCenter y hacemos un <strong>iptables -L</strong> veremos que ya tenemos estas dos reglas agregadas, me muestra el nombre asignado a esa IP ya que tengo configurado DNS en el vCenter y está resolviendo esa IP:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?ssl=1" data-lbwps-width="1147" data-lbwps-height="921" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19575" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?fit=1147%2C921&amp;ssl=1" data-orig-size="1147,921" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?fit=640%2C514&amp;ssl=1" class="aligncenter size-full wp-image-19575" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?resize=640%2C514&#038;ssl=1" alt="" width="640" height="514" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?w=1147&amp;ssl=1 1147w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?resize=595%2C478&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?resize=960%2C771&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_6.png?resize=768%2C617&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?ssl=1" data-lbwps-width="1151" data-lbwps-height="810" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19576" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?fit=1151%2C810&amp;ssl=1" data-orig-size="1151,810" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?fit=640%2C451&amp;ssl=1" class="aligncenter size-full wp-image-19576" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?resize=640%2C450&#038;ssl=1" alt="" width="640" height="450" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?w=1151&amp;ssl=1 1151w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?resize=595%2C419&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?resize=960%2C676&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?resize=768%2C540&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_7.png?resize=250%2C175&amp;ssl=1 250w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con estas dos reglas le estamos indicando al vCenter que sólo será accesible desde la IP 192.168.14.14, aquí ya configuramos las reglas que nos vengan bien, y vamos añadiendo las que nos vayan haciendo falta, luego con <strong>REORDENAR</strong> podemos ponerla en el orden que nos venga bien:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?ssl=1" data-lbwps-width="1841" data-lbwps-height="479" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8-1536x400.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19577" data-permalink="https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/fwvmwvcsa_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?fit=1841%2C479&amp;ssl=1" data-orig-size="1841,479" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fwvmwvcsa_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?fit=640%2C167&amp;ssl=1" class="aligncenter size-full wp-image-19577" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?resize=640%2C167&#038;ssl=1" alt="" width="640" height="167" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?w=1841&amp;ssl=1 1841w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?resize=595%2C155&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?resize=960%2C250&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?resize=768%2C200&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?resize=1536%2C400&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/03/fwvmwvcsa_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/firewall-vmare-vcenter-server-appliance/feed</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19569</post-id>	</item>
		<item>
		<title>Configuración SD-WAN en Firewall Fortigate</title>
		<link>https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate</link>
					<comments>https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 24 Feb 2025 08:40:15 +0000</pubDate>
				<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[sd-wan]]></category>
		<category><![CDATA[TIC]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=19380</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo configurar SD-WAN (Software-Defined WAN) en firewalls fortigate. SD-WAN es una interface virtual compuesta por 2 o más interfaces con acceso a Internet, el objetivo de SD-WAN es hacer un uso&#8230; <a href="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo configurar SD-WAN (Software-Defined WAN) en firewalls fortigate.</p>
<p>SD-WAN es una interface virtual compuesta por 2 o más interfaces con acceso a Internet, el objetivo de SD-WAN es hacer un uso mucho más efectivo de nuestras conexiones hacia internet aplicando diferentes criterios de balanceo.</p>
<ul>
<li>Antes de empezar vamos a ver las interfaces de red que tenemos configuradas en nuestro firewall, para ello, accedemos a <strong>Network &gt; Interfaces </strong>y vemos que ya tenemos configuradas la interface LAN y dos interfaces WAN para la salida a Internet, estas dos interfaces son las que vamos a configurar para la SD-WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?ssl=1" data-lbwps-width="1582" data-lbwps-height="718" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1-1536x697.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19382" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?fit=1582%2C718&amp;ssl=1" data-orig-size="1582,718" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?fit=640%2C291&amp;ssl=1" class="aligncenter size-full wp-image-19382" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?resize=640%2C290&#038;ssl=1" alt="" width="640" height="290" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?w=1582&amp;ssl=1 1582w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?resize=595%2C270&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?resize=960%2C436&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?resize=768%2C349&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?resize=1536%2C697&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?resize=300%2C135&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para empezar a configurar SD-WAN accedemos a <strong>Network &gt; SD-WAN</strong> y la configuramos manualmente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?ssl=1" data-lbwps-width="1462" data-lbwps-height="626" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19383" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?fit=1462%2C626&amp;ssl=1" data-orig-size="1462,626" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?fit=640%2C274&amp;ssl=1" class="aligncenter size-full wp-image-19383" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?resize=640%2C274&#038;ssl=1" alt="" width="640" height="274" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?w=1462&amp;ssl=1 1462w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?resize=595%2C255&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?resize=960%2C411&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?resize=768%2C329&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre SD-WAN Zones podemos ver que hay creada ya una interface virtual, podemos utilizar esta interface y añadirle los miembros y empezar a trabajar, pero en nuestro caso nos vamos a crear una nueva zona y le vamos a añadir como miembros nuestras dos interfaces WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?ssl=1" data-lbwps-width="1818" data-lbwps-height="333" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3-1536x281.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19384" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?fit=1818%2C333&amp;ssl=1" data-orig-size="1818,333" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?fit=640%2C117&amp;ssl=1" class="aligncenter size-full wp-image-19384" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?resize=640%2C117&#038;ssl=1" alt="" width="640" height="117" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?w=1818&amp;ssl=1 1818w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?resize=595%2C109&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?resize=960%2C176&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?resize=768%2C141&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?resize=1536%2C281&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?ssl=1" data-lbwps-width="1177" data-lbwps-height="342" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19385" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?fit=1177%2C342&amp;ssl=1" data-orig-size="1177,342" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?fit=640%2C186&amp;ssl=1" class="aligncenter size-full wp-image-19385" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?resize=640%2C186&#038;ssl=1" alt="" width="640" height="186" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?w=1177&amp;ssl=1 1177w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?resize=595%2C173&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?resize=960%2C279&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_4.png?resize=768%2C223&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Le indicamos un nombre y OK:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?ssl=1" data-lbwps-width="1564" data-lbwps-height="935" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5-1536x918.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19386" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?fit=1564%2C935&amp;ssl=1" data-orig-size="1564,935" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?fit=640%2C383&amp;ssl=1" class="aligncenter size-full wp-image-19386" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?resize=640%2C383&#038;ssl=1" alt="" width="640" height="383" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?w=1564&amp;ssl=1 1564w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?resize=595%2C356&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?resize=960%2C574&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?resize=768%2C459&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?resize=1536%2C918&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que ya la tenemos creada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?ssl=1" data-lbwps-width="1793" data-lbwps-height="304" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6-1536x260.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19387" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?fit=1793%2C304&amp;ssl=1" data-orig-size="1793,304" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?fit=640%2C109&amp;ssl=1" class="aligncenter size-full wp-image-19387" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?resize=640%2C109&#038;ssl=1" alt="" width="640" height="109" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?w=1793&amp;ssl=1 1793w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?resize=595%2C101&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?resize=960%2C163&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?resize=768%2C130&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?resize=1536%2C260&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a añadir y configurar las interfaces miembros de esta nueva zona SD-WAN, para ello, accedemos a <strong>Create new &gt; SD-WAN Member</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?ssl=1" data-lbwps-width="1055" data-lbwps-height="329" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19388" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?fit=1055%2C329&amp;ssl=1" data-orig-size="1055,329" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?fit=640%2C199&amp;ssl=1" class="aligncenter size-full wp-image-19388" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?resize=640%2C200&#038;ssl=1" alt="" width="640" height="200" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?w=1055&amp;ssl=1 1055w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?resize=595%2C186&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?resize=960%2C299&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_7.png?resize=768%2C239&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Añadimos las dos interfaces WAN que tenemos en nuestro firewall, indicándole la zona, la puerta de enlace, el costo y la habilitamos:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?ssl=1" data-lbwps-width="1560" data-lbwps-height="933" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8-1536x919.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19389" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?fit=1560%2C933&amp;ssl=1" data-orig-size="1560,933" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?fit=640%2C383&amp;ssl=1" class="aligncenter size-full wp-image-19389" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?resize=640%2C383&#038;ssl=1" alt="" width="640" height="383" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?w=1560&amp;ssl=1 1560w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?resize=595%2C356&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?resize=960%2C574&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?resize=768%2C459&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?resize=1536%2C919&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?ssl=1" data-lbwps-width="1567" data-lbwps-height="933" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9-1536x915.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19390" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?fit=1567%2C933&amp;ssl=1" data-orig-size="1567,933" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?fit=640%2C381&amp;ssl=1" class="aligncenter size-full wp-image-19390" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?resize=640%2C381&#038;ssl=1" alt="" width="640" height="381" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?w=1567&amp;ssl=1 1567w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?resize=595%2C354&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?resize=960%2C572&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?resize=768%2C457&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?resize=1536%2C915&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Vemos que ya tenemos la zona creada con nuestras dos interfaces WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?ssl=1" data-lbwps-width="1821" data-lbwps-height="387" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10-1536x326.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19391" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?fit=1821%2C387&amp;ssl=1" data-orig-size="1821,387" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?fit=640%2C136&amp;ssl=1" class="aligncenter size-full wp-image-19391" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?resize=640%2C136&#038;ssl=1" alt="" width="640" height="136" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?w=1821&amp;ssl=1 1821w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?resize=595%2C126&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?resize=960%2C204&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?resize=768%2C163&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?resize=1536%2C326&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si accedemos de nuevo a <strong>Network &gt; Interfaces</strong> podemos ver la interface virtual para la nueva zona SD-WAN y las interfaces que la componen (WAN1 y WAN2):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?ssl=1" data-lbwps-width="1598" data-lbwps-height="789" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11-1536x758.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19392" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?fit=1598%2C789&amp;ssl=1" data-orig-size="1598,789" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?fit=640%2C316&amp;ssl=1" class="aligncenter size-full wp-image-19392" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?resize=640%2C316&#038;ssl=1" alt="" width="640" height="316" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?w=1598&amp;ssl=1 1598w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?resize=595%2C294&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?resize=960%2C474&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?resize=768%2C379&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?resize=1536%2C758&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>El siguiente paso será crearnos la ruta estática por defecto para la salida a Internet por la SD-WAN, para ello, accedemos a <strong>Network &gt; Static Routes &gt; Create new</strong> y creamos la ruta por defecto para la SD-WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?ssl=1" data-lbwps-width="1566" data-lbwps-height="936" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12-1536x918.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19393" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?fit=1566%2C936&amp;ssl=1" data-orig-size="1566,936" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?fit=640%2C383&amp;ssl=1" class="aligncenter size-full wp-image-19393" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?resize=640%2C383&#038;ssl=1" alt="" width="640" height="383" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?w=1566&amp;ssl=1 1566w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?resize=595%2C356&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?resize=960%2C574&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?resize=768%2C459&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?resize=1536%2C918&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que ya la tenemos creada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?ssl=1" data-lbwps-width="1801" data-lbwps-height="358" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13-1536x305.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19394" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?fit=1801%2C358&amp;ssl=1" data-orig-size="1801,358" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?fit=640%2C127&amp;ssl=1" class="aligncenter size-full wp-image-19394" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?resize=640%2C127&#038;ssl=1" alt="" width="640" height="127" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?w=1801&amp;ssl=1 1801w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?resize=595%2C118&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?resize=960%2C191&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?resize=768%2C153&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?resize=1536%2C305&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para verificar que funciona, desde la CLI le hacemos un ping a google.com y vemos que ya recibimos respuesta:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?ssl=1" data-lbwps-width="992" data-lbwps-height="378" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19395" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?fit=992%2C378&amp;ssl=1" data-orig-size="992,378" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?fit=640%2C244&amp;ssl=1" class="aligncenter size-full wp-image-19395" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?resize=640%2C244&#038;ssl=1" alt="" width="640" height="244" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?w=992&amp;ssl=1 992w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?resize=595%2C227&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?resize=960%2C366&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_14.png?resize=768%2C293&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Empezamos a ver tráfico sobre la SD-WAN, de momento sólo hay tráfico por la WAN1 ya que no tenemos configuradas las performance SLAs, entonces no estamos aplicando ningún tipo de balanceo, simplemente la interface WAN2 entrará a funcionar si la WAN1 cae, ahora más adelante configuraremos las performance SLAs:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?ssl=1" data-lbwps-width="1742" data-lbwps-height="391" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15-1536x345.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19396" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?fit=1742%2C391&amp;ssl=1" data-orig-size="1742,391" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?fit=640%2C143&amp;ssl=1" class="aligncenter size-full wp-image-19396" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?resize=640%2C144&#038;ssl=1" alt="" width="640" height="144" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?w=1742&amp;ssl=1 1742w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?resize=595%2C134&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?resize=960%2C215&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?resize=768%2C172&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?resize=1536%2C345&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a crear una política en el firewall para darle acceso web a todos los usuarios de nuestra red interna LAN a través de la SD-WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?ssl=1" data-lbwps-width="1356" data-lbwps-height="696" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19397" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?fit=1356%2C696&amp;ssl=1" data-orig-size="1356,696" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?fit=640%2C329&amp;ssl=1" class="aligncenter size-full wp-image-19397" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?resize=640%2C328&#038;ssl=1" alt="" width="640" height="328" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?w=1356&amp;ssl=1 1356w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?resize=595%2C305&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?resize=960%2C493&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?resize=768%2C394&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?ssl=1" data-lbwps-width="1361" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19398" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?fit=1361%2C1079&amp;ssl=1" data-orig-size="1361,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?fit=640%2C507&amp;ssl=1" class="aligncenter size-full wp-image-19398" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?resize=640%2C507&#038;ssl=1" alt="" width="640" height="507" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?w=1361&amp;ssl=1 1361w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?resize=595%2C472&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?resize=960%2C761&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?resize=768%2C609&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí tenemos la política creada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="264" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18-1536x212.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19399" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?fit=1914%2C264&amp;ssl=1" data-orig-size="1914,264" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?fit=640%2C88&amp;ssl=1" class="aligncenter size-full wp-image-19399" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?resize=640%2C88&#038;ssl=1" alt="" width="640" height="88" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?resize=595%2C82&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?resize=960%2C132&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?resize=768%2C106&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?resize=1536%2C212&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_18.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a ver las Performance SLAs, accedemos a <strong>Network &gt; SD-WAN &gt; Performance SLAs</strong> y vemos que por defecto ya tenemos creadas algunas, con las Performance SLAs vamos a poder balancear por distintos criterios entre todas las interfaces miembros de la SD-WAN, estas performances SLAs que nos ha creado por defecto no tienen asignadas ninguna interface:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="681" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19-1536x547.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19400" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?fit=1912%2C681&amp;ssl=1" data-orig-size="1912,681" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?fit=640%2C228&amp;ssl=1" class="aligncenter size-full wp-image-19400" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?resize=640%2C228&#038;ssl=1" alt="" width="640" height="228" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?resize=595%2C212&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?resize=960%2C342&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?resize=768%2C274&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?resize=1536%2C547&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_19.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?ssl=1" data-lbwps-width="1307" data-lbwps-height="936" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19401" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?fit=1307%2C936&amp;ssl=1" data-orig-size="1307,936" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?fit=640%2C458&amp;ssl=1" class="aligncenter size-full wp-image-19401" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?resize=640%2C458&#038;ssl=1" alt="" width="640" height="458" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?w=1307&amp;ssl=1 1307w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?resize=595%2C426&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?resize=960%2C687&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_20.png?resize=768%2C550&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestro caso nos vamos a crear estas dos performances SLAs y las vamos a asociar a las dos interfaces WAN1 y WAN2 de nuestra SD-WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?ssl=1" data-lbwps-width="1309" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19402" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?fit=1309%2C1079&amp;ssl=1" data-orig-size="1309,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?fit=640%2C527&amp;ssl=1" class="aligncenter size-full wp-image-19402" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?resize=640%2C528&#038;ssl=1" alt="" width="640" height="528" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?w=1309&amp;ssl=1 1309w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?resize=595%2C490&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?resize=960%2C791&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_21.png?resize=768%2C633&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?ssl=1" data-lbwps-width="1310" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19403" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?fit=1310%2C1079&amp;ssl=1" data-orig-size="1310,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?fit=640%2C527&amp;ssl=1" class="aligncenter size-full wp-image-19403" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?resize=640%2C527&#038;ssl=1" alt="" width="640" height="527" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?w=1310&amp;ssl=1 1310w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?resize=595%2C490&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?resize=960%2C791&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_22.png?resize=768%2C633&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, aquí las tenemos ya creadas y configuradas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="755" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23-1536x607.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19404" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?fit=1912%2C755&amp;ssl=1" data-orig-size="1912,755" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?fit=640%2C253&amp;ssl=1" class="aligncenter size-full wp-image-19404" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?resize=640%2C253&#038;ssl=1" alt="" width="640" height="253" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?resize=595%2C235&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?resize=960%2C379&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?resize=768%2C303&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?resize=1536%2C607&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_23.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="771" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24-1536x619.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19405" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?fit=1914%2C771&amp;ssl=1" data-orig-size="1914,771" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?fit=640%2C258&amp;ssl=1" class="aligncenter size-full wp-image-19405" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?resize=640%2C258&#038;ssl=1" alt="" width="640" height="258" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?resize=595%2C240&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?resize=960%2C387&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?resize=768%2C309&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?resize=1536%2C619&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_24.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora si accedemos a nuestra zona SD-WAN, ya podemos ver que estamos realizando balanceo de carga, vemos que ya tenemos tráfico en ambas interfaces, no como antes, que todo estaba saliendo por la WAN1 y si fallaba ésta, entonces entraba en funcionamiento la WAN2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?ssl=1" data-lbwps-width="1821" data-lbwps-height="386" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25-1536x326.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19406" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?fit=1821%2C386&amp;ssl=1" data-orig-size="1821,386" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?fit=640%2C135&amp;ssl=1" class="aligncenter size-full wp-image-19406" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?resize=640%2C136&#038;ssl=1" alt="" width="640" height="136" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?w=1821&amp;ssl=1 1821w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?resize=595%2C126&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?resize=960%2C203&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?resize=768%2C163&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?resize=1536%2C326&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_25.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Realmente el balanceo de carga se realiza a través de las reglas de SD-WAN, y por defecto, ya trae una regla implícita, que realiza un balanceo del 50% en cada interface, nosotros nos podemos ir creando reglas más específicas y configurar balanceos por ejemplo a sitios webs más específicos a través de estas reglas, esta sería la regla implícita por defecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?ssl=1" data-lbwps-width="1845" data-lbwps-height="331" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26-1536x276.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19407" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?fit=1845%2C331&amp;ssl=1" data-orig-size="1845,331" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?fit=640%2C115&amp;ssl=1" class="aligncenter size-full wp-image-19407" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?resize=640%2C115&#038;ssl=1" alt="" width="640" height="115" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?w=1845&amp;ssl=1 1845w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?resize=595%2C107&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?resize=960%2C172&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?resize=768%2C138&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?resize=1536%2C276&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_26.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para <strong>Source IP</strong>, el tráfico se divide a partes iguales entre los miembros, y las sesiones que comienzan en la misma dirección de origen utilizan la misma ruta:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?ssl=1" data-lbwps-width="1807" data-lbwps-height="608" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27-1536x517.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19408" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?fit=1807%2C608&amp;ssl=1" data-orig-size="1807,608" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?fit=640%2C215&amp;ssl=1" class="aligncenter size-full wp-image-19408" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?resize=640%2C215&#038;ssl=1" alt="" width="640" height="215" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?w=1807&amp;ssl=1 1807w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?resize=595%2C200&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?resize=960%2C323&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?resize=768%2C258&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?resize=1536%2C517&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para <strong>Sessions</strong>, el tráfico se distribuye en función del número de sesiones que se conectan a través del miembro:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?ssl=1" data-lbwps-width="1777" data-lbwps-height="955" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28-1536x825.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19409" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?fit=1777%2C955&amp;ssl=1" data-orig-size="1777,955" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?fit=640%2C344&amp;ssl=1" class="aligncenter size-full wp-image-19409" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?resize=640%2C344&#038;ssl=1" alt="" width="640" height="344" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?w=1777&amp;ssl=1 1777w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?resize=595%2C320&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?resize=960%2C516&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?resize=768%2C413&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?resize=1536%2C825&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_28.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para <strong>Spillover</strong>, el miembro de mayor prioridad se utiliza hasta que el ancho de banda supera los umbrales de entrada y salida, el tráfico adicional se envía a través del siguiente miembro SD-WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?ssl=1" data-lbwps-width="1784" data-lbwps-height="960" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29-1536x827.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19410" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?fit=1784%2C960&amp;ssl=1" data-orig-size="1784,960" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-19410" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?resize=640%2C344&#038;ssl=1" alt="" width="640" height="344" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?w=1784&amp;ssl=1 1784w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?resize=595%2C320&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?resize=960%2C517&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?resize=768%2C413&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?resize=1536%2C827&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_29.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para <strong>Source-Destination IP</strong>, el tráfico se divide a partes iguales, las sesiones que empiezan en la misma dirección IP de origen y van a la misma dirección IP de destino utilizan la misma ruta:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?ssl=1" data-lbwps-width="1779" data-lbwps-height="701" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30-1536x605.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19411" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?fit=1779%2C701&amp;ssl=1" data-orig-size="1779,701" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?fit=640%2C252&amp;ssl=1" class="aligncenter size-full wp-image-19411" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?resize=640%2C252&#038;ssl=1" alt="" width="640" height="252" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?w=1779&amp;ssl=1 1779w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?resize=595%2C234&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?resize=960%2C378&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?resize=768%2C303&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?resize=1536%2C605&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_30.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para <strong>Volume</strong>, la carga de trabajo se distribuye en función del número de paquetes que pasan por el miembro:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?ssl=1" data-lbwps-width="1777" data-lbwps-height="932" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31-1536x806.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19412" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?fit=1777%2C932&amp;ssl=1" data-orig-size="1777,932" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?fit=640%2C336&amp;ssl=1" class="aligncenter size-full wp-image-19412" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?resize=640%2C336&#038;ssl=1" alt="" width="640" height="336" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?w=1777&amp;ssl=1 1777w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?resize=595%2C312&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?resize=960%2C504&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?resize=768%2C403&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?resize=1536%2C806&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_31.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Y estos serían los algoritmos de balanceo de carga utilizados para la regla implícita por defecto, con origen en todos (all) y destinos en todos (all).</li>
<li>Nosotros nos podemos crear reglas más específicas que se irán ubicando por encima de la regla implícita, teniendo así mayor prioridad, por ejemplo, nos vamos a crear una regla para el acceso a LinkedIn de los usuarios de nuestra LAN, para ello, accedemos a <strong>SD-WAN &gt; SD-WAN Rule:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?ssl=1" data-lbwps-width="1846" data-lbwps-height="327" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32-1536x272.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19413" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_32#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?fit=1846%2C327&amp;ssl=1" data-orig-size="1846,327" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_32" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?fit=640%2C113&amp;ssl=1" class="aligncenter size-full wp-image-19413" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?resize=640%2C113&#038;ssl=1" alt="" width="640" height="113" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?w=1846&amp;ssl=1 1846w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?resize=595%2C105&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?resize=960%2C170&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?resize=768%2C136&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?resize=1536%2C272&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_32.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Damos a <strong>Create new</strong>, dónde le asignamos un <strong>nombre</strong>, le indicamos el <strong>origen</strong>, que serán los equipos de nuestros usuarios, el <strong>destino</strong> que va a ser el servicio de internet LinkedIn-Web, le indicamos la estrategia del balanceo de carga a seguir, que será la que tenga mejor calidad con respecto al criterio de latencia utilizando uno de los performances SLAs que nos creamos anteriormente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?ssl=1" data-lbwps-width="1134" data-lbwps-height="582" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19414" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_33#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?fit=1134%2C582&amp;ssl=1" data-orig-size="1134,582" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_33" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?fit=640%2C329&amp;ssl=1" class="aligncenter size-full wp-image-19414" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?resize=640%2C328&#038;ssl=1" alt="" width="640" height="328" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?w=1134&amp;ssl=1 1134w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?resize=595%2C305&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?resize=960%2C493&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_33.png?resize=768%2C394&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?ssl=1" data-lbwps-width="1375" data-lbwps-height="931" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19415" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_34#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?fit=1375%2C931&amp;ssl=1" data-orig-size="1375,931" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_34" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?fit=640%2C433&amp;ssl=1" class="aligncenter size-full wp-image-19415" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?resize=640%2C433&#038;ssl=1" alt="" width="640" height="433" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?w=1375&amp;ssl=1 1375w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?resize=595%2C403&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?resize=960%2C650&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?resize=768%2C520&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_34.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí tenemos la regla ya creada y operativa:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="328" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35-1536x263.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19416" data-permalink="https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/csdwaneff_35#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?fit=1913%2C328&amp;ssl=1" data-orig-size="1913,328" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdwaneff_35" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?fit=640%2C110&amp;ssl=1" class="aligncenter size-full wp-image-19416" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?resize=640%2C110&#038;ssl=1" alt="" width="640" height="110" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?resize=595%2C102&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?resize=960%2C165&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?resize=768%2C132&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?resize=1536%2C263&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/02/csdwaneff_35.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>A partir de aquí podemos ir ya configurando las reglas que nos vayan interesando y con los distintos balanceos de carga que nos vengan mejor.</li>
</ul>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-sd-wan-en-firewall-fortigate/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19380</post-id>	</item>
		<item>
		<title>Configurar Web Proxy transparente en Firewall Fortigate</title>
		<link>https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate</link>
					<comments>https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 30 Dec 2024 11:28:11 +0000</pubDate>
				<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[web proxy]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=19022</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo configurar un web proxy transparente en un firewall Fortigate, un proxy transparente es una combinación de un proxy con NAT para que las conexiones se enruten dentro del proxy y&#8230; <a href="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo configurar un web proxy transparente en un firewall Fortigate, un proxy transparente es una combinación de un proxy con NAT para que las conexiones se enruten dentro del proxy y el cliente no tenga que hacer ninguna configuración. En la mayoría de los casos en los que se emplea esta opción, el propio usuario desconoce que se esté utilizando un proxy.</p>
<ul>
<li>Para empezar, lo primero que vamos a realizar es habilitar en las características de nuestro firewall el Proxy Explícito, para ello accedemos a <strong>Sistema &gt; Visibilidad de Característica &gt; Funciones de seguridad y lo habilitamos</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?ssl=1" data-lbwps-width="1284" data-lbwps-height="898" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19023" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?fit=1284%2C898&amp;ssl=1" data-orig-size="1284,898" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?fit=640%2C447&amp;ssl=1" class="aligncenter size-full wp-image-19023" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?resize=640%2C448&#038;ssl=1" alt="" width="640" height="448" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?w=1284&amp;ssl=1 1284w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?resize=595%2C416&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?resize=960%2C671&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?resize=768%2C537&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_1.png?resize=250%2C175&amp;ssl=1 250w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo siguiente que vamos a realizar será editar una de nuestras políticas de salida a Internet:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?ssl=1" data-lbwps-width="1891" data-lbwps-height="455" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2-1536x370.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19024" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?fit=1891%2C455&amp;ssl=1" data-orig-size="1891,455" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?fit=640%2C154&amp;ssl=1" class="aligncenter size-full wp-image-19024" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?resize=640%2C154&#038;ssl=1" alt="" width="640" height="154" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?w=1891&amp;ssl=1 1891w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?resize=595%2C143&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?resize=960%2C231&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?resize=768%2C185&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?resize=1536%2C370&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En el <strong>Modo de inspección</strong>, lo configuraremos como <strong>Basado en Proxy</strong>, y aplicamos cambios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png?ssl=1" data-lbwps-width="827" data-lbwps-height="866" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19025" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png?fit=827%2C866&amp;ssl=1" data-orig-size="827,866" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png?fit=640%2C670&amp;ssl=1" class="aligncenter size-full wp-image-19025" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png?resize=640%2C670&#038;ssl=1" alt="" width="640" height="670" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png?w=827&amp;ssl=1 827w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png?resize=595%2C623&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_3.png?resize=768%2C804&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?ssl=1" data-lbwps-width="992" data-lbwps-height="261" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19026" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?fit=992%2C261&amp;ssl=1" data-orig-size="992,261" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-19026" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?resize=640%2C168&#038;ssl=1" alt="" width="640" height="168" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?w=992&amp;ssl=1 992w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?resize=960%2C253&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_4.png?resize=768%2C202&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez aplicado el cambio, vamos a editar la política por la CLI:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="544" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5-1536x436.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19027" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?fit=1915%2C544&amp;ssl=1" data-orig-size="1915,544" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?fit=640%2C182&amp;ssl=1" class="aligncenter size-full wp-image-19027" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?resize=640%2C182&#038;ssl=1" alt="" width="640" height="182" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?resize=595%2C169&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?resize=960%2C273&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?resize=768%2C218&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?resize=1536%2C436&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Añadimos a la configuración <strong>set http-policy-redirect enable</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_6.png?ssl=1" data-lbwps-width="579" data-lbwps-height="880" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19028" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_6.png?fit=579%2C880&amp;ssl=1" data-orig-size="579,880" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_6.png?fit=579%2C880&amp;ssl=1" class="aligncenter size-full wp-image-19028" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_6.png?resize=579%2C880&#038;ssl=1" alt="" width="579" height="880" /></a></p>
<ul>
<li>Una vez introducido el comando, vemos que en la política ya nos aparece esta nueva opción:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?ssl=1" data-lbwps-width="965" data-lbwps-height="642" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19029" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?fit=965%2C642&amp;ssl=1" data-orig-size="965,642" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?fit=640%2C426&amp;ssl=1" class="aligncenter size-full wp-image-19029" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?resize=640%2C426&#038;ssl=1" alt="" width="640" height="426" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?w=965&amp;ssl=1 965w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?resize=595%2C396&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?resize=960%2C639&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_7.png?resize=768%2C511&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Habilitamos también en la regla, <strong>Inspección SSL &gt; certificate-inspection</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?ssl=1" data-lbwps-width="989" data-lbwps-height="553" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19030" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?fit=989%2C553&amp;ssl=1" data-orig-size="989,553" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?fit=640%2C358&amp;ssl=1" class="aligncenter size-full wp-image-19030" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?resize=640%2C358&#038;ssl=1" alt="" width="640" height="358" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?w=989&amp;ssl=1 989w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?resize=595%2C333&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?resize=960%2C537&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_8.png?resize=768%2C429&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora debemos acceder a <strong>Políticas y Objetos &gt; Política de Proxy</strong>, como podemos ver, nos ha creado una política implícita de DENY, denegándonos el acceso a cualquier sitio web:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?ssl=1" data-lbwps-width="1906" data-lbwps-height="356" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9-1536x287.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19031" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?fit=1906%2C356&amp;ssl=1" data-orig-size="1906,356" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?fit=640%2C119&amp;ssl=1" class="aligncenter size-full wp-image-19031" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?resize=640%2C120&#038;ssl=1" alt="" width="640" height="120" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?w=1906&amp;ssl=1 1906w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?resize=595%2C111&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?resize=960%2C179&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?resize=768%2C143&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?resize=1536%2C287&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora desde cualquier equipo de nuestra LAN se le va a denegar el acceso hacia internet:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?ssl=1" data-lbwps-width="1344" data-lbwps-height="700" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19032" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?fit=1344%2C700&amp;ssl=1" data-orig-size="1344,700" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?fit=640%2C333&amp;ssl=1" class="aligncenter size-full wp-image-19032" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?resize=640%2C333&#038;ssl=1" alt="" width="640" height="333" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?w=1344&amp;ssl=1 1344w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?resize=595%2C310&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?resize=960%2C500&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?resize=768%2C400&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<ul>
<li>Para habilitar la salida a Internet pasando por el web proxy, accedemos a <strong>Políticas y Objectos &gt; Política de Proxy &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="314" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11-1536x252.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19033" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?fit=1913%2C314&amp;ssl=1" data-orig-size="1913,314" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?fit=640%2C105&amp;ssl=1" class="aligncenter size-full wp-image-19033" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?resize=640%2C105&#038;ssl=1" alt="" width="640" height="105" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?resize=595%2C98&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?resize=960%2C158&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?resize=768%2C126&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?resize=1536%2C252&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos creamos esta regla como web transparente, dónde le indicamos a nuestra LAN, que le permitimos la conexión hacia Internet, a través del web proxy:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?ssl=1" data-lbwps-width="1247" data-lbwps-height="1041" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19034" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?fit=1247%2C1041&amp;ssl=1" data-orig-size="1247,1041" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?fit=640%2C534&amp;ssl=1" class="aligncenter size-full wp-image-19034" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?resize=640%2C534&#038;ssl=1" alt="" width="640" height="534" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?w=1247&amp;ssl=1 1247w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?resize=595%2C497&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?resize=960%2C801&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_12.png?resize=768%2C641&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí la tenemos creada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="306" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13-1536x246.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19035" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?fit=1914%2C306&amp;ssl=1" data-orig-size="1914,306" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?fit=640%2C102&amp;ssl=1" class="aligncenter size-full wp-image-19035" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?resize=640%2C102&#038;ssl=1" alt="" width="640" height="102" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?resize=595%2C95&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?resize=960%2C153&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?resize=768%2C123&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?resize=1536%2C246&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si accedemos a la misma web de antes, vemos que ya tenemos acceso:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?ssl=1" data-lbwps-width="1349" data-lbwps-height="644" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19036" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?fit=1349%2C644&amp;ssl=1" data-orig-size="1349,644" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?fit=640%2C305&amp;ssl=1" class="aligncenter size-full wp-image-19036" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?resize=640%2C306&#038;ssl=1" alt="" width="640" height="306" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?w=1349&amp;ssl=1 1349w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?resize=595%2C284&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?resize=960%2C458&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?resize=768%2C367&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora nos vamos a crear estos objetos de dirección, que son los que vamos a utilizar para denegar en las reglas las webs que nos interesen, <strong>Políticas y Objetos &gt; Dirección &gt; Crear nuevo &gt; Dirección</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_15.png?ssl=1" data-lbwps-width="617" data-lbwps-height="395" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19037" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_15.png?fit=617%2C395&amp;ssl=1" data-orig-size="617,395" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_15.png?fit=617%2C395&amp;ssl=1" class="aligncenter size-full wp-image-19037" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_15.png?resize=617%2C395&#038;ssl=1" alt="" width="617" height="395" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_15.png?w=617&amp;ssl=1 617w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_15.png?resize=595%2C381&amp;ssl=1 595w" sizes="auto, (max-width: 617px) 100vw, 617px" /></a></p>
<ul>
<li>Configuramos la categoría como <strong>Dirección de Proxy</strong>, le indicamos un <strong>Nombre</strong>, seleccionamos el patrón como <strong>Coincidencia de Expresión Regular de Host</strong>, y le ponemos el patrón que nos interese:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?ssl=1" data-lbwps-width="1252" data-lbwps-height="675" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19038" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?fit=1252%2C675&amp;ssl=1" data-orig-size="1252,675" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-19038" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?resize=640%2C345&#038;ssl=1" alt="" width="640" height="345" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?w=1252&amp;ssl=1 1252w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?resize=595%2C321&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?resize=960%2C518&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_16.png?resize=768%2C414&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos hemos creado estos objetos de dirección de proxy:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?ssl=1" data-lbwps-width="1529" data-lbwps-height="292" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19039" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?fit=1529%2C292&amp;ssl=1" data-orig-size="1529,292" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?fit=640%2C122&amp;ssl=1" class="aligncenter size-full wp-image-19039" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?resize=640%2C122&#038;ssl=1" alt="" width="640" height="122" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?w=1529&amp;ssl=1 1529w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?resize=595%2C114&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?resize=960%2C183&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?resize=768%2C147&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora nos vamos a crear esta regla para denegar la web o las webs que nos interesen, <strong>Políticas y Objectos &gt; Política de Proxy &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="330" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18-1536x265.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19040" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?fit=1912%2C330&amp;ssl=1" data-orig-size="1912,330" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?fit=640%2C111&amp;ssl=1" class="aligncenter size-full wp-image-19040" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?resize=640%2C110&#038;ssl=1" alt="" width="640" height="110" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?resize=595%2C103&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?resize=960%2C166&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?resize=768%2C133&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?resize=1536%2C265&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_18.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En esta regla denegamos a nuestra LAN el acceso a las webs indicadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?ssl=1" data-lbwps-width="1249" data-lbwps-height="893" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19041" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?fit=1249%2C893&amp;ssl=1" data-orig-size="1249,893" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?fit=640%2C457&amp;ssl=1" class="aligncenter size-full wp-image-19041" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?resize=640%2C458&#038;ssl=1" alt="" width="640" height="458" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?w=1249&amp;ssl=1 1249w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?resize=595%2C425&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?resize=960%2C686&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_19.png?resize=768%2C549&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, aquí la tenemos, y la ubicamos por encima de la regla de permitir todo el acceso a Internet:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="334" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20-1536x268.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19042" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?fit=1912%2C334&amp;ssl=1" data-orig-size="1912,334" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?fit=640%2C112&amp;ssl=1" class="aligncenter size-full wp-image-19042" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?resize=640%2C112&#038;ssl=1" alt="" width="640" height="112" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?resize=595%2C104&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?resize=960%2C168&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?resize=768%2C134&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?resize=1536%2C268&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora si intentamos acceder a cualquiera de estas webs nos va a indicar que no es posible, que tenemos el acceso denegado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?ssl=1" data-lbwps-width="1287" data-lbwps-height="693" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19043" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?fit=1287%2C693&amp;ssl=1" data-orig-size="1287,693" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-19043" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?resize=640%2C345&#038;ssl=1" alt="" width="640" height="345" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?w=1287&amp;ssl=1 1287w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?resize=595%2C320&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?resize=960%2C517&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_21.png?resize=768%2C414&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Vemos que ya tenemos tráfico de denegación en nuestras reglas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="323" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22-1536x259.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="19044" data-permalink="https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/cwpteff_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?fit=1912%2C323&amp;ssl=1" data-orig-size="1912,323" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cwpteff_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?fit=640%2C108&amp;ssl=1" class="aligncenter size-full wp-image-19044" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?resize=640%2C108&#038;ssl=1" alt="" width="640" height="108" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?resize=595%2C101&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?resize=960%2C162&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?resize=768%2C130&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?resize=1536%2C259&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/cwpteff_22.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configurar-web-proxy-transparente-en-firewall-fortigate/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">19022</post-id>	</item>
		<item>
		<title>Configurar servidor DHCP Relay en Firewall Fortigate</title>
		<link>https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate</link>
					<comments>https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 18 Nov 2024 08:48:30 +0000</pubDate>
				<category><![CDATA[DHCP]]></category>
		<category><![CDATA[DHCP Relay]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Networking]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=18917</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo configurar un servidor DHCP Relay en un firewall Fortigate, este DHCP relay va a escuchar las peticiones DHCP que se producen en la red, y las va a encaminar hacia&#8230; <a href="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo configurar un servidor DHCP Relay en un firewall Fortigate, este DHCP relay va a escuchar las peticiones DHCP que se producen en la red, y las va a encaminar hacia un servidor DHCP que se encuentra en otra red para que éste las atienda, el servidor DHCP dará una respuesta que enviará hacia el DHCP relay configurado en nuestro Fortigate, y éste la trasladará al cliente que hizo la petición.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?ssl=1" data-lbwps-width="1065" data-lbwps-height="604" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18918" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?fit=1065%2C604&amp;ssl=1" data-orig-size="1065,604" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?fit=640%2C363&amp;ssl=1" class="aligncenter size-full wp-image-18918" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?resize=640%2C363&#038;ssl=1" alt="" width="640" height="363" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?w=1065&amp;ssl=1 1065w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?resize=595%2C337&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?resize=960%2C544&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_1.png?resize=768%2C436&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para empezar, vamos a ver que tenemos configurado nuestro servidor DHCP con el ámbito de red que queremos asignar a nuestros equipos clientes, y estas serían las distintas configuraciones del ámbito:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_2.png?ssl=1" data-lbwps-width="710" data-lbwps-height="461" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18919" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_2.png?fit=710%2C461&amp;ssl=1" data-orig-size="710,461" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_2.png?fit=640%2C416&amp;ssl=1" class="aligncenter size-full wp-image-18919" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_2.png?resize=640%2C416&#038;ssl=1" alt="" width="640" height="416" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_2.png?w=710&amp;ssl=1 710w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_2.png?resize=595%2C386&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png?ssl=1" data-lbwps-width="904" data-lbwps-height="469" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18920" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png?fit=904%2C469&amp;ssl=1" data-orig-size="904,469" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png?fit=640%2C332&amp;ssl=1" class="aligncenter size-full wp-image-18920" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png?resize=640%2C332&#038;ssl=1" alt="" width="640" height="332" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png?w=904&amp;ssl=1 904w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png?resize=595%2C309&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_3.png?resize=768%2C398&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?ssl=1" data-lbwps-width="1038" data-lbwps-height="464" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18921" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?fit=1038%2C464&amp;ssl=1" data-orig-size="1038,464" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?fit=640%2C286&amp;ssl=1" class="aligncenter size-full wp-image-18921" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?resize=640%2C286&#038;ssl=1" alt="" width="640" height="286" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?w=1038&amp;ssl=1 1038w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?resize=595%2C266&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?resize=960%2C429&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?resize=768%2C343&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_4.png?resize=300%2C135&amp;ssl=1 300w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora en nuestro firewall fortigate vamos a acceder a <strong>Red &gt; Interfaces</strong> y editaremos la red dónde vamos a configurar nuestro servidor DHCP relay:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?ssl=1" data-lbwps-width="1374" data-lbwps-height="653" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18922" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?fit=1374%2C653&amp;ssl=1" data-orig-size="1374,653" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?fit=640%2C304&amp;ssl=1" class="aligncenter size-full wp-image-18922" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?resize=640%2C304&#038;ssl=1" alt="" width="640" height="304" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?w=1374&amp;ssl=1 1374w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?resize=595%2C283&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?resize=960%2C456&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?resize=768%2C365&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre la edición de la interface de red, vamos a habilitar el <strong>servidor DHCP </strong>y en Avanzado seleccionamos el modo Relay, tipo Regular y ponemos la IP del servidor DHCP dónde hemos configurado el ámbito para esta red, en este caso, he puesto dos servidores DHCP ya que en mi infraestructura tengo montado un failover cluster para este servicio con balaceo de carga 50%-50%:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?ssl=1" data-lbwps-width="1256" data-lbwps-height="892" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18923" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?fit=1256%2C892&amp;ssl=1" data-orig-size="1256,892" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?fit=640%2C455&amp;ssl=1" class="aligncenter size-full wp-image-18923" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?resize=640%2C455&#038;ssl=1" alt="" width="640" height="455" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?w=1256&amp;ssl=1 1256w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?resize=595%2C423&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?resize=960%2C682&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_6.png?resize=768%2C545&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya lo tenemos configurado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?ssl=1" data-lbwps-width="1804" data-lbwps-height="614" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7-1536x523.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18924" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?fit=1804%2C614&amp;ssl=1" data-orig-size="1804,614" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?fit=640%2C218&amp;ssl=1" class="aligncenter size-full wp-image-18924" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?resize=640%2C218&#038;ssl=1" alt="" width="640" height="218" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?w=1804&amp;ssl=1 1804w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?resize=595%2C203&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?resize=960%2C327&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?resize=768%2C261&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?resize=1536%2C523&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora accedemos a una máquina cliente de nuestra infraestructura, y como podemos ver, ya se le está sirviendo el direccionamiento IP y las opciones del ámbito que hemos configurado, todo ello, a través del DHCP relay configurado en el fortigate:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?ssl=1" data-lbwps-width="823" data-lbwps-height="580" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18925" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?fit=823%2C580&amp;ssl=1" data-orig-size="823,580" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?fit=640%2C451&amp;ssl=1" class="aligncenter size-full wp-image-18925" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?resize=640%2C451&#038;ssl=1" alt="" width="640" height="451" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?w=823&amp;ssl=1 823w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?resize=595%2C419&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?resize=768%2C541&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_8.png?resize=250%2C175&amp;ssl=1 250w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?ssl=1" data-lbwps-width="1257" data-lbwps-height="642" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18926" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?fit=1257%2C642&amp;ssl=1" data-orig-size="1257,642" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?fit=640%2C327&amp;ssl=1" class="aligncenter size-full wp-image-18926" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?resize=640%2C327&#038;ssl=1" alt="" width="640" height="327" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?w=1257&amp;ssl=1 1257w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?resize=595%2C304&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?resize=960%2C490&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_9.png?resize=768%2C392&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestra consola del servidor DHCP, podemos ver la concesión de direcciones para esta red:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?ssl=1" data-lbwps-width="1352" data-lbwps-height="370" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18927" data-permalink="https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/csdhcprelayeff_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?fit=1352%2C370&amp;ssl=1" data-orig-size="1352,370" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csdhcprelayeff_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?fit=640%2C175&amp;ssl=1" class="aligncenter size-full wp-image-18927" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?resize=640%2C175&#038;ssl=1" alt="" width="640" height="175" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?w=1352&amp;ssl=1 1352w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?resize=595%2C163&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?resize=960%2C263&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?resize=768%2C210&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/11/csdhcprelayeff_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configurar-servidor-dhcp-relay-en-firewall-fortigate/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">18917</post-id>	</item>
		<item>
		<title>Bloquear conexiones VPN SSL desde ciertas IPs públicas en Firewall Fortigate</title>
		<link>https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate</link>
					<comments>https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 23 Sep 2024 06:47:44 +0000</pubDate>
				<category><![CDATA[Accesos remotos]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=18284</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo bloquear conexiones VPN SSL desde ciertas IPs públicas en un firewall Fortigate. En muchas ocasiones podemos ver en los logs de nuestros firewalls fortigate, que están intentando acceder a nuestra&#8230; <a href="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo bloquear conexiones VPN SSL desde ciertas IPs públicas en un firewall Fortigate.</p>
<ul>
<li>En muchas ocasiones podemos ver en los logs de nuestros firewalls fortigate, que están intentando acceder a nuestra conexión VPN SSL desde IPs sospechosas, en esta captura podemos ver intentos de sesión fallidos desde una IP y está intentando probar con distintos usuarios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="886" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1-1536x711.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18285" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?fit=1913%2C886&amp;ssl=1" data-orig-size="1913,886" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-18285" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?resize=640%2C296&#038;ssl=1" alt="" width="640" height="296" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?resize=595%2C276&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?resize=960%2C445&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?resize=768%2C356&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?resize=1536%2C711&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para bloquear a esta IP pública, lo primero que voy a realizar será crearme un grupo de direcciones llamado blacklistipp, dónde iré añadiendo todas las IPs públicas sospechosas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?ssl=1" data-lbwps-width="1253" data-lbwps-height="621" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18286" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?fit=1253%2C621&amp;ssl=1" data-orig-size="1253,621" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?fit=640%2C317&amp;ssl=1" class="aligncenter size-full wp-image-18286" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?resize=640%2C317&#038;ssl=1" alt="" width="640" height="317" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?w=1253&amp;ssl=1 1253w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?resize=595%2C295&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?resize=960%2C476&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_2.png?resize=768%2C381&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Antes he creado los objetos de cada dirección IP pública, aquí muestro un ejemplo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?ssl=1" data-lbwps-width="1121" data-lbwps-height="405" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18287" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?fit=1121%2C405&amp;ssl=1" data-orig-size="1121,405" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-18287" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?resize=640%2C231&#038;ssl=1" alt="" width="640" height="231" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?w=1121&amp;ssl=1 1121w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?resize=595%2C215&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?resize=960%2C347&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_3.png?resize=768%2C277&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Así nos quedaría:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?ssl=1" data-lbwps-width="1267" data-lbwps-height="569" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18288" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?fit=1267%2C569&amp;ssl=1" data-orig-size="1267,569" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?fit=640%2C287&amp;ssl=1" class="aligncenter size-full wp-image-18288" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?resize=640%2C287&#038;ssl=1" alt="" width="640" height="287" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?w=1267&amp;ssl=1 1267w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?resize=595%2C267&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?resize=960%2C431&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?resize=768%2C345&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_4.png?resize=300%2C135&amp;ssl=1 300w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para bloquear las conexiones VPN SSL a estas IPs públicas, accedemos a la consola de nuestro firewall y nos vamos a la configuración de la VPN SSL, con el comando <strong>config vpn ssl setting</strong>, una vez dentro de la configuración ejecutamos, <strong>set source-address «blacklistipp» </strong>y <strong>set source-address-negate enable</strong>, con el comando <strong>show</strong> podemos ver que la configuración se ha aplicado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_5.png?ssl=1" data-lbwps-width="575" data-lbwps-height="578" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18289" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_5.png?fit=575%2C578&amp;ssl=1" data-orig-size="575,578" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_5.png?fit=575%2C578&amp;ssl=1" class="aligncenter size-full wp-image-18289" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_5.png?resize=575%2C578&#038;ssl=1" alt="" width="575" height="578" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_5.png?w=575&amp;ssl=1 575w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_5.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 575px) 100vw, 575px" /></a></p>
<ul>
<li>Ahora, cuando un usuario intente conectarse desde una IP pública de la lista, la VPN SSL será rechazada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png?ssl=1" data-lbwps-width="877" data-lbwps-height="524" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18290" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png?fit=877%2C524&amp;ssl=1" data-orig-size="877,524" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png?fit=640%2C382&amp;ssl=1" class="aligncenter size-full wp-image-18290" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png?resize=640%2C382&#038;ssl=1" alt="" width="640" height="382" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png?w=877&amp;ssl=1 877w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png?resize=595%2C356&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_6.png?resize=768%2C459&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Es posible ver, que una de estas IPs públicas de la lista bloqueada está intentando conectarse, pero nuestro FortiGate no responde, para ello, ejecutamos el comando <strong>diagnose sniffer packet any «host 80.94.95.175 and port 10443» 4</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_7.png?ssl=1" data-lbwps-width="580" data-lbwps-height="246" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18291" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_7.png?fit=580%2C246&amp;ssl=1" data-orig-size="580,246" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_7.png?fit=580%2C246&amp;ssl=1" class="aligncenter size-full wp-image-18291" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_7.png?resize=580%2C246&#038;ssl=1" alt="" width="580" height="246" /></a></p>
<ul>
<li>Como podemos ver, si ejecutamos el comando, <strong>get vpn ssl monitor</strong>, se permitirá la conexión desde las IPs que no estén en la lista y se establecerán las conexiones:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_8.png?ssl=1" data-lbwps-width="667" data-lbwps-height="212" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18292" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_8.png?fit=667%2C212&amp;ssl=1" data-orig-size="667,212" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_8.png?fit=640%2C203&amp;ssl=1" class="aligncenter size-full wp-image-18292" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_8.png?resize=640%2C203&#038;ssl=1" alt="" width="640" height="203" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_8.png?w=667&amp;ssl=1 667w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_8.png?resize=595%2C189&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Otra forma de limitar el acceso, es irse a la <strong>Configuración de SSL_VPN &gt; Restringir Acceso</strong> y <strong>Limitar acceso a hosts específicos</strong>, dónde configuro la restricción para el grupo de IPs públicas bloqueadas, aquí el problema es que la conexión no se rechaza en una primera instancia, es decir, nos va a dejar introducir las credenciales y una vez introducidas bloquea la conexión, con el método visto anteriormente por consola, la conexión se rechaza desde primera hora:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?ssl=1" data-lbwps-width="1236" data-lbwps-height="849" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18293" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?fit=1236%2C849&amp;ssl=1" data-orig-size="1236,849" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?fit=640%2C439&amp;ssl=1" class="aligncenter size-full wp-image-18293" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?resize=640%2C440&#038;ssl=1" alt="" width="640" height="440" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?w=1236&amp;ssl=1 1236w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?resize=595%2C409&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?resize=960%2C659&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/08/bcvpnssldcippeffg_9.png?resize=768%2C528&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li><a href="https://www.bujarra.com/protegiendonos-de-ataques-y-botnets-en-fortigate/" target="_blank" rel="noopener">Sobre este post realizado por mi compañero Héctor Herrero del blog Bujarra</a>, podemos aplicar las listas dinámicas que nos está indicando sobre la configuración de la VPN, quedando de esta manera:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="604" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10-1536x484.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18849" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?fit=1915%2C604&amp;ssl=1" data-orig-size="1915,604" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?fit=640%2C202&amp;ssl=1" class="aligncenter size-full wp-image-18849" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?resize=640%2C202&#038;ssl=1" alt="" width="640" height="202" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?resize=595%2C188&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?resize=960%2C303&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?resize=768%2C242&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?resize=1536%2C484&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?ssl=1" data-lbwps-width="1234" data-lbwps-height="759" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18850" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?fit=1234%2C759&amp;ssl=1" data-orig-size="1234,759" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?fit=640%2C393&amp;ssl=1" class="aligncenter size-full wp-image-18850" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?resize=640%2C394&#038;ssl=1" alt="" width="640" height="394" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?w=1234&amp;ssl=1 1234w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?resize=595%2C366&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?resize=960%2C590&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_11.png?resize=768%2C472&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?ssl=1" data-lbwps-width="1424" data-lbwps-height="360" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="18851" data-permalink="https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/bcvpnssldcippeffg_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?fit=1424%2C360&amp;ssl=1" data-orig-size="1424,360" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="bcvpnssldcippeffg_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?fit=640%2C162&amp;ssl=1" class="aligncenter size-full wp-image-18851" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?resize=640%2C162&#038;ssl=1" alt="" width="640" height="162" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?w=1424&amp;ssl=1 1424w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?resize=595%2C150&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?resize=960%2C243&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?resize=768%2C194&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/09/bcvpnssldcippeffg_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/bloquear-conexiones-vpn-ssl-desde-ciertas-ips-publicas-en-firewall-fortigate/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">18284</post-id>	</item>
		<item>
		<title>Acceso administración web y SSH OPNSense</title>
		<link>https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense</link>
					<comments>https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 22 Jan 2024 08:11:48 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<category><![CDATA[SSH]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17272</guid>

					<description><![CDATA[Hola a tod@s, En este post, vamos a ver cómo configurar el acceso administrativo a OPNSense vía web y SSH. La topología que vamos a utilizar será esta: Primero, vamos a configurar el acceso administrativo a OPNSense vía web a&#8230; <a href="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post, vamos a ver cómo configurar el acceso administrativo a OPNSense vía web y SSH.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Primero, vamos a configurar el acceso administrativo a OPNSense vía web a través del puerto 30443, para ello, nos vamos a crear esta regla de entrada para el acceso interno a través de la VPN IPsec que ya tenemos configurada, <strong>Firewall &gt; Rules &gt; IPsec</strong>, le indicamos que desde un equipo de nuestra LAN on-premise vamos a poder acceder a la interface lan de opnsense en el puerto 30443<strong>:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="533" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1-1536x428.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17273" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?fit=1915%2C533&amp;ssl=1" data-orig-size="1915,533" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?fit=640%2C178&amp;ssl=1" class="aligncenter size-full wp-image-17273" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?resize=640%2C178&#038;ssl=1" alt="" width="640" height="178" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?resize=595%2C166&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?resize=960%2C267&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?resize=768%2C214&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?resize=1536%2C428&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?ssl=1" data-lbwps-width="1529" data-lbwps-height="721" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17274" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?fit=1529%2C721&amp;ssl=1" data-orig-size="1529,721" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?fit=640%2C302&amp;ssl=1" class="aligncenter size-full wp-image-17274" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?resize=640%2C302&#038;ssl=1" alt="" width="640" height="302" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?w=1529&amp;ssl=1 1529w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?resize=595%2C281&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?resize=960%2C453&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?resize=768%2C362&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?ssl=1" data-lbwps-width="1555" data-lbwps-height="867" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3-1536x856.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17275" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?fit=1555%2C867&amp;ssl=1" data-orig-size="1555,867" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?fit=640%2C357&amp;ssl=1" class="aligncenter size-full wp-image-17275" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?resize=640%2C357&#038;ssl=1" alt="" width="640" height="357" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?w=1555&amp;ssl=1 1555w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?resize=595%2C332&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?resize=960%2C535&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?resize=768%2C428&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?resize=1536%2C856&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si también queremos tener acceso, a través de la IP pública de OPNSense (interface WAN), accedemos a <strong>Firewall &gt; Rules &gt; WAN</strong> y nos creamos esta regla de entrada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="626" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4-1536x502.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17276" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?fit=1914%2C626&amp;ssl=1" data-orig-size="1914,626" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?fit=640%2C209&amp;ssl=1" class="aligncenter size-full wp-image-17276" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?resize=640%2C209&#038;ssl=1" alt="" width="640" height="209" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?resize=595%2C195&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?resize=960%2C314&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?resize=768%2C251&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?resize=1536%2C502&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?ssl=1" data-lbwps-width="1561" data-lbwps-height="725" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5-1536x713.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17277" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?fit=1561%2C725&amp;ssl=1" data-orig-size="1561,725" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-17277" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?resize=640%2C297&#038;ssl=1" alt="" width="640" height="297" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?w=1561&amp;ssl=1 1561w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?resize=595%2C276&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?resize=960%2C446&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?resize=768%2C357&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?resize=1536%2C713&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?ssl=1" data-lbwps-width="1554" data-lbwps-height="869" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6-1536x859.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17278" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?fit=1554%2C869&amp;ssl=1" data-orig-size="1554,869" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?fit=640%2C358&amp;ssl=1" class="aligncenter size-full wp-image-17278" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?resize=640%2C358&#038;ssl=1" alt="" width="640" height="358" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?w=1554&amp;ssl=1 1554w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?resize=595%2C333&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?resize=960%2C537&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?resize=768%2C429&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?resize=1536%2C859&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora desde<strong> System &gt; Settings &gt; Administration &gt; Web GUI</strong> vamos a indicarle que el puerto de acceso es el 30443:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?ssl=1" data-lbwps-width="1204" data-lbwps-height="515" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17279" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?fit=1204%2C515&amp;ssl=1" data-orig-size="1204,515" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?fit=640%2C274&amp;ssl=1" class="aligncenter size-full wp-image-17279" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?resize=640%2C274&#038;ssl=1" alt="" width="640" height="274" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?w=1204&amp;ssl=1 1204w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?resize=595%2C255&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?resize=960%2C411&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_7.png?resize=768%2C329&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestro Fortigate on-premise hemos creado esta regla, para que el equipo de nuestra LAN on-premise tenga acceso al puerto 30443:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?ssl=1" data-lbwps-width="1907" data-lbwps-height="256" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8-1536x206.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17280" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?fit=1907%2C256&amp;ssl=1" data-orig-size="1907,256" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?fit=640%2C86&amp;ssl=1" class="aligncenter size-full wp-image-17280" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?resize=640%2C86&#038;ssl=1" alt="" width="640" height="86" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?w=1907&amp;ssl=1 1907w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?resize=595%2C80&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?resize=960%2C129&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?resize=768%2C103&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?resize=1536%2C206&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?ssl=1" data-lbwps-width="1235" data-lbwps-height="1039" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17281" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?fit=1235%2C1039&amp;ssl=1" data-orig-size="1235,1039" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?fit=640%2C539&amp;ssl=1" class="aligncenter size-full wp-image-17281" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?resize=640%2C538&#038;ssl=1" alt="" width="640" height="538" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?w=1235&amp;ssl=1 1235w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?resize=595%2C501&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?resize=960%2C808&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_9.png?resize=768%2C646&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos acceso a la configuración web a través del puerto 30443:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?ssl=1" data-lbwps-width="1123" data-lbwps-height="805" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17282" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?fit=1123%2C805&amp;ssl=1" data-orig-size="1123,805" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?fit=640%2C459&amp;ssl=1" class="aligncenter size-full wp-image-17282" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?resize=640%2C459&#038;ssl=1" alt="" width="640" height="459" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?w=1123&amp;ssl=1 1123w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?resize=595%2C427&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?resize=960%2C688&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_10.png?resize=768%2C551&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>A continuación, vamos a configurar el acceso administrativo a OPNSense vía SSH a través del puerto 2490, para ello, nos vamos a crear esta regla de entrada para el acceso interno a través de la VPN IPsec que ya tenemos configurada, <strong>Firewall &gt; Rules &gt; IPsec</strong>, le indicamos que desde un equipo de nuestra LAN on-premise vamos a poder acceder a la interface lan de opnsense en el puerto 2490<strong>:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="546" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11-1536x438.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17283" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?fit=1913%2C546&amp;ssl=1" data-orig-size="1913,546" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?fit=640%2C183&amp;ssl=1" class="aligncenter size-full wp-image-17283" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?resize=640%2C183&#038;ssl=1" alt="" width="640" height="183" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?resize=595%2C170&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?resize=960%2C274&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?resize=768%2C219&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?resize=1536%2C438&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?ssl=1" data-lbwps-width="1569" data-lbwps-height="725" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12-1536x710.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17284" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?fit=1569%2C725&amp;ssl=1" data-orig-size="1569,725" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?fit=640%2C296&amp;ssl=1" class="aligncenter size-full wp-image-17284" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?resize=640%2C296&#038;ssl=1" alt="" width="640" height="296" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?w=1569&amp;ssl=1 1569w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?resize=595%2C275&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?resize=960%2C444&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?resize=768%2C355&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?resize=1536%2C710&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?ssl=1" data-lbwps-width="1614" data-lbwps-height="859" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13-1536x817.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17285" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?fit=1614%2C859&amp;ssl=1" data-orig-size="1614,859" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?fit=640%2C341&amp;ssl=1" class="aligncenter size-full wp-image-17285" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?resize=640%2C341&#038;ssl=1" alt="" width="640" height="341" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?w=1614&amp;ssl=1 1614w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?resize=595%2C317&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?resize=960%2C511&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?resize=768%2C409&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?resize=1536%2C817&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora desde<strong> System &gt; Settings &gt; Administration &gt; Secure Shell</strong> vamos a indicarle que el puerto de acceso es el 2490:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?ssl=1" data-lbwps-width="1125" data-lbwps-height="477" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17286" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?fit=1125%2C477&amp;ssl=1" data-orig-size="1125,477" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?fit=640%2C271&amp;ssl=1" class="aligncenter size-full wp-image-17286" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?resize=640%2C271&#038;ssl=1" alt="" width="640" height="271" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?w=1125&amp;ssl=1 1125w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?resize=595%2C252&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?resize=960%2C407&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_14.png?resize=768%2C326&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestro Fortigate on-premise hemos creado esta regla, para que el equipo de nuestra LAN on-premise tenga acceso al puerto 2490:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="243" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15-1536x195.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17287" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?fit=1915%2C243&amp;ssl=1" data-orig-size="1915,243" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?fit=640%2C81&amp;ssl=1" class="aligncenter size-full wp-image-17287" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?resize=640%2C81&#038;ssl=1" alt="" width="640" height="81" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?resize=595%2C76&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?resize=960%2C122&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?resize=768%2C97&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?resize=1536%2C195&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?ssl=1" data-lbwps-width="1234" data-lbwps-height="1038" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17288" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?fit=1234%2C1038&amp;ssl=1" data-orig-size="1234,1038" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?fit=640%2C539&amp;ssl=1" class="aligncenter size-full wp-image-17288" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?resize=640%2C538&#038;ssl=1" alt="" width="640" height="538" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?w=1234&amp;ssl=1 1234w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?resize=595%2C500&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?resize=960%2C808&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_16.png?resize=768%2C646&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos acceso a la configuración web a través del puerto 2490:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_17.png?ssl=1" data-lbwps-width="457" data-lbwps-height="446" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17289" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_17.png?fit=457%2C446&amp;ssl=1" data-orig-size="457,446" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_17.png?fit=457%2C446&amp;ssl=1" class="aligncenter size-full wp-image-17289" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_17.png?resize=457%2C446&#038;ssl=1" alt="" width="457" height="446" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_17.png?w=457&amp;ssl=1 457w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_17.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 457px) 100vw, 457px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_18.png?ssl=1" data-lbwps-width="741" data-lbwps-height="632" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17290" data-permalink="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/aawebysshopnsen_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_18.png?fit=741%2C632&amp;ssl=1" data-orig-size="741,632" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aawebysshopnsen_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_18.png?fit=640%2C546&amp;ssl=1" class="aligncenter size-full wp-image-17290" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_18.png?resize=640%2C546&#038;ssl=1" alt="" width="640" height="546" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_18.png?w=741&amp;ssl=1 741w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/aawebysshopnsen_18.png?resize=595%2C507&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17272</post-id>	</item>
		<item>
		<title>Configurar servidor LDAP en OPNSense</title>
		<link>https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense</link>
					<comments>https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 15 Jan 2024 10:31:10 +0000</pubDate>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[LDAP]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17242</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo configurar un servidor LDAP en OPNSense, así nos vamos a poder autenticar al firewall opnsense con usuarios del Active Directory y configurar vpn de acceso remoto con usuarios del Active&#8230; <a href="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo configurar un servidor LDAP en OPNSense, así nos vamos a poder autenticar al firewall opnsense con usuarios del Active Directory y configurar vpn de acceso remoto con usuarios del Active Directory.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos a <strong>System &gt; Access &gt; Servers &gt; +</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="294" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1-1536x236.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17243" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?fit=1914%2C294&amp;ssl=1" data-orig-size="1914,294" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?fit=640%2C98&amp;ssl=1" class="aligncenter size-full wp-image-17243" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=640%2C98&#038;ssl=1" alt="" width="640" height="98" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=595%2C91&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=960%2C147&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=768%2C118&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=1536%2C236&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Introducimos los datos necesarios para conectarnos a nuestro Active Directory:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?ssl=1" data-lbwps-width="1118" data-lbwps-height="647" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17244" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?fit=1118%2C647&amp;ssl=1" data-orig-size="1118,647" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?fit=640%2C371&amp;ssl=1" class="aligncenter size-full wp-image-17244" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=640%2C370&#038;ssl=1" alt="" width="640" height="370" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?w=1118&amp;ssl=1 1118w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=595%2C344&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=960%2C556&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=768%2C444&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?ssl=1" data-lbwps-width="1200" data-lbwps-height="877" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17245" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?fit=1200%2C877&amp;ssl=1" data-orig-size="1200,877" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?fit=640%2C468&amp;ssl=1" class="aligncenter size-full wp-image-17245" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=640%2C468&#038;ssl=1" alt="" width="640" height="468" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?w=1200&amp;ssl=1 1200w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=595%2C435&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=960%2C702&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=768%2C561&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya lo tenemos creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="298" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4-1536x239.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17246" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?fit=1912%2C298&amp;ssl=1" data-orig-size="1912,298" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?fit=640%2C100&amp;ssl=1" class="aligncenter size-full wp-image-17246" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=640%2C100&#038;ssl=1" alt="" width="640" height="100" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=595%2C93&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=960%2C150&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=768%2C120&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=1536%2C239&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora sobre <strong>Firewall &gt; Rules &gt; IPsec</strong> debemos de crearnos esta regla de salida, para que OPNSense pueda acceder al puerto LDAP (389) de uno de nuestros controladores de dominio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="505" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5-1536x405.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17247" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?fit=1913%2C505&amp;ssl=1" data-orig-size="1913,505" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-17247" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=960%2C253&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=1536%2C405&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?ssl=1" data-lbwps-width="1517" data-lbwps-height="873" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17248" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?fit=1517%2C873&amp;ssl=1" data-orig-size="1517,873" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?fit=640%2C368&amp;ssl=1" class="aligncenter size-full wp-image-17248" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=640%2C368&#038;ssl=1" alt="" width="640" height="368" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?w=1517&amp;ssl=1 1517w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=595%2C342&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=960%2C552&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=768%2C442&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?ssl=1" data-lbwps-width="1496" data-lbwps-height="869" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17249" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?fit=1496%2C869&amp;ssl=1" data-orig-size="1496,869" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?fit=640%2C372&amp;ssl=1" class="aligncenter size-full wp-image-17249" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=640%2C372&#038;ssl=1" alt="" width="640" height="372" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?w=1496&amp;ssl=1 1496w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=595%2C346&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=960%2C558&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=768%2C446&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora, como nuestros controladores de dominio los tenemos en la parte on-premise, detrás de un fortigate, y como ya tenemos configurada la VPN IPSec site to site, debemos de configurar esta regla, para que OPNSense pueda acceder al puerto LDAP (389) de uno de nuestros controladores de dominio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?ssl=1" data-lbwps-width="1240" data-lbwps-height="1036" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17250" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?fit=1240%2C1036&amp;ssl=1" data-orig-size="1240,1036" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?fit=640%2C535&amp;ssl=1" class="aligncenter size-full wp-image-17250" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=640%2C535&#038;ssl=1" alt="" width="640" height="535" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?w=1240&amp;ssl=1 1240w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=595%2C497&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=960%2C802&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=768%2C642&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?ssl=1" data-lbwps-width="1685" data-lbwps-height="141" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9-1536x129.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17251" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?fit=1685%2C141&amp;ssl=1" data-orig-size="1685,141" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?fit=640%2C53&amp;ssl=1" class="aligncenter size-full wp-image-17251" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=640%2C54&#038;ssl=1" alt="" width="640" height="54" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?w=1685&amp;ssl=1 1685w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=595%2C50&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=960%2C80&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=768%2C64&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=1536%2C129&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para comprobar que todo funciona correctamente y que OPNSense se comunica con nuestro servidor LDAP de Active DIrectory, accedemos a <strong>System &gt; Access &gt; Tester</strong> e introducimos las credenciales de uno de nuestros usuarios del dominio, damos clic a Test, y si todo está correctamente configurado, podemos ver que el usuario se autentica:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?ssl=1" data-lbwps-width="1321" data-lbwps-height="601" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17252" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?fit=1321%2C601&amp;ssl=1" data-orig-size="1321,601" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?fit=640%2C291&amp;ssl=1" class="aligncenter size-full wp-image-17252" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=640%2C291&#038;ssl=1" alt="" width="640" height="291" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?w=1321&amp;ssl=1 1321w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=595%2C271&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=960%2C437&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=768%2C349&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=300%2C135&amp;ssl=1 300w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez que ya tenemos comunicación con nuestro Active Directory, vamos a configurar que podamos hacer logon en el OPNSense con uno de nuestros usuarios del dominio, para ello, lo primero que nos vamos a crear es un grupo de administradores de LDAP, accedemos a <strong>System &gt; Access &gt; Groups &gt; +</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?ssl=1" data-lbwps-width="1911" data-lbwps-height="295" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11-1536x237.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17253" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?fit=1911%2C295&amp;ssl=1" data-orig-size="1911,295" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?fit=640%2C99&amp;ssl=1" class="aligncenter size-full wp-image-17253" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=640%2C99&#038;ssl=1" alt="" width="640" height="99" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?w=1911&amp;ssl=1 1911w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=595%2C92&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=960%2C148&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=768%2C119&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=1536%2C237&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Le indicamos un nombre y una descripción:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="709" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12-1536x569.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17254" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?fit=1913%2C709&amp;ssl=1" data-orig-size="1913,709" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?fit=640%2C237&amp;ssl=1" class="aligncenter size-full wp-image-17254" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=640%2C237&#038;ssl=1" alt="" width="640" height="237" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=595%2C221&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=960%2C356&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=768%2C285&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=1536%2C569&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, aquí lo tenemos creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="327" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13-1536x262.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17255" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?fit=1915%2C327&amp;ssl=1" data-orig-size="1915,327" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?fit=640%2C109&amp;ssl=1" class="aligncenter size-full wp-image-17255" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=640%2C109&#038;ssl=1" alt="" width="640" height="109" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=595%2C102&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=960%2C164&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=768%2C131&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=1536%2C262&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora debemos de editar los permisos de este grupo, y le asignamos todos los privilegios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="714" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14-1536x573.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17256" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?fit=1914%2C714&amp;ssl=1" data-orig-size="1914,714" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?fit=640%2C239&amp;ssl=1" class="aligncenter size-full wp-image-17256" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=640%2C239&#038;ssl=1" alt="" width="640" height="239" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=595%2C222&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=960%2C358&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=768%2C286&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=1536%2C573&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?ssl=1" data-lbwps-width="1166" data-lbwps-height="805" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17257" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?fit=1166%2C805&amp;ssl=1" data-orig-size="1166,805" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?fit=640%2C442&amp;ssl=1" class="aligncenter size-full wp-image-17257" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=640%2C442&#038;ssl=1" alt="" width="640" height="442" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?w=1166&amp;ssl=1 1166w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=595%2C411&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=960%2C663&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=768%2C530&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="758" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16-1536x609.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17258" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?fit=1913%2C758&amp;ssl=1" data-orig-size="1913,758" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?fit=640%2C253&amp;ssl=1" class="aligncenter size-full wp-image-17258" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=640%2C254&#038;ssl=1" alt="" width="640" height="254" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=595%2C236&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=960%2C380&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=768%2C304&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=1536%2C609&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez creado el grupo, OPNSense requiere que todas las cuentas de usuario LDAP existan en la base de datos local, por lo que procederemos a crear la cuenta, <strong>System &gt; Access &gt; Users &gt; +</strong>, esta cuenta la añadimos como miembro del grupo que hemos creado, la password no tiene porque ser la del usuario del dominio, podemos poner otra, lo que hace OPNSense es verificar primero la base de datos del LDAP y luego la base de datos local, por lo que si ponemos otra password a este usuario podemos acceder con las dos password (una del LDAP y la otra Local):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="330" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17-1536x265.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17259" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?fit=1912%2C330&amp;ssl=1" data-orig-size="1912,330" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?fit=640%2C111&amp;ssl=1" class="aligncenter size-full wp-image-17259" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=640%2C110&#038;ssl=1" alt="" width="640" height="110" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=595%2C103&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=960%2C166&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=768%2C133&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=1536%2C265&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?ssl=1" data-lbwps-width="1159" data-lbwps-height="879" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17260" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?fit=1159%2C879&amp;ssl=1" data-orig-size="1159,879" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?fit=640%2C485&amp;ssl=1" class="aligncenter size-full wp-image-17260" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=640%2C485&#038;ssl=1" alt="" width="640" height="485" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?w=1159&amp;ssl=1 1159w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=595%2C451&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=960%2C728&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=768%2C582&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?ssl=1" data-lbwps-width="1604" data-lbwps-height="881" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19-1536x844.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17261" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?fit=1604%2C881&amp;ssl=1" data-orig-size="1604,881" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?fit=640%2C351&amp;ssl=1" class="aligncenter size-full wp-image-17261" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=640%2C352&#038;ssl=1" alt="" width="640" height="352" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?w=1604&amp;ssl=1 1604w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=595%2C327&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=960%2C527&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=768%2C422&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=1536%2C844&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, aquí tenemos el usuario creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="361" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20-1536x290.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17262" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?fit=1913%2C361&amp;ssl=1" data-orig-size="1913,361" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?fit=640%2C121&amp;ssl=1" class="aligncenter size-full wp-image-17262" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=640%2C121&#038;ssl=1" alt="" width="640" height="121" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=595%2C112&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=960%2C181&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=768%2C145&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=1536%2C290&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>A continuación, vamos a habilitar la autenticación LDAP, para ello, accedemos a <strong>System &gt; Settings &gt; Administration &gt; Authentication &gt; Server</strong> y seleccionamos la autenticación por LDAP Active Directory como primera opción, y como segunda opción seleccionamos la base de datos local, clic a <strong>Save</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?ssl=1" data-lbwps-width="1308" data-lbwps-height="932" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17263" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?fit=1308%2C932&amp;ssl=1" data-orig-size="1308,932" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?fit=640%2C456&amp;ssl=1" class="aligncenter size-full wp-image-17263" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=640%2C456&#038;ssl=1" alt="" width="640" height="456" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?w=1308&amp;ssl=1 1308w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=595%2C424&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=960%2C684&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=768%2C547&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora ya podemos acceder con las credenciales de nuestro usuario del dominio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?ssl=1" data-lbwps-width="1064" data-lbwps-height="575" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17264" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?fit=1064%2C575&amp;ssl=1" data-orig-size="1064,575" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?fit=640%2C346&amp;ssl=1" class="aligncenter size-full wp-image-17264" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=640%2C346&#038;ssl=1" alt="" width="640" height="346" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?w=1064&amp;ssl=1 1064w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=595%2C322&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=960%2C519&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=768%2C415&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17242</post-id>	</item>
		<item>
		<title>VPN site to site IPSEC entre Fortigate on-premise y OPNSense Azure</title>
		<link>https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure</link>
					<comments>https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 08 Jan 2024 10:35:34 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17139</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo configurar una VPN site to site IPSEC entre un Fortigate on-premise y un OPNSense en Azure. La topología que vamos a utilizar será esta: Lo primero que vamos a realizar&#8230; <a href="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo configurar una VPN site to site IPSEC entre un Fortigate on-premise y un OPNSense en Azure.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será acceder a nuestro Fortigate on-premise, y sobre <strong>VPN &gt; Túneles IPsec &gt; Crear nuevo &gt; IPsec Tunnel</strong>, empezaremos a crear el primer extremo de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?ssl=1" data-lbwps-width="1300" data-lbwps-height="429" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17140" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?fit=1300%2C429&amp;ssl=1" data-orig-size="1300,429" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?fit=640%2C211&amp;ssl=1" class="aligncenter size-full wp-image-17140" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?resize=640%2C211&#038;ssl=1" alt="" width="640" height="211" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?w=1300&amp;ssl=1 1300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?resize=595%2C196&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?resize=960%2C317&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_1.png?resize=768%2C253&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Configuración de VPN</strong> seleccionamos <strong>Personalizar</strong> y le indicamos un <strong>Nombre</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?ssl=1" data-lbwps-width="1348" data-lbwps-height="356" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17141" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?fit=1348%2C356&amp;ssl=1" data-orig-size="1348,356" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-17141" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?w=1348&amp;ssl=1 1348w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?resize=960%2C254&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la parte de <strong>Red</strong> configuramos la IP estática que tenemos asignada al OPNSense de Azure y la interface de salida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png?ssl=1" data-lbwps-width="914" data-lbwps-height="634" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17142" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png?fit=914%2C634&amp;ssl=1" data-orig-size="914,634" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png?fit=640%2C444&amp;ssl=1" class="aligncenter size-full wp-image-17142" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png?resize=640%2C444&#038;ssl=1" alt="" width="640" height="444" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png?w=914&amp;ssl=1 914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png?resize=595%2C413&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_3.png?resize=768%2C533&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Autenticación</strong> le indicamos la Key compartida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?ssl=1" data-lbwps-width="1009" data-lbwps-height="291" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17143" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?fit=1009%2C291&amp;ssl=1" data-orig-size="1009,291" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?fit=640%2C185&amp;ssl=1" class="aligncenter size-full wp-image-17143" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?resize=640%2C185&#038;ssl=1" alt="" width="640" height="185" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?w=1009&amp;ssl=1 1009w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?resize=595%2C172&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?resize=960%2C277&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_4.png?resize=768%2C221&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos la <strong>fase 1</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png?ssl=1" data-lbwps-width="910" data-lbwps-height="380" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17144" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png?fit=910%2C380&amp;ssl=1" data-orig-size="910,380" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png?fit=640%2C267&amp;ssl=1" class="aligncenter size-full wp-image-17144" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png?resize=640%2C267&#038;ssl=1" alt="" width="640" height="267" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png?w=910&amp;ssl=1 910w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png?resize=595%2C248&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_5.png?resize=768%2C321&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos la <strong>fase2</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?ssl=1" data-lbwps-width="1232" data-lbwps-height="888" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17145" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?fit=1232%2C888&amp;ssl=1" data-orig-size="1232,888" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?fit=640%2C461&amp;ssl=1" class="aligncenter size-full wp-image-17145" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?resize=640%2C461&#038;ssl=1" alt="" width="640" height="461" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?w=1232&amp;ssl=1 1232w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?resize=595%2C429&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?resize=960%2C692&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_6.png?resize=768%2C554&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos el primer extremo de la VPN configurado, el de la parte on-premise:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?ssl=1" data-lbwps-width="1653" data-lbwps-height="351" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7-1536x326.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17146" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?fit=1653%2C351&amp;ssl=1" data-orig-size="1653,351" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?fit=640%2C136&amp;ssl=1" class="aligncenter size-full wp-image-17146" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?resize=640%2C136&#038;ssl=1" alt="" width="640" height="136" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?w=1653&amp;ssl=1 1653w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?resize=595%2C126&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?resize=960%2C204&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?resize=768%2C163&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?resize=1536%2C326&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a crear las <strong>políticas</strong>:</li>
</ul>
<ul>
<li>Accedemos a <strong>Políticas y objetos&gt; Política IPv4 &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png?ssl=1" data-lbwps-width="952" data-lbwps-height="439" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17147" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png?fit=952%2C439&amp;ssl=1" data-orig-size="952,439" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png?fit=640%2C295&amp;ssl=1" class="aligncenter size-full wp-image-17147" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png?resize=640%2C295&#038;ssl=1" alt="" width="640" height="295" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png?w=952&amp;ssl=1 952w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png?resize=595%2C274&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_8.png?resize=768%2C354&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Creamos una política para la conexión de sitio a sitio que permita el tráfico saliente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?ssl=1" data-lbwps-width="1237" data-lbwps-height="1040" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17148" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?fit=1237%2C1040&amp;ssl=1" data-orig-size="1237,1040" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?fit=640%2C538&amp;ssl=1" class="aligncenter size-full wp-image-17148" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?resize=640%2C538&#038;ssl=1" alt="" width="640" height="538" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?w=1237&amp;ssl=1 1237w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?resize=595%2C500&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?resize=960%2C807&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_9.png?resize=768%2C646&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Creamos otra política para la conexión de sitio a sitio que permita el tráfico entrante:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?ssl=1" data-lbwps-width="1245" data-lbwps-height="1039" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17149" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?fit=1245%2C1039&amp;ssl=1" data-orig-size="1245,1039" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?fit=640%2C534&amp;ssl=1" class="aligncenter size-full wp-image-17149" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?resize=640%2C534&#038;ssl=1" alt="" width="640" height="534" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?w=1245&amp;ssl=1 1245w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?resize=595%2C497&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?resize=960%2C801&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_10.png?resize=768%2C641&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí podemos ver las políticas creadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="667" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11-1536x535.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17150" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?fit=1915%2C667&amp;ssl=1" data-orig-size="1915,667" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?fit=640%2C223&amp;ssl=1" class="aligncenter size-full wp-image-17150" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?resize=640%2C223&#038;ssl=1" alt="" width="640" height="223" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?resize=595%2C207&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?resize=960%2C334&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?resize=768%2C267&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?resize=1536%2C535&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora creamos la ruta estática hacia Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?ssl=1" data-lbwps-width="1273" data-lbwps-height="511" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17151" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?fit=1273%2C511&amp;ssl=1" data-orig-size="1273,511" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?fit=640%2C257&amp;ssl=1" class="aligncenter size-full wp-image-17151" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?resize=640%2C257&#038;ssl=1" alt="" width="640" height="257" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?w=1273&amp;ssl=1 1273w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?resize=595%2C239&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?resize=960%2C385&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_12.png?resize=768%2C308&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?ssl=1" data-lbwps-width="1775" data-lbwps-height="412" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13-1536x357.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17152" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?fit=1775%2C412&amp;ssl=1" data-orig-size="1775,412" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?fit=640%2C149&amp;ssl=1" class="aligncenter size-full wp-image-17152" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?resize=640%2C149&#038;ssl=1" alt="" width="640" height="149" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?w=1775&amp;ssl=1 1775w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?resize=595%2C138&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?resize=960%2C223&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?resize=768%2C178&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?resize=1536%2C357&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo segundo que vamos a realizar será acceder a nuestro OPNSense en Azure, y sobre <strong>Firewall &gt; WAN &gt; +</strong>, nos crearemos tres reglas de firewall para permitir el tráfico IPSEC a la interfaz WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="455" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14-1536x365.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17153" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?fit=1914%2C455&amp;ssl=1" data-orig-size="1914,455" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?fit=640%2C152&amp;ssl=1" class="aligncenter size-full wp-image-17153" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?resize=640%2C152&#038;ssl=1" alt="" width="640" height="152" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?resize=595%2C141&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?resize=960%2C228&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?resize=768%2C183&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?resize=1536%2C365&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Regla para IPSec ESP:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="434" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15-1536x348.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17154" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?fit=1914%2C434&amp;ssl=1" data-orig-size="1914,434" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?fit=640%2C145&amp;ssl=1" class="aligncenter size-full wp-image-17154" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?resize=640%2C145&#038;ssl=1" alt="" width="640" height="145" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?resize=595%2C135&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?resize=960%2C218&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?resize=768%2C174&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?resize=1536%2C348&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?ssl=1" data-lbwps-width="1503" data-lbwps-height="686" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17155" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?fit=1503%2C686&amp;ssl=1" data-orig-size="1503,686" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?fit=640%2C292&amp;ssl=1" class="aligncenter size-full wp-image-17155" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?resize=640%2C292&#038;ssl=1" alt="" width="640" height="292" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?w=1503&amp;ssl=1 1503w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?resize=595%2C272&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?resize=960%2C438&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?resize=768%2C351&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?ssl=1" data-lbwps-width="1477" data-lbwps-height="821" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17156" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?fit=1477%2C821&amp;ssl=1" data-orig-size="1477,821" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?fit=640%2C356&amp;ssl=1" class="aligncenter size-full wp-image-17156" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?resize=640%2C356&#038;ssl=1" alt="" width="640" height="356" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?w=1477&amp;ssl=1 1477w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?resize=595%2C331&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?resize=960%2C534&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?resize=768%2C427&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Regla para IPSec ISAKMP puerto 500:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="548" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18-1536x440.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17157" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?fit=1915%2C548&amp;ssl=1" data-orig-size="1915,548" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?fit=640%2C183&amp;ssl=1" class="aligncenter size-full wp-image-17157" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?resize=640%2C183&#038;ssl=1" alt="" width="640" height="183" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?resize=595%2C170&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?resize=960%2C275&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?resize=768%2C220&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?resize=1536%2C440&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_18.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?ssl=1" data-lbwps-width="1499" data-lbwps-height="687" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17158" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?fit=1499%2C687&amp;ssl=1" data-orig-size="1499,687" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?fit=640%2C293&amp;ssl=1" class="aligncenter size-full wp-image-17158" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?resize=640%2C293&#038;ssl=1" alt="" width="640" height="293" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?w=1499&amp;ssl=1 1499w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?resize=595%2C273&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?resize=960%2C440&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?resize=768%2C352&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_19.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?ssl=1" data-lbwps-width="1479" data-lbwps-height="827" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17159" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?fit=1479%2C827&amp;ssl=1" data-orig-size="1479,827" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?fit=640%2C358&amp;ssl=1" class="aligncenter size-full wp-image-17159" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?resize=640%2C358&#038;ssl=1" alt="" width="640" height="358" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?w=1479&amp;ssl=1 1479w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?resize=595%2C333&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?resize=960%2C537&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?resize=768%2C429&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Regla para IPSec NAT-T puerto 4500:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="558" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23-1536x448.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17160" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?fit=1913%2C558&amp;ssl=1" data-orig-size="1913,558" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?fit=640%2C187&amp;ssl=1" class="aligncenter size-full wp-image-17160" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?resize=640%2C187&#038;ssl=1" alt="" width="640" height="187" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?resize=595%2C174&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?resize=960%2C280&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?resize=768%2C224&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?resize=1536%2C448&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_23.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?ssl=1" data-lbwps-width="1481" data-lbwps-height="684" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17161" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?fit=1481%2C684&amp;ssl=1" data-orig-size="1481,684" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?fit=640%2C295&amp;ssl=1" class="aligncenter size-full wp-image-17161" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?resize=640%2C296&#038;ssl=1" alt="" width="640" height="296" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?w=1481&amp;ssl=1 1481w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?resize=595%2C275&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?resize=960%2C443&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?resize=768%2C355&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_24.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?ssl=1" data-lbwps-width="1482" data-lbwps-height="837" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17162" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?fit=1482%2C837&amp;ssl=1" data-orig-size="1482,837" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?fit=640%2C361&amp;ssl=1" class="aligncenter size-full wp-image-17162" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?resize=640%2C361&#038;ssl=1" alt="" width="640" height="361" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?w=1482&amp;ssl=1 1482w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?resize=595%2C336&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?resize=960%2C542&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?resize=768%2C434&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_25.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver aquí tenemos las tres reglas creadas en la interface WAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="554" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26-1536x445.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17163" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?fit=1913%2C554&amp;ssl=1" data-orig-size="1913,554" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?fit=640%2C185&amp;ssl=1" class="aligncenter size-full wp-image-17163" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?resize=640%2C185&#038;ssl=1" alt="" width="640" height="185" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?resize=595%2C172&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?resize=960%2C278&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?resize=768%2C222&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?resize=1536%2C445&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_26.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a configurar la fase 1 de la VPN site to site, para ello, accedemos a <strong>VPN &gt; IPSec &gt; Connections &gt; Tunnel Settings (legacy) &gt; +</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="570" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27-1536x457.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17164" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?fit=1914%2C570&amp;ssl=1" data-orig-size="1914,570" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?fit=640%2C191&amp;ssl=1" class="aligncenter size-full wp-image-17164" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?resize=640%2C191&#038;ssl=1" alt="" width="640" height="191" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?resize=595%2C177&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?resize=960%2C286&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?resize=768%2C229&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?resize=1536%2C457&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?ssl=1" data-lbwps-width="1099" data-lbwps-height="568" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17165" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?fit=1099%2C568&amp;ssl=1" data-orig-size="1099,568" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?fit=640%2C331&amp;ssl=1" class="aligncenter size-full wp-image-17165" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?resize=640%2C331&#038;ssl=1" alt="" width="640" height="331" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?w=1099&amp;ssl=1 1099w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?resize=595%2C308&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?resize=960%2C496&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_28.png?resize=768%2C397&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?ssl=1" data-lbwps-width="1099" data-lbwps-height="423" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17166" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?fit=1099%2C423&amp;ssl=1" data-orig-size="1099,423" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?fit=640%2C246&amp;ssl=1" class="aligncenter size-full wp-image-17166" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?resize=640%2C246&#038;ssl=1" alt="" width="640" height="246" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?w=1099&amp;ssl=1 1099w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?resize=595%2C229&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?resize=960%2C369&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_29.png?resize=768%2C296&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?ssl=1" data-lbwps-width="1141" data-lbwps-height="753" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17167" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?fit=1141%2C753&amp;ssl=1" data-orig-size="1141,753" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?fit=640%2C423&amp;ssl=1" class="aligncenter size-full wp-image-17167" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?resize=640%2C422&#038;ssl=1" alt="" width="640" height="422" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?w=1141&amp;ssl=1 1141w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?resize=595%2C393&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?resize=960%2C634&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_30.png?resize=768%2C507&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?ssl=1" data-lbwps-width="1137" data-lbwps-height="815" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17168" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?fit=1137%2C815&amp;ssl=1" data-orig-size="1137,815" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?fit=640%2C459&amp;ssl=1" class="aligncenter size-full wp-image-17168" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?resize=640%2C459&#038;ssl=1" alt="" width="640" height="459" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?w=1137&amp;ssl=1 1137w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?resize=595%2C426&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?resize=960%2C688&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_31.png?resize=768%2C551&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos la fase 1 creada, habilitamos IPSec y aplicamos los cambios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="714" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32-1536x573.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17169" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_32#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?fit=1914%2C714&amp;ssl=1" data-orig-size="1914,714" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_32" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?fit=640%2C239&amp;ssl=1" class="aligncenter size-full wp-image-17169" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?resize=640%2C239&#038;ssl=1" alt="" width="640" height="239" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?resize=595%2C222&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?resize=960%2C358&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?resize=768%2C286&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?resize=1536%2C573&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_32.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a configurar la fase 2 de la VPN site to site, para ello, accedemos a <strong>VPN &gt; IPSec &gt; Connections &gt; Tunnel Settings (legacy) &gt; +:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="399" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33-1536x320.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17170" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_33#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?fit=1914%2C399&amp;ssl=1" data-orig-size="1914,399" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_33" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?fit=640%2C133&amp;ssl=1" class="aligncenter size-full wp-image-17170" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?resize=640%2C133&#038;ssl=1" alt="" width="640" height="133" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?resize=595%2C124&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?resize=960%2C200&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?resize=768%2C160&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?resize=1536%2C320&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_33.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?ssl=1" data-lbwps-width="1114" data-lbwps-height="594" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17171" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_34#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?fit=1114%2C594&amp;ssl=1" data-orig-size="1114,594" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_34" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?fit=640%2C341&amp;ssl=1" class="aligncenter size-full wp-image-17171" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?resize=640%2C341&#038;ssl=1" alt="" width="640" height="341" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?w=1114&amp;ssl=1 1114w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?resize=595%2C317&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?resize=960%2C512&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_34.png?resize=768%2C410&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?ssl=1" data-lbwps-width="1213" data-lbwps-height="813" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17172" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_35#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?fit=1213%2C813&amp;ssl=1" data-orig-size="1213,813" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_35" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?fit=640%2C429&amp;ssl=1" class="aligncenter size-full wp-image-17172" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?resize=640%2C429&#038;ssl=1" alt="" width="640" height="429" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?w=1213&amp;ssl=1 1213w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?resize=595%2C399&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?resize=960%2C643&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_35.png?resize=768%2C515&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aplicamos los cambios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="702" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36-1536x563.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17173" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_36#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?fit=1914%2C702&amp;ssl=1" data-orig-size="1914,702" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_36" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?fit=640%2C235&amp;ssl=1" class="aligncenter size-full wp-image-17173" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?resize=640%2C235&#038;ssl=1" alt="" width="640" height="235" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?resize=595%2C218&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?resize=960%2C352&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?resize=768%2C282&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?resize=1536%2C563&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_36.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos la fase 2 de la VPN site to site configurada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="665" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37-1536x534.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17174" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_37#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?fit=1913%2C665&amp;ssl=1" data-orig-size="1913,665" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_37" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?fit=640%2C223&amp;ssl=1" class="aligncenter size-full wp-image-17174" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?resize=640%2C222&#038;ssl=1" alt="" width="640" height="222" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?resize=595%2C207&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?resize=960%2C334&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?resize=768%2C267&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?resize=1536%2C534&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_37.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para terminar, vamos a crear dos políticas, una de entrada y otra de salida para comunicar las dos subredes que tenemos, una en Azure y otra On-premise, para ello, accedemos a <strong>Firewall &gt; Rules &gt; IPSec &gt; +</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="424" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38-1536x340.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17175" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_38#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?fit=1913%2C424&amp;ssl=1" data-orig-size="1913,424" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_38" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?fit=640%2C142&amp;ssl=1" class="aligncenter size-full wp-image-17175" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?resize=640%2C142&#038;ssl=1" alt="" width="640" height="142" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?resize=595%2C132&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?resize=960%2C213&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?resize=768%2C170&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?resize=1536%2C340&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_38.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Regla de entrada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="429" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39-1536x344.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17176" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_39#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?fit=1915%2C429&amp;ssl=1" data-orig-size="1915,429" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_39" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?fit=640%2C143&amp;ssl=1" class="aligncenter size-full wp-image-17176" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?resize=640%2C143&#038;ssl=1" alt="" width="640" height="143" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?resize=595%2C133&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?resize=960%2C215&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?resize=768%2C172&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?resize=1536%2C344&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_39.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?ssl=1" data-lbwps-width="1492" data-lbwps-height="689" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17177" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_40#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?fit=1492%2C689&amp;ssl=1" data-orig-size="1492,689" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_40" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?fit=640%2C295&amp;ssl=1" class="aligncenter size-full wp-image-17177" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?resize=640%2C296&#038;ssl=1" alt="" width="640" height="296" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?w=1492&amp;ssl=1 1492w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?resize=595%2C275&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?resize=960%2C443&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?resize=768%2C355&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_40.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?ssl=1" data-lbwps-width="1487" data-lbwps-height="806" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17178" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_41#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?fit=1487%2C806&amp;ssl=1" data-orig-size="1487,806" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_41" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?fit=640%2C347&amp;ssl=1" class="aligncenter size-full wp-image-17178" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?resize=640%2C347&#038;ssl=1" alt="" width="640" height="347" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?w=1487&amp;ssl=1 1487w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?resize=595%2C323&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?resize=960%2C520&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?resize=768%2C416&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_41.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Regla de salida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="475" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42-1536x381.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17179" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_42#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?fit=1915%2C475&amp;ssl=1" data-orig-size="1915,475" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_42" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?fit=640%2C159&amp;ssl=1" class="aligncenter size-full wp-image-17179" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?resize=640%2C159&#038;ssl=1" alt="" width="640" height="159" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?resize=595%2C148&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?resize=960%2C238&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?resize=768%2C190&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?resize=1536%2C381&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_42.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?ssl=1" data-lbwps-width="1490" data-lbwps-height="690" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17180" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_43#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?fit=1490%2C690&amp;ssl=1" data-orig-size="1490,690" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_43" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-17180" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?resize=640%2C296&#038;ssl=1" alt="" width="640" height="296" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?w=1490&amp;ssl=1 1490w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?resize=595%2C276&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?resize=960%2C445&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?resize=768%2C356&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_43.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?ssl=1" data-lbwps-width="1480" data-lbwps-height="823" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17181" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_44#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?fit=1480%2C823&amp;ssl=1" data-orig-size="1480,823" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_44" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?fit=640%2C356&amp;ssl=1" class="aligncenter size-full wp-image-17181" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?resize=640%2C356&#038;ssl=1" alt="" width="640" height="356" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?w=1480&amp;ssl=1 1480w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?resize=595%2C331&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?resize=960%2C534&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?resize=768%2C427&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_44.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos las dos reglas creadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45-1536x322.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17182" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_45#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?fit=1914%2C401&amp;ssl=1" data-orig-size="1914,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_45" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?fit=640%2C134&amp;ssl=1" class="aligncenter size-full wp-image-17182" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?resize=640%2C134&#038;ssl=1" alt="" width="640" height="134" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?resize=595%2C125&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?resize=960%2C201&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?resize=768%2C161&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?resize=1536%2C322&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_45.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>A continuación, sobre <strong>Firewall &gt; Rules &gt; LAN</strong> vamos a crear esta regla para permitir el tráfico entre la subred de Azure y la subred on-premise:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="662" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46-1536x531.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17183" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_46#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?fit=1914%2C662&amp;ssl=1" data-orig-size="1914,662" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_46" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?fit=640%2C221&amp;ssl=1" class="aligncenter size-full wp-image-17183" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?resize=640%2C221&#038;ssl=1" alt="" width="640" height="221" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?resize=595%2C206&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?resize=960%2C332&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?resize=768%2C266&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?resize=1536%2C531&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_46.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?ssl=1" data-lbwps-width="1508" data-lbwps-height="684" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17184" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_47#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?fit=1508%2C684&amp;ssl=1" data-orig-size="1508,684" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_47" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?fit=640%2C290&amp;ssl=1" class="aligncenter size-full wp-image-17184" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?resize=640%2C290&#038;ssl=1" alt="" width="640" height="290" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?w=1508&amp;ssl=1 1508w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?resize=595%2C270&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?resize=960%2C435&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?resize=768%2C348&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?resize=300%2C135&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_47.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?ssl=1" data-lbwps-width="1522" data-lbwps-height="820" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17185" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_48#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?fit=1522%2C820&amp;ssl=1" data-orig-size="1522,820" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_48" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-17185" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?resize=640%2C345&#038;ssl=1" alt="" width="640" height="345" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?w=1522&amp;ssl=1 1522w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?resize=595%2C321&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?resize=960%2C517&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?resize=768%2C414&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_48.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos el túnel IPSEC levantado.</li>
<li>Fortigate On-premise:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?ssl=1" data-lbwps-width="1657" data-lbwps-height="379" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49-1536x351.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17186" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_49#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?fit=1657%2C379&amp;ssl=1" data-orig-size="1657,379" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_49" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?fit=640%2C147&amp;ssl=1" class="aligncenter size-full wp-image-17186" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?resize=640%2C146&#038;ssl=1" alt="" width="640" height="146" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?w=1657&amp;ssl=1 1657w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?resize=595%2C136&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?resize=960%2C220&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?resize=768%2C176&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?resize=1536%2C351&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_49.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>OPNSense Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="562" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50-1536x451.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17187" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_50#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?fit=1915%2C562&amp;ssl=1" data-orig-size="1915,562" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_50" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?fit=640%2C188&amp;ssl=1" class="aligncenter size-full wp-image-17187" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?resize=640%2C188&#038;ssl=1" alt="" width="640" height="188" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?resize=595%2C175&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?resize=960%2C282&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?resize=768%2C225&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?resize=1536%2C451&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_50.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para verificar que todo funciona correctamente vamos a realizar un ping desde una máquina on-premise a una máquina en Azure y viceversa:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?ssl=1" data-lbwps-width="1774" data-lbwps-height="651" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51-1536x564.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17188" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_51#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?fit=1774%2C651&amp;ssl=1" data-orig-size="1774,651" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_51" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?fit=640%2C235&amp;ssl=1" class="aligncenter size-full wp-image-17188" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?resize=640%2C235&#038;ssl=1" alt="" width="640" height="235" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?w=1774&amp;ssl=1 1774w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?resize=595%2C218&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?resize=960%2C352&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?resize=768%2C282&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?resize=1536%2C564&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_51.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?ssl=1" data-lbwps-width="1000" data-lbwps-height="614" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17189" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_52#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?fit=1000%2C614&amp;ssl=1" data-orig-size="1000,614" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_52" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?fit=640%2C393&amp;ssl=1" class="aligncenter size-full wp-image-17189" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?resize=640%2C393&#038;ssl=1" alt="" width="640" height="393" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?w=1000&amp;ssl=1 1000w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?resize=595%2C365&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?resize=960%2C589&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_52.png?resize=768%2C472&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_53.png?ssl=1" data-lbwps-width="679" data-lbwps-height="523" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_53.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17190" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/vstsefopyopsaz_53#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_53.png?fit=679%2C523&amp;ssl=1" data-orig-size="679,523" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsefopyopsaz_53" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_53.png?fit=640%2C493&amp;ssl=1" class="aligncenter size-full wp-image-17190" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_53.png?resize=640%2C493&#038;ssl=1" alt="" width="640" height="493" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_53.png?w=679&amp;ssl=1 679w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/vstsefopyopsaz_53.png?resize=595%2C458&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure/feed</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17139</post-id>	</item>
		<item>
		<title>OPNSense – Configurar Categorías y Alias</title>
		<link>https://blog.ragasys.es/opnsense-configurar-categorias-y-alias</link>
					<comments>https://blog.ragasys.es/opnsense-configurar-categorias-y-alias#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Tue, 02 Jan 2024 07:57:39 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17306</guid>

					<description><![CDATA[Hola a tod@s, En este post, vamos a ver cómo configurar las categorías y alias, estos alias serán los que vamos a aplicar posteriormente en las reglas del firewall. La topología que vamos a utilizar será esta: Lo primero que&#8230; <a href="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post, vamos a ver cómo configurar las categorías y alias, estos alias serán los que vamos a aplicar posteriormente en las reglas del firewall.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a configurar serán las categorías, para ello, accedemos a <strong>Firewall &gt; Categories &gt; +</strong> y vamos añadiendo las que nos interesen:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?ssl=1" data-lbwps-width="1910" data-lbwps-height="786" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1-1536x632.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17307" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?fit=1910%2C786&amp;ssl=1" data-orig-size="1910,786" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?fit=640%2C263&amp;ssl=1" class="aligncenter size-full wp-image-17307" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?resize=640%2C263&#038;ssl=1" alt="" width="640" height="263" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?w=1910&amp;ssl=1 1910w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?resize=595%2C245&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?resize=960%2C395&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?resize=768%2C316&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?resize=1536%2C632&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Por ejemplo, en este caso, nos hemos creado una llamada Web Access:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png?ssl=1" data-lbwps-width="910" data-lbwps-height="286" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17308" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png?fit=910%2C286&amp;ssl=1" data-orig-size="910,286" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png?fit=640%2C201&amp;ssl=1" class="aligncenter size-full wp-image-17308" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png?resize=640%2C201&#038;ssl=1" alt="" width="640" height="201" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png?w=910&amp;ssl=1 910w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png?resize=595%2C187&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_2.png?resize=768%2C241&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos todas las que nos hemos creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="785" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3-1536x630.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17309" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?fit=1915%2C785&amp;ssl=1" data-orig-size="1915,785" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?fit=640%2C263&amp;ssl=1" class="aligncenter size-full wp-image-17309" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?resize=640%2C262&#038;ssl=1" alt="" width="640" height="262" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?resize=595%2C244&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?resize=960%2C394&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?resize=768%2C315&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?resize=1536%2C630&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez que nos hemos creado las categorías, podemos proceder a crear los Alias, vamos a mostrar ejemplos de alias para un solo puerto, dos puertos, un rango de puertos, host, grupo de hosts y red, para ello, accedemos a <strong>Firewall &gt; Aliases &gt; +</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="699" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4-1536x561.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17310" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?fit=1913%2C699&amp;ssl=1" data-orig-size="1913,699" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?fit=640%2C234&amp;ssl=1" class="aligncenter size-full wp-image-17310" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?resize=640%2C234&#038;ssl=1" alt="" width="640" height="234" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?resize=595%2C217&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?resize=960%2C351&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?resize=768%2C281&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?resize=1536%2C561&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Empezamos por mostrar un ejemplo de un solo puerto, por ejemplo, para el servicio SSH:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?ssl=1" data-lbwps-width="1208" data-lbwps-height="438" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17311" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?fit=1208%2C438&amp;ssl=1" data-orig-size="1208,438" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?fit=640%2C232&amp;ssl=1" class="aligncenter size-full wp-image-17311" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?resize=640%2C232&#038;ssl=1" alt="" width="640" height="232" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?w=1208&amp;ssl=1 1208w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?resize=595%2C216&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?resize=960%2C348&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_5.png?resize=768%2C278&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejemplo con dos puertos, SNMP:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?ssl=1" data-lbwps-width="1203" data-lbwps-height="434" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17312" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?fit=1203%2C434&amp;ssl=1" data-orig-size="1203,434" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-17312" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?resize=640%2C231&#038;ssl=1" alt="" width="640" height="231" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?w=1203&amp;ssl=1 1203w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?resize=595%2C215&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?resize=960%2C346&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_6.png?resize=768%2C277&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejemplo con un rango de puertos:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?ssl=1" data-lbwps-width="1202" data-lbwps-height="433" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17328" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?fit=1202%2C433&amp;ssl=1" data-orig-size="1202,433" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-17328" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?resize=640%2C231&#038;ssl=1" alt="" width="640" height="231" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?w=1202&amp;ssl=1 1202w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?resize=595%2C214&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?resize=960%2C346&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2024/01/opnsenseccya_16.png?resize=768%2C277&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejemplo con grupo rango de puertos, Windows Active Directory:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?ssl=1" data-lbwps-width="1205" data-lbwps-height="543" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17313" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?fit=1205%2C543&amp;ssl=1" data-orig-size="1205,543" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?fit=640%2C289&amp;ssl=1" class="aligncenter size-full wp-image-17313" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?resize=640%2C288&#038;ssl=1" alt="" width="640" height="288" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?w=1205&amp;ssl=1 1205w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?resize=595%2C268&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?resize=960%2C433&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?resize=768%2C346&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_7.png?resize=300%2C135&amp;ssl=1 300w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejemplo con un solo host:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?ssl=1" data-lbwps-width="1205" data-lbwps-height="470" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17314" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?fit=1205%2C470&amp;ssl=1" data-orig-size="1205,470" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?fit=640%2C249&amp;ssl=1" class="aligncenter size-full wp-image-17314" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?resize=640%2C250&#038;ssl=1" alt="" width="640" height="250" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?w=1205&amp;ssl=1 1205w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?resize=595%2C232&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?resize=960%2C374&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_8.png?resize=768%2C300&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejemplo con un grupo de hosts:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?ssl=1" data-lbwps-width="1202" data-lbwps-height="468" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17315" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?fit=1202%2C468&amp;ssl=1" data-orig-size="1202,468" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?fit=640%2C249&amp;ssl=1" class="aligncenter size-full wp-image-17315" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?resize=640%2C249&#038;ssl=1" alt="" width="640" height="249" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?w=1202&amp;ssl=1 1202w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?resize=595%2C232&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?resize=960%2C374&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_9.png?resize=768%2C299&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejemplo para una red:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?ssl=1" data-lbwps-width="1203" data-lbwps-height="470" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17316" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?fit=1203%2C470&amp;ssl=1" data-orig-size="1203,470" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?fit=640%2C250&amp;ssl=1" class="aligncenter size-full wp-image-17316" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?resize=640%2C250&#038;ssl=1" alt="" width="640" height="250" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?w=1203&amp;ssl=1 1203w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?resize=595%2C232&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?resize=960%2C375&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_10.png?resize=768%2C300&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como resumen, nos quedaría algo parecido a esto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="801" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11-1536x643.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17317" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?fit=1914%2C801&amp;ssl=1" data-orig-size="1914,801" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?fit=640%2C268&amp;ssl=1" class="aligncenter size-full wp-image-17317" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?resize=640%2C268&#038;ssl=1" alt="" width="640" height="268" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?resize=595%2C249&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?resize=960%2C402&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?resize=768%2C321&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?resize=1536%2C643&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="740" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12-1536x594.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17318" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?fit=1914%2C740&amp;ssl=1" data-orig-size="1914,740" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?fit=640%2C247&amp;ssl=1" class="aligncenter size-full wp-image-17318" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?resize=640%2C247&#038;ssl=1" alt="" width="640" height="247" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?resize=595%2C230&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?resize=960%2C371&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?resize=768%2C297&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?resize=1536%2C594&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="873" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13-1536x701.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17319" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?fit=1912%2C873&amp;ssl=1" data-orig-size="1912,873" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?fit=640%2C292&amp;ssl=1" class="aligncenter size-full wp-image-17319" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?resize=640%2C292&#038;ssl=1" alt="" width="640" height="292" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?resize=595%2C272&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?resize=960%2C438&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?resize=768%2C351&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?resize=1536%2C701&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="852" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14-1536x684.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17320" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?fit=1913%2C852&amp;ssl=1" data-orig-size="1913,852" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?fit=640%2C285&amp;ssl=1" class="aligncenter size-full wp-image-17320" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?resize=640%2C285&#038;ssl=1" alt="" width="640" height="285" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?resize=595%2C265&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?resize=960%2C428&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?resize=768%2C342&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?resize=1536%2C684&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?resize=300%2C135&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="705" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15-1536x566.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17321" data-permalink="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/opnsenseccya_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?fit=1913%2C705&amp;ssl=1" data-orig-size="1913,705" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="opnsenseccya_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?fit=640%2C236&amp;ssl=1" class="aligncenter size-full wp-image-17321" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?resize=640%2C236&#038;ssl=1" alt="" width="640" height="236" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?resize=595%2C219&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?resize=960%2C354&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?resize=768%2C283&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?resize=1536%2C566&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/opnsenseccya_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/opnsense-configurar-categorias-y-alias/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17306</post-id>	</item>
		<item>
		<title>Configuración inicial y avanzada OPNSense</title>
		<link>https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense</link>
					<comments>https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Tue, 26 Dec 2023 11:55:32 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17095</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo realizar la configuración inicial y avanzada en nuestro firewall OPNSense en Azure. La topología que vamos a utilizar será esta: Lo primero que vamos a realizar será cambiar la password&#8230; <a href="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo realizar la configuración inicial y avanzada en nuestro firewall OPNSense en Azure.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será cambiar la password de root del sistema, para ello accedemos a <strong>Lobby &gt; Password </strong>y procedemos a cambiarla:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?ssl=1" data-lbwps-width="1237" data-lbwps-height="525" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17096" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?fit=1237%2C525&amp;ssl=1" data-orig-size="1237,525" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?fit=640%2C271&amp;ssl=1" class="aligncenter size-full wp-image-17096" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?resize=640%2C272&#038;ssl=1" alt="" width="640" height="272" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?w=1237&amp;ssl=1 1237w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?resize=595%2C253&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?resize=960%2C407&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_1.png?resize=768%2C326&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Esta password también la podemos cambiar desde <strong>System &gt; Access &gt; Users &gt; root</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="285" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2-1536x229.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17097" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?fit=1913%2C285&amp;ssl=1" data-orig-size="1913,285" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?fit=640%2C95&amp;ssl=1" class="aligncenter size-full wp-image-17097" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?resize=640%2C95&#038;ssl=1" alt="" width="640" height="95" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?resize=595%2C89&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?resize=960%2C143&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?resize=768%2C114&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?resize=1536%2C229&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?ssl=1" data-lbwps-width="1213" data-lbwps-height="513" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17098" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?fit=1213%2C513&amp;ssl=1" data-orig-size="1213,513" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?fit=640%2C271&amp;ssl=1" class="aligncenter size-full wp-image-17098" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?resize=640%2C271&#038;ssl=1" alt="" width="640" height="271" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?w=1213&amp;ssl=1 1213w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?resize=595%2C252&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?resize=960%2C406&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_3.png?resize=768%2C325&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>System &gt; Settings &gt; General</strong> configuramos el nombre del host, dominio, zona horaria y los servidores DNS:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?ssl=1" data-lbwps-width="1272" data-lbwps-height="859" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17099" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?fit=1272%2C859&amp;ssl=1" data-orig-size="1272,859" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?fit=640%2C432&amp;ssl=1" class="aligncenter size-full wp-image-17099" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?resize=640%2C432&#038;ssl=1" alt="" width="640" height="432" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?w=1272&amp;ssl=1 1272w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?resize=595%2C402&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?resize=960%2C648&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_4.png?resize=768%2C519&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?ssl=1" data-lbwps-width="983" data-lbwps-height="403" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17100" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?fit=983%2C403&amp;ssl=1" data-orig-size="983,403" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?fit=640%2C263&amp;ssl=1" class="aligncenter size-full wp-image-17100" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?resize=640%2C262&#038;ssl=1" alt="" width="640" height="262" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?w=983&amp;ssl=1 983w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?resize=595%2C244&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?resize=960%2C394&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_5.png?resize=768%2C315&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Services &gt; Network Time &gt; General</strong> configuramos los servidores NTP:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?ssl=1" data-lbwps-width="1754" data-lbwps-height="886" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6-1536x776.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17101" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?fit=1754%2C886&amp;ssl=1" data-orig-size="1754,886" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?fit=640%2C323&amp;ssl=1" class="aligncenter size-full wp-image-17101" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?resize=640%2C323&#038;ssl=1" alt="" width="640" height="323" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?w=1754&amp;ssl=1 1754w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?resize=595%2C301&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?resize=960%2C485&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?resize=768%2C388&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?resize=1536%2C776&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Las interfaces LAN y WAN las dejamos tal y como están, configuradas por DHCP, ya que en la propia máquina de Azure las hemos configurado con una IP estática:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?ssl=1" data-lbwps-width="1240" data-lbwps-height="552" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17102" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?fit=1240%2C552&amp;ssl=1" data-orig-size="1240,552" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?fit=640%2C285&amp;ssl=1" class="aligncenter size-full wp-image-17102" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?resize=640%2C285&#038;ssl=1" alt="" width="640" height="285" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?w=1240&amp;ssl=1 1240w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?resize=595%2C265&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?resize=960%2C427&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?resize=768%2C342&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_7.png?resize=300%2C135&amp;ssl=1 300w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?ssl=1" data-lbwps-width="1118" data-lbwps-height="651" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17103" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?fit=1118%2C651&amp;ssl=1" data-orig-size="1118,651" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?fit=640%2C373&amp;ssl=1" class="aligncenter size-full wp-image-17103" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?resize=640%2C373&#038;ssl=1" alt="" width="640" height="373" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?w=1118&amp;ssl=1 1118w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?resize=595%2C346&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?resize=960%2C559&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_8.png?resize=768%2C447&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Firewall &gt; Aliases</strong> vamos a configurar los distintos objetos que iremos utilizando en las reglas de filtrado del firewall OPNSense:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="718" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9-1536x576.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17104" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?fit=1915%2C718&amp;ssl=1" data-orig-size="1915,718" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?fit=640%2C240&amp;ssl=1" class="aligncenter size-full wp-image-17104" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?resize=640%2C240&#038;ssl=1" alt="" width="640" height="240" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?resize=595%2C223&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?resize=960%2C360&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?resize=768%2C288&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?resize=1536%2C576&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Type</strong> podemos ver los distintos objetos que nos podemos ir creando, Host(s), Network(s), Port(s), etc… :</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?ssl=1" data-lbwps-width="1271" data-lbwps-height="601" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17105" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?fit=1271%2C601&amp;ssl=1" data-orig-size="1271,601" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?fit=640%2C303&amp;ssl=1" class="aligncenter size-full wp-image-17105" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?resize=640%2C303&#038;ssl=1" alt="" width="640" height="303" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?w=1271&amp;ssl=1 1271w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?resize=595%2C281&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?resize=960%2C454&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_10.png?resize=768%2C363&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Estos son los que nos hemos creado en un principio, esta lista irá en aumento a medida que vayamos necesitando objetos en nuestras reglas de filtrado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?ssl=1" data-lbwps-width="1909" data-lbwps-height="778" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11-1536x626.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17106" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?fit=1909%2C778&amp;ssl=1" data-orig-size="1909,778" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?fit=640%2C261&amp;ssl=1" class="aligncenter size-full wp-image-17106" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?resize=640%2C261&#038;ssl=1" alt="" width="640" height="261" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?w=1909&amp;ssl=1 1909w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?resize=595%2C242&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?resize=960%2C391&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?resize=768%2C313&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?resize=1536%2C626&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="626" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12-1536x503.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17107" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?fit=1912%2C626&amp;ssl=1" data-orig-size="1912,626" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?fit=640%2C209&amp;ssl=1" class="aligncenter size-full wp-image-17107" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?resize=640%2C210&#038;ssl=1" alt="" width="640" height="210" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?resize=595%2C195&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?resize=960%2C314&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?resize=768%2C251&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?resize=1536%2C503&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Firewall &gt; Rules &gt; WAN</strong> nos hemos creado esta regla de entrada (IN) para acceder al portal de configuración de OPNSense a través de otro puerto distinto al 443:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="457" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13-1536x367.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17108" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?fit=1914%2C457&amp;ssl=1" data-orig-size="1914,457" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?fit=640%2C153&amp;ssl=1" class="aligncenter size-full wp-image-17108" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?resize=640%2C153&#038;ssl=1" alt="" width="640" height="153" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?resize=595%2C142&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?resize=960%2C229&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?resize=768%2C183&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?resize=1536%2C367&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?ssl=1" data-lbwps-width="1479" data-lbwps-height="890" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17109" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?fit=1479%2C890&amp;ssl=1" data-orig-size="1479,890" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?fit=640%2C385&amp;ssl=1" class="aligncenter size-full wp-image-17109" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?resize=640%2C385&#038;ssl=1" alt="" width="640" height="385" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?w=1479&amp;ssl=1 1479w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?resize=595%2C358&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?resize=960%2C578&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?resize=768%2C462&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?ssl=1" data-lbwps-width="1520" data-lbwps-height="866" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17110" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?fit=1520%2C866&amp;ssl=1" data-orig-size="1520,866" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?fit=640%2C365&amp;ssl=1" class="aligncenter size-full wp-image-17110" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?resize=640%2C365&#038;ssl=1" alt="" width="640" height="365" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?w=1520&amp;ssl=1 1520w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?resize=595%2C339&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?resize=960%2C547&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?resize=768%2C438&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para habilitarlo, debemos ir a <strong>System &gt; Settings &gt; Administration</strong> y sobre <strong>TCP port</strong> configurar el puerto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?ssl=1" data-lbwps-width="1181" data-lbwps-height="675" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17111" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?fit=1181%2C675&amp;ssl=1" data-orig-size="1181,675" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?fit=640%2C366&amp;ssl=1" class="aligncenter size-full wp-image-17111" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?resize=640%2C366&#038;ssl=1" alt="" width="640" height="366" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?w=1181&amp;ssl=1 1181w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?resize=595%2C340&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?resize=960%2C549&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_16.png?resize=768%2C439&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como vemos, ya podemos acceder a la configuración de OPNSense a través del puerto que hemos configurado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?ssl=1" data-lbwps-width="1096" data-lbwps-height="591" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17112" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?fit=1096%2C591&amp;ssl=1" data-orig-size="1096,591" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-17112" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?resize=640%2C345&#038;ssl=1" alt="" width="640" height="345" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?w=1096&amp;ssl=1 1096w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?resize=595%2C321&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?resize=960%2C518&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_17.png?resize=768%2C414&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La regla que había configurada por defecto al puerto 443, la podemos deshabilitar:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="512" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18-1536x411.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17113" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?fit=1914%2C512&amp;ssl=1" data-orig-size="1914,512" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?fit=640%2C171&amp;ssl=1" class="aligncenter size-full wp-image-17113" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?resize=640%2C171&#038;ssl=1" alt="" width="640" height="171" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?resize=595%2C159&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?resize=960%2C257&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?resize=768%2C205&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?resize=1536%2C411&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_18.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>A continuación, vamos a configurar esta regla que permita todo el tráfico entre las máquinas de la misma subred dónde vamos a ubicar las máquinas virtuales de Azure, para ello accedemos a <strong>Firewall &gt; Rules &gt; LAN</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="582" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29-1536x467.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17135" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?fit=1914%2C582&amp;ssl=1" data-orig-size="1914,582" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?fit=640%2C195&amp;ssl=1" class="aligncenter size-full wp-image-17135" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?resize=640%2C195&#038;ssl=1" alt="" width="640" height="195" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?resize=595%2C181&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?resize=960%2C292&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?resize=768%2C234&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?resize=1536%2C467&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_29.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?ssl=1" data-lbwps-width="1500" data-lbwps-height="737" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17136" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?fit=1500%2C737&amp;ssl=1" data-orig-size="1500,737" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?fit=640%2C315&amp;ssl=1" class="aligncenter size-full wp-image-17136" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?resize=640%2C314&#038;ssl=1" alt="" width="640" height="314" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?w=1500&amp;ssl=1 1500w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?resize=595%2C292&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?resize=960%2C472&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?resize=768%2C377&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_30.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?ssl=1" data-lbwps-width="1492" data-lbwps-height="814" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17137" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?fit=1492%2C814&amp;ssl=1" data-orig-size="1492,814" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?fit=640%2C349&amp;ssl=1" class="aligncenter size-full wp-image-17137" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?resize=640%2C349&#038;ssl=1" alt="" width="640" height="349" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?w=1492&amp;ssl=1 1492w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?resize=595%2C325&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?resize=960%2C524&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?resize=768%2C419&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_31.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a habilitar la salida a Internet para las máquinas que nos montemos en Azure, para ello, accedemos a <strong>Firewall &gt; NAT &gt; Outbound</strong> seleccionamos <strong>Hybrid outbound NAT rule generation</strong> y nos creamos esta regla para en NATEO:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="848" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22-1536x681.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17117" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?fit=1914%2C848&amp;ssl=1" data-orig-size="1914,848" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?fit=640%2C283&amp;ssl=1" class="aligncenter size-full wp-image-17117" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?resize=640%2C284&#038;ssl=1" alt="" width="640" height="284" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?resize=595%2C264&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?resize=960%2C425&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?resize=768%2C340&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?resize=1536%2C681&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_22.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?ssl=1" data-lbwps-width="1144" data-lbwps-height="875" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17118" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?fit=1144%2C875&amp;ssl=1" data-orig-size="1144,875" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?fit=640%2C489&amp;ssl=1" class="aligncenter size-full wp-image-17118" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?resize=640%2C490&#038;ssl=1" alt="" width="640" height="490" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?w=1144&amp;ssl=1 1144w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?resize=595%2C455&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?resize=960%2C734&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_23.png?resize=768%2C587&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?ssl=1" data-lbwps-width="1143" data-lbwps-height="929" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17119" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?fit=1143%2C929&amp;ssl=1" data-orig-size="1143,929" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?fit=640%2C520&amp;ssl=1" class="aligncenter size-full wp-image-17119" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?resize=640%2C520&#038;ssl=1" alt="" width="640" height="520" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?w=1143&amp;ssl=1 1143w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?resize=595%2C484&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?resize=960%2C780&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_24.png?resize=768%2C624&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Firewall &gt; Rules &gt; LAN</strong> nos debemos de crear esta regla de entrada (IN), esta regla va a permitir el tráfico saliente a Internet desde nuestra subred para máquinas virtuales en Azure, sólo permite el tráfico a Internet y no a otras IPs privadas, de ahí que marquemos el invert:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="616" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25-1536x494.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17120" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?fit=1915%2C616&amp;ssl=1" data-orig-size="1915,616" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?fit=640%2C206&amp;ssl=1" class="aligncenter size-full wp-image-17120" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?resize=640%2C206&#038;ssl=1" alt="" width="640" height="206" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?resize=595%2C191&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?resize=960%2C309&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?resize=768%2C247&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?resize=1536%2C494&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_25.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?ssl=1" data-lbwps-width="1502" data-lbwps-height="880" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17121" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?fit=1502%2C880&amp;ssl=1" data-orig-size="1502,880" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?fit=640%2C375&amp;ssl=1" class="aligncenter size-full wp-image-17121" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?resize=640%2C375&#038;ssl=1" alt="" width="640" height="375" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?w=1502&amp;ssl=1 1502w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?resize=595%2C349&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?resize=960%2C562&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?resize=768%2C450&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_26.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?ssl=1" data-lbwps-width="1511" data-lbwps-height="880" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17122" data-permalink="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/ciyaopns_27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?fit=1511%2C880&amp;ssl=1" data-orig-size="1511,880" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ciyaopns_27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?fit=640%2C373&amp;ssl=1" class="aligncenter wp-image-17122" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?resize=640%2C373&#038;ssl=1" alt="" width="640" height="373" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?w=1511&amp;ssl=1 1511w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?resize=595%2C347&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?resize=960%2C559&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?resize=768%2C447&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/ciyaopns_27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17095</post-id>	</item>
		<item>
		<title>Desplegar y configurar tabla de rutas UDR en Azure</title>
		<link>https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure</link>
					<comments>https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 18 Dec 2023 12:46:20 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17079</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo desplegar y configurar una tabla de rutas UDR (User Definition Routes) en Azure. La topología que vamos a utilizar será esta: Accedemos al Marketplace, buscamos Route table y damos a&#8230; <a href="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo desplegar y configurar una tabla de rutas UDR (User Definition Routes) en Azure.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos al Marketplace, buscamos Route table y damos a crear:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_01.png?ssl=1" data-lbwps-width="672" data-lbwps-height="624" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_01.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17080" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_01#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_01.png?fit=672%2C624&amp;ssl=1" data-orig-size="672,624" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_01" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_01.png?fit=640%2C594&amp;ssl=1" class="aligncenter size-full wp-image-17080" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_01.png?resize=640%2C594&#038;ssl=1" alt="" width="640" height="594" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_01.png?w=672&amp;ssl=1 672w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_01.png?resize=595%2C553&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Básico</strong> le indicamos el grupo de recursos, la región, le damos un nombre y le indicamos que propague las rutas de puerta de enlace:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?ssl=1" data-lbwps-width="973" data-lbwps-height="890" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17081" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_02#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?fit=973%2C890&amp;ssl=1" data-orig-size="973,890" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_02" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?fit=640%2C585&amp;ssl=1" class="aligncenter size-full wp-image-17081" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?resize=640%2C585&#038;ssl=1" alt="" width="640" height="585" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?w=973&amp;ssl=1 973w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?resize=595%2C544&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?resize=960%2C878&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_02.png?resize=768%2C702&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Etiquetas</strong> podemos configurar las que nos interesen:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?ssl=1" data-lbwps-width="1009" data-lbwps-height="911" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17082" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_03#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?fit=1009%2C911&amp;ssl=1" data-orig-size="1009,911" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_03" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?fit=640%2C578&amp;ssl=1" class="aligncenter size-full wp-image-17082" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?resize=640%2C578&#038;ssl=1" alt="" width="640" height="578" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?w=1009&amp;ssl=1 1009w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?resize=595%2C537&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?resize=960%2C867&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_03.png?resize=768%2C693&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Revisar y crear</strong> nos muestra un resumen sobre todo lo que le hemos configurado a la tabla de rutas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png?ssl=1" data-lbwps-width="937" data-lbwps-height="888" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17083" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_04#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png?fit=937%2C888&amp;ssl=1" data-orig-size="937,888" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_04" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png?fit=640%2C607&amp;ssl=1" class="aligncenter size-full wp-image-17083" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png?resize=640%2C607&#038;ssl=1" alt="" width="640" height="607" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png?w=937&amp;ssl=1 937w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png?resize=595%2C564&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_04.png?resize=768%2C728&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que se ha implementado correctamente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?ssl=1" data-lbwps-width="1595" data-lbwps-height="510" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05-1536x491.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17084" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_05#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?fit=1595%2C510&amp;ssl=1" data-orig-size="1595,510" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_05" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?fit=640%2C205&amp;ssl=1" class="aligncenter size-full wp-image-17084" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?resize=640%2C205&#038;ssl=1" alt="" width="640" height="205" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?w=1595&amp;ssl=1 1595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?resize=595%2C190&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?resize=960%2C307&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?resize=768%2C246&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?resize=1536%2C491&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_05.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos al recurso y sobre subredes vamos a asociar la subred LAN que configuramos anteriormente, esta subred es dónde vamos a ubicar las máquinas virtuales de nuestra infraestructura en Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?ssl=1" data-lbwps-width="1699" data-lbwps-height="489" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06-1536x442.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17085" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_06#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?fit=1699%2C489&amp;ssl=1" data-orig-size="1699,489" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_06" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?fit=640%2C184&amp;ssl=1" class="aligncenter size-full wp-image-17085" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?resize=640%2C184&#038;ssl=1" alt="" width="640" height="184" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?w=1699&amp;ssl=1 1699w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?resize=595%2C171&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?resize=960%2C276&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?resize=768%2C221&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?resize=1536%2C442&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_06.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?ssl=1" data-lbwps-width="1900" data-lbwps-height="891" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07-1536x720.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17086" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_07#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?fit=1900%2C891&amp;ssl=1" data-orig-size="1900,891" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_07" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?fit=640%2C300&amp;ssl=1" class="aligncenter size-full wp-image-17086" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?resize=640%2C300&#038;ssl=1" alt="" width="640" height="300" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?w=1900&amp;ssl=1 1900w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?resize=595%2C279&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?resize=960%2C450&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?resize=768%2C360&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?resize=1536%2C720&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_07.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya la tenemos asociada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?ssl=1" data-lbwps-width="1700" data-lbwps-height="481" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08-1536x435.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17087" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_08#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?fit=1700%2C481&amp;ssl=1" data-orig-size="1700,481" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_08" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?fit=640%2C181&amp;ssl=1" class="aligncenter size-full wp-image-17087" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?resize=640%2C181&#038;ssl=1" alt="" width="640" height="181" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?w=1700&amp;ssl=1 1700w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?resize=595%2C168&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?resize=960%2C272&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?resize=768%2C217&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?resize=1536%2C435&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_08.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a configurar las rutas, para ello, accedemos a <strong>Rutas &gt; Agregar</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?ssl=1" data-lbwps-width="1774" data-lbwps-height="450" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09-1536x390.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17088" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_09#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?fit=1774%2C450&amp;ssl=1" data-orig-size="1774,450" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_09" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?fit=640%2C163&amp;ssl=1" class="aligncenter size-full wp-image-17088" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?resize=640%2C162&#038;ssl=1" alt="" width="640" height="162" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?w=1774&amp;ssl=1 1774w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?resize=595%2C151&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?resize=960%2C244&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?resize=768%2C195&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?resize=1536%2C390&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_09.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La primera ruta que vamos a agregar, será la ruta por defecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="893" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15-1536x716.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17132" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?fit=1915%2C893&amp;ssl=1" data-orig-size="1915,893" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?fit=640%2C299&amp;ssl=1" class="aligncenter size-full wp-image-17132" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?resize=640%2C298&#038;ssl=1" alt="" width="640" height="298" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?resize=595%2C277&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?resize=960%2C448&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?resize=768%2C358&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?resize=1536%2C716&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La siguiente ruta será para el acceso a la subred dónde vamos a ubicar nuestras máquinas virtuales:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="890" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11-1536x714.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17090" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?fit=1914%2C890&amp;ssl=1" data-orig-size="1914,890" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-17090" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?resize=640%2C298&#038;ssl=1" alt="" width="640" height="298" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?resize=595%2C277&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?resize=960%2C446&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?resize=768%2C357&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?resize=1536%2C714&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos las rutas agregadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="446" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16-1536x358.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17133" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?fit=1914%2C446&amp;ssl=1" data-orig-size="1914,446" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?fit=640%2C149&amp;ssl=1" class="aligncenter size-full wp-image-17133" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?resize=640%2C149&#038;ssl=1" alt="" width="640" height="149" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?resize=595%2C139&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?resize=960%2C224&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?resize=768%2C179&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?resize=1536%2C358&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez configurada la tabla de rutas, accedemos a nuestro OPNSense en Azure, y nos vamos a crear estas dos rutas estáticas, la primera es la ruta por defecto, para que todo lo que no se encuentre en la tabla de enrutamiento del OPNSense lo envíe por la interface WAN al gateway de la subred Untrusted, y la segunda ruta son para servicios internos de Azure, para que lo envíe por la interface LAN al gateway de la subred Trusted:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="608" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13-1536x488.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17092" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/dyctdrudrea_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?fit=1914%2C608&amp;ssl=1" data-orig-size="1914,608" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrudrea_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?fit=640%2C203&amp;ssl=1" class="aligncenter size-full wp-image-17092" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?resize=640%2C203&#038;ssl=1" alt="" width="640" height="203" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?resize=595%2C189&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?resize=960%2C305&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?resize=768%2C244&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?resize=1536%2C488&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dyctdrudrea_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17079</post-id>	</item>
		<item>
		<title>Despliegue Firewall OPNSense en Azure</title>
		<link>https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure</link>
					<comments>https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 11 Dec 2023 07:54:47 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<category><![CDATA[TIC]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17061</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo desplegar un firewall OPNSense en Azure con dos interfaces de red. La topología que vamos a utilizar será esta: Lo primero que vamos a realizar es acceder a este link&#8230; <a href="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo desplegar un firewall OPNSense en Azure con dos interfaces de red.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar es acceder <a href="https://github.com/dmauser/opnazure" target="_blank" rel="noopener">a este link de dmauser</a>, aquí vamos a encontrar un desarrollo para desplegar un firewall OPNSense sobre FreeBSD con dos NICs:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?ssl=1" data-lbwps-width="1230" data-lbwps-height="758" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17062" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_01#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?fit=1230%2C758&amp;ssl=1" data-orig-size="1230,758" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_01" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?fit=640%2C395&amp;ssl=1" class="aligncenter size-full wp-image-17062" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?resize=640%2C394&#038;ssl=1" alt="" width="640" height="394" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?w=1230&amp;ssl=1 1230w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?resize=595%2C367&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?resize=960%2C592&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_01.png?resize=768%2C473&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Se nos abrirá esta plantilla para el despliegue de OPNSense, sobre <strong>Deployment Scenarios</strong> le indicamos la suscripción, el grupo de recursos, la región y muy importante OPNSense Scenario que le indicamos <strong>TwoNics</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?ssl=1" data-lbwps-width="1025" data-lbwps-height="891" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17063" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_02#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?fit=1025%2C891&amp;ssl=1" data-orig-size="1025,891" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_02" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?fit=640%2C556&amp;ssl=1" class="aligncenter size-full wp-image-17063" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?resize=640%2C556&#038;ssl=1" alt="" width="640" height="556" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?w=1025&amp;ssl=1 1025w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?resize=595%2C517&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?resize=960%2C834&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_02.png?resize=768%2C668&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Virtual Machine Settings</strong> le indicamos el nombre y tamaño de máquina, la URL para la descarga del script, la versión de OPNSense y la versión del agente de Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?ssl=1" data-lbwps-width="970" data-lbwps-height="890" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17064" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_03#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?fit=970%2C890&amp;ssl=1" data-orig-size="970,890" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_03" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?fit=640%2C587&amp;ssl=1" class="aligncenter size-full wp-image-17064" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?resize=640%2C587&#038;ssl=1" alt="" width="640" height="587" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?w=970&amp;ssl=1 970w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?resize=595%2C546&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?resize=960%2C881&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_03.png?resize=768%2C705&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para el despliegue y la configuración de la red virtual en Azure, vamos a seleccionar un espacio de direcciones en la red virtual, y le configuraremos las distintas subredes que va a utilizar el firewall y la que utilizaremos como la red local de Azure dónde se conectarán nuestras máquinas virtuales (ésta última la configuraremos a posteriori de la plantilla de despliegue):</li>
<li>Red virtual: <strong>opnsense-vnet </strong>192.168.128.0/18</li>
<li>Subred Externa: <strong>Un</strong><strong>trusted-Subnet </strong>192.168.191.0/27</li>
<li>Subred Interna: <strong>Trusted-Subnet </strong>192.168.191.32/27</li>
<li>LAN Azure: <strong>Sub</strong><strong>netLAN-192_168_128_0-24</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?ssl=1" data-lbwps-width="1010" data-lbwps-height="892" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17065" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_04#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?fit=1010%2C892&amp;ssl=1" data-orig-size="1010,892" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_04" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?fit=640%2C565&amp;ssl=1" class="aligncenter size-full wp-image-17065" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?resize=640%2C565&#038;ssl=1" alt="" width="640" height="565" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?w=1010&amp;ssl=1 1010w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?resize=595%2C525&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?resize=960%2C848&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_04.png?resize=768%2C678&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Virtual Network Settings</strong> estas serían las configuraciones para nuestra infraestructura:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?ssl=1" data-lbwps-width="969" data-lbwps-height="890" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17066" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_05#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?fit=969%2C890&amp;ssl=1" data-orig-size="969,890" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_05" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?fit=640%2C588&amp;ssl=1" class="aligncenter size-full wp-image-17066" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?resize=640%2C588&#038;ssl=1" alt="" width="640" height="588" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?w=969&amp;ssl=1 969w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?resize=595%2C546&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?resize=960%2C882&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_05.png?resize=768%2C705&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Revisar y crear</strong>, nos muestra un resumen de todas las configuraciones realizadas, comenzamos a <strong>Crear</strong> todos los recursos de la plantilla OPNSense deployment:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?ssl=1" data-lbwps-width="993" data-lbwps-height="1042" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17067" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_06#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?fit=993%2C1042&amp;ssl=1" data-orig-size="993,1042" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_06" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?fit=640%2C671&amp;ssl=1" class="aligncenter size-full wp-image-17067" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?resize=640%2C672&#038;ssl=1" alt="" width="640" height="672" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?w=993&amp;ssl=1 993w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?resize=595%2C624&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?resize=960%2C1007&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_06.png?resize=768%2C806&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, comienza el despliegue:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?ssl=1" data-lbwps-width="1592" data-lbwps-height="499" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07-1536x481.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17068" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_07#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?fit=1592%2C499&amp;ssl=1" data-orig-size="1592,499" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_07" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?fit=640%2C201&amp;ssl=1" class="aligncenter size-full wp-image-17068" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?resize=640%2C201&#038;ssl=1" alt="" width="640" height="201" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?w=1592&amp;ssl=1 1592w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?resize=595%2C186&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?resize=960%2C301&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?resize=768%2C241&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?resize=1536%2C481&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_07.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que ya ha terminado y se ha implementado correctamente, podemos ver, los distintos recursos que ha creado el despliegue de esta plantilla:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?ssl=1" data-lbwps-width="1613" data-lbwps-height="734" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08-1536x699.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17069" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_08#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?fit=1613%2C734&amp;ssl=1" data-orig-size="1613,734" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_08" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?fit=640%2C291&amp;ssl=1" class="aligncenter size-full wp-image-17069" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?resize=640%2C291&#038;ssl=1" alt="" width="640" height="291" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?w=1613&amp;ssl=1 1613w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?resize=595%2C271&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?resize=960%2C437&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?resize=768%2C349&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?resize=1536%2C699&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_08.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora accedemos al grupo de recursos y clicamos sobre la máquina virtual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?ssl=1" data-lbwps-width="1714" data-lbwps-height="683" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09-1536x612.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17070" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_09#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?fit=1714%2C683&amp;ssl=1" data-orig-size="1714,683" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_09" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?fit=640%2C255&amp;ssl=1" class="aligncenter size-full wp-image-17070" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?resize=640%2C255&#038;ssl=1" alt="" width="640" height="255" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?w=1714&amp;ssl=1 1714w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?resize=595%2C237&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?resize=960%2C383&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?resize=768%2C306&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?resize=1536%2C612&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_09.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la máquina virtual accedemos a Redes y cómo podemos ver tenemos dos interfaces de red, una es la interface WAN de OPNSense que tiene una IP privada y otra pública, y la otra es la interface LAN que solo tiene una IP privada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?ssl=1" data-lbwps-width="1911" data-lbwps-height="641" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10-1536x515.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17071" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?fit=1911%2C641&amp;ssl=1" data-orig-size="1911,641" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?fit=640%2C215&amp;ssl=1" class="aligncenter size-full wp-image-17071" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?resize=640%2C215&#038;ssl=1" alt="" width="640" height="215" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?w=1911&amp;ssl=1 1911w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?resize=595%2C200&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?resize=960%2C322&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?resize=768%2C258&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?resize=1536%2C515&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?ssl=1" data-lbwps-width="1890" data-lbwps-height="634" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11-1536x515.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17072" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?fit=1890%2C634&amp;ssl=1" data-orig-size="1890,634" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?fit=640%2C215&amp;ssl=1" class="aligncenter size-full wp-image-17072" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?resize=640%2C215&#038;ssl=1" alt="" width="640" height="215" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?w=1890&amp;ssl=1 1890w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?resize=595%2C200&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?resize=960%2C322&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?resize=768%2C258&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?resize=1536%2C515&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Debemos de configurar las IPs privadas como estáticas, tanto la WAN cono la LAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?ssl=1" data-lbwps-width="1712" data-lbwps-height="671" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12-1536x602.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17073" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?fit=1712%2C671&amp;ssl=1" data-orig-size="1712,671" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?fit=640%2C251&amp;ssl=1" class="aligncenter size-full wp-image-17073" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?resize=640%2C251&#038;ssl=1" alt="" width="640" height="251" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?w=1712&amp;ssl=1 1712w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?resize=595%2C233&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?resize=960%2C376&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?resize=768%2C301&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?resize=1536%2C602&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?ssl=1" data-lbwps-width="1675" data-lbwps-height="612" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13-1536x561.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17074" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?fit=1675%2C612&amp;ssl=1" data-orig-size="1675,612" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?fit=640%2C234&amp;ssl=1" class="aligncenter size-full wp-image-17074" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?resize=640%2C234&#038;ssl=1" alt="" width="640" height="234" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?w=1675&amp;ssl=1 1675w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?resize=595%2C217&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?resize=960%2C351&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?resize=768%2C281&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?resize=1536%2C561&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para acceder al firewall accedemos a través de su IP pública, https://PublicIP, las credenciales por defecto son root/opnsense, en un post posterior veremos cómo se cambia:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?ssl=1" data-lbwps-width="1231" data-lbwps-height="597" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17075" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?fit=1231%2C597&amp;ssl=1" data-orig-size="1231,597" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?fit=640%2C311&amp;ssl=1" class="aligncenter size-full wp-image-17075" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?resize=640%2C310&#038;ssl=1" alt="" width="640" height="310" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?w=1231&amp;ssl=1 1231w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?resize=595%2C289&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?resize=960%2C466&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_14.png?resize=768%2C372&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Este sería el Dashboard principal de OPNsense, en los próximos post realizaremos las configuraciones básicas y avanzadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?ssl=1" data-lbwps-width="1896" data-lbwps-height="866" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15-1536x702.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17076" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?fit=1896%2C866&amp;ssl=1" data-orig-size="1896,866" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?fit=640%2C292&amp;ssl=1" class="aligncenter size-full wp-image-17076" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?resize=640%2C292&#038;ssl=1" alt="" width="640" height="292" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?w=1896&amp;ssl=1 1896w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?resize=595%2C272&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?resize=960%2C438&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?resize=768%2C351&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?resize=1536%2C702&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como comentamos anteriormente, vamos a configurar la red local de Azure dónde se conectarán nuestras máquinas virtuales, LAN Azure: <strong>Sub</strong><strong>netLAN-192_168_128_0-24</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?ssl=1" data-lbwps-width="1819" data-lbwps-height="689" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16-1536x582.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17077" data-permalink="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/dopnsenseaz_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?fit=1819%2C689&amp;ssl=1" data-orig-size="1819,689" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dopnsenseaz_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?fit=640%2C243&amp;ssl=1" class="aligncenter size-full wp-image-17077" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?resize=640%2C242&#038;ssl=1" alt="" width="640" height="242" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?w=1819&amp;ssl=1 1819w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?resize=595%2C225&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?resize=960%2C364&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?resize=768%2C291&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?resize=1536%2C582&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/dopnsenseaz_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure/feed</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17061</post-id>	</item>
		<item>
		<title>Despliegue y configuración de firewall OPNSense en Azure</title>
		<link>https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure</link>
					<comments>https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 04 Dec 2023 11:46:02 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17053</guid>

					<description><![CDATA[Hola a tod@s, En estos posts vamos a ver cómo desplegar y configurar un firewall OPNSense en Azure. La topología que vamos a utilizar será esta: &#160; Este post lo vamos a dividir en: Despliegue Firewall OPNSense en Azure Desplegar&#8230; <a href="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En estos posts vamos a ver cómo desplegar y configurar un firewall OPNSense en Azure.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Este post lo vamos a dividir en:</p>
<ul>
<li><a href="https://blog.ragasys.es/despliegue-firewall-opnsense-en-azure" target="_blank" rel="noopener">Despliegue Firewall OPNSense en Azure</a></li>
<li><a href="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-udr-en-azure" target="_blank" rel="noopener">Desplegar y configurar tabla de rutas UDR en Azure</a></li>
<li><a href="https://blog.ragasys.es/configuracion-inicial-y-avanzada-opnsense" target="_blank" rel="noopener">Configuración inicial y avanzada OPNSense</a></li>
<li><a href="https://blog.ragasys.es/opnsense-configurar-categorias-y-alias" target="_blank" rel="noopener">Configurar Categorías y Alias</a></li>
<li><a href="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-opnsense-azure" target="_blank" rel="noopener">VPN site to site IPSEC entre Fortigate on-premise y OPNSense Azure</a></li>
<li><a href="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense" target="_blank" rel="noopener">Configurar servidor LDAP en OPNSense</a></li>
<li><a href="https://blog.ragasys.es/acceso-administracion-web-y-ssh-opnsense" target="_blank" rel="noopener">Acceso administración Web y SSH OPNSense</a></li>
</ul>
<p>Saludos.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17053</post-id>	</item>
		<item>
		<title>VPN site to site IPSEC entre Fortigate on-premise y Fortigate Azure</title>
		<link>https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure</link>
					<comments>https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 17 Jul 2023 07:16:51 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=16450</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo configurar una VPN site to site IPSEC entre Fortigate on-premise y Fortigate Azure. La topología que vamos a utilizar será esta: Lo primero que vamos a realizar será acceder a&#8230; <a href="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo configurar una VPN site to site IPSEC entre Fortigate on-premise y Fortigate Azure.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?ssl=1" data-lbwps-width="1133" data-lbwps-height="730" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16451" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?fit=1133%2C730&amp;ssl=1" data-orig-size="1133,730" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?fit=640%2C413&amp;ssl=1" class="aligncenter size-full wp-image-16451" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?resize=640%2C412&#038;ssl=1" alt="" width="640" height="412" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?w=1133&amp;ssl=1 1133w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?resize=595%2C383&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?resize=960%2C619&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_1.png?resize=768%2C495&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será acceder a nuestro Fortigate on-premise, y sobre <strong>VPN &gt; Túneles IPsec &gt; Crear nuevo &gt; IPsec Tunnel</strong>, empezaremos a crear el primer extremo de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?ssl=1" data-lbwps-width="1300" data-lbwps-height="429" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16452" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?fit=1300%2C429&amp;ssl=1" data-orig-size="1300,429" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?fit=640%2C211&amp;ssl=1" class="aligncenter size-full wp-image-16452" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?resize=640%2C211&#038;ssl=1" alt="" width="640" height="211" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?w=1300&amp;ssl=1 1300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?resize=595%2C196&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?resize=960%2C317&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_2.png?resize=768%2C253&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Configuración de VPN</strong> seleccionamos <strong>Personalizar</strong> y le indicamos un <strong>Nombre</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?ssl=1" data-lbwps-width="1348" data-lbwps-height="356" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16453" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?fit=1348%2C356&amp;ssl=1" data-orig-size="1348,356" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-16453" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?w=1348&amp;ssl=1 1348w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?resize=960%2C254&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la parte de <strong>Red</strong> configuramos la IP estática que tenemos asignada al Fortigate de Azure y la interface de salida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png?ssl=1" data-lbwps-width="958" data-lbwps-height="629" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16454" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png?fit=958%2C629&amp;ssl=1" data-orig-size="958,629" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png?fit=640%2C420&amp;ssl=1" class="aligncenter size-full wp-image-16454" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png?resize=640%2C420&#038;ssl=1" alt="" width="640" height="420" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png?w=958&amp;ssl=1 958w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png?resize=595%2C391&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_4.png?resize=768%2C504&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Autenticación</strong> le indicamos la Key compartida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?ssl=1" data-lbwps-width="1009" data-lbwps-height="291" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16455" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?fit=1009%2C291&amp;ssl=1" data-orig-size="1009,291" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?fit=640%2C185&amp;ssl=1" class="aligncenter size-full wp-image-16455" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?resize=640%2C185&#038;ssl=1" alt="" width="640" height="185" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?w=1009&amp;ssl=1 1009w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?resize=595%2C172&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?resize=960%2C277&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_5.png?resize=768%2C221&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos la <strong>fase 1</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png?ssl=1" data-lbwps-width="959" data-lbwps-height="480" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16456" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png?fit=959%2C480&amp;ssl=1" data-orig-size="959,480" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png?fit=640%2C320&amp;ssl=1" class="aligncenter size-full wp-image-16456" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png?resize=640%2C320&#038;ssl=1" alt="" width="640" height="320" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png?w=959&amp;ssl=1 959w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png?resize=595%2C298&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_6.png?resize=768%2C384&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos la <strong>fase2</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?ssl=1" data-lbwps-width="1256" data-lbwps-height="1008" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16457" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?fit=1256%2C1008&amp;ssl=1" data-orig-size="1256,1008" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?fit=640%2C513&amp;ssl=1" class="aligncenter size-full wp-image-16457" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?resize=640%2C514&#038;ssl=1" alt="" width="640" height="514" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?w=1256&amp;ssl=1 1256w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?resize=595%2C478&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?resize=960%2C770&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_7.png?resize=768%2C616&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya tenemos el primer extremo de la VPN configurado, el de la parte on-premise:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?ssl=1" data-lbwps-width="1653" data-lbwps-height="351" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8-1536x326.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16458" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?fit=1653%2C351&amp;ssl=1" data-orig-size="1653,351" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?fit=640%2C136&amp;ssl=1" class="aligncenter size-full wp-image-16458" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?resize=640%2C136&#038;ssl=1" alt="" width="640" height="136" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?w=1653&amp;ssl=1 1653w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?resize=595%2C126&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?resize=960%2C204&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?resize=768%2C163&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?resize=1536%2C326&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a crear las <strong>políticas</strong>:</li>
</ul>
<ul>
<li>Accedemos a <strong>Políticas y objetos&gt; Política IPv4 &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png?ssl=1" data-lbwps-width="952" data-lbwps-height="439" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16459" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png?fit=952%2C439&amp;ssl=1" data-orig-size="952,439" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png?fit=640%2C295&amp;ssl=1" class="aligncenter size-full wp-image-16459" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png?resize=640%2C295&#038;ssl=1" alt="" width="640" height="295" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png?w=952&amp;ssl=1 952w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png?resize=595%2C274&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_9.png?resize=768%2C354&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Creamos una política para la conexión de sitio a sitio que permita el tráfico saliente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?ssl=1" data-lbwps-width="1235" data-lbwps-height="1038" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16460" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?fit=1235%2C1038&amp;ssl=1" data-orig-size="1235,1038" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?fit=640%2C538&amp;ssl=1" class="aligncenter size-full wp-image-16460" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?resize=640%2C538&#038;ssl=1" alt="" width="640" height="538" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?w=1235&amp;ssl=1 1235w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?resize=595%2C500&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?resize=960%2C807&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_10.png?resize=768%2C645&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Creamos otra política para la conexión de sitio a sitio que permita el tráfico entrante:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?ssl=1" data-lbwps-width="1248" data-lbwps-height="1040" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16461" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?fit=1248%2C1040&amp;ssl=1" data-orig-size="1248,1040" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?fit=640%2C533&amp;ssl=1" class="aligncenter size-full wp-image-16461" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?resize=640%2C533&#038;ssl=1" alt="" width="640" height="533" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?w=1248&amp;ssl=1 1248w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?resize=595%2C496&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?resize=960%2C800&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_11.png?resize=768%2C640&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí podemos ver las políticas creadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?ssl=1" data-lbwps-width="1844" data-lbwps-height="558" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12-1536x465.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16462" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?fit=1844%2C558&amp;ssl=1" data-orig-size="1844,558" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?fit=640%2C193&amp;ssl=1" class="aligncenter size-full wp-image-16462" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?resize=640%2C194&#038;ssl=1" alt="" width="640" height="194" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?w=1844&amp;ssl=1 1844w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?resize=595%2C180&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?resize=960%2C290&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?resize=768%2C232&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?resize=1536%2C465&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora creamos la ruta estática hacia Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?ssl=1" data-lbwps-width="1273" data-lbwps-height="511" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16463" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?fit=1273%2C511&amp;ssl=1" data-orig-size="1273,511" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?fit=640%2C257&amp;ssl=1" class="aligncenter size-full wp-image-16463" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?resize=640%2C257&#038;ssl=1" alt="" width="640" height="257" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?w=1273&amp;ssl=1 1273w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?resize=595%2C239&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?resize=960%2C385&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_13.png?resize=768%2C308&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?ssl=1" data-lbwps-width="1775" data-lbwps-height="412" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14-1536x357.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16464" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?fit=1775%2C412&amp;ssl=1" data-orig-size="1775,412" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?fit=640%2C149&amp;ssl=1" class="aligncenter size-full wp-image-16464" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?resize=640%2C149&#038;ssl=1" alt="" width="640" height="149" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?w=1775&amp;ssl=1 1775w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?resize=595%2C138&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?resize=960%2C223&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?resize=768%2C178&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?resize=1536%2C357&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo segundo que vamos a realizar será acceder a nuestro Fortigate en Azure, y sobre <strong>VPN &gt; Túneles IPsec &gt; Crear nuevo &gt; IPsec Tunnel</strong>, empezaremos a crear el segundo extremo de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?ssl=1" data-lbwps-width="1245" data-lbwps-height="298" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16465" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?fit=1245%2C298&amp;ssl=1" data-orig-size="1245,298" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?fit=640%2C153&amp;ssl=1" class="aligncenter size-full wp-image-16465" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?resize=640%2C153&#038;ssl=1" alt="" width="640" height="153" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?w=1245&amp;ssl=1 1245w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?resize=595%2C142&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?resize=960%2C230&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_15.png?resize=768%2C184&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Configuración de VPN</strong> seleccionamos <strong>Personalizar</strong> y le indicamos un <strong>Nombre</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?ssl=1" data-lbwps-width="1355" data-lbwps-height="311" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16466" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?fit=1355%2C311&amp;ssl=1" data-orig-size="1355,311" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?fit=640%2C147&amp;ssl=1" class="aligncenter size-full wp-image-16466" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?resize=640%2C147&#038;ssl=1" alt="" width="640" height="147" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?w=1355&amp;ssl=1 1355w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?resize=595%2C137&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?resize=960%2C220&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?resize=768%2C176&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la parte de <strong>Red</strong> configuramos la IP estática que tenemos asignada al Fortigate on-premise y la interface de salida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?ssl=1" data-lbwps-width="993" data-lbwps-height="850" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16467" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?fit=993%2C850&amp;ssl=1" data-orig-size="993,850" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?fit=640%2C548&amp;ssl=1" class="aligncenter size-full wp-image-16467" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?resize=640%2C548&#038;ssl=1" alt="" width="640" height="548" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?w=993&amp;ssl=1 993w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?resize=595%2C509&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?resize=960%2C822&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_17.png?resize=768%2C657&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Autenticación</strong> le indicamos la Key compartida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png?ssl=1" data-lbwps-width="956" data-lbwps-height="289" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16468" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png?fit=956%2C289&amp;ssl=1" data-orig-size="956,289" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png?fit=640%2C193&amp;ssl=1" class="aligncenter size-full wp-image-16468" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png?resize=640%2C193&#038;ssl=1" alt="" width="640" height="193" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png?w=956&amp;ssl=1 956w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png?resize=595%2C180&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_18.png?resize=768%2C232&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos la <strong>fase 1</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png?ssl=1" data-lbwps-width="958" data-lbwps-height="596" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16469" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png?fit=958%2C596&amp;ssl=1" data-orig-size="958,596" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png?fit=640%2C398&amp;ssl=1" class="aligncenter size-full wp-image-16469" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png?resize=640%2C398&#038;ssl=1" alt="" width="640" height="398" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png?w=958&amp;ssl=1 958w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png?resize=595%2C370&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_19.png?resize=768%2C478&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos la <strong>fase2</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?ssl=1" data-lbwps-width="1088" data-lbwps-height="956" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16470" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?fit=1088%2C956&amp;ssl=1" data-orig-size="1088,956" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?fit=640%2C563&amp;ssl=1" class="aligncenter size-full wp-image-16470" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?resize=640%2C562&#038;ssl=1" alt="" width="640" height="562" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?w=1088&amp;ssl=1 1088w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?resize=595%2C523&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?resize=960%2C844&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_20.png?resize=768%2C675&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya tenemos el segundo extremo de la VPN configurado, el de la parte de Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?ssl=1" data-lbwps-width="1675" data-lbwps-height="255" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21-1536x234.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16471" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?fit=1675%2C255&amp;ssl=1" data-orig-size="1675,255" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?fit=640%2C97&amp;ssl=1" class="aligncenter size-full wp-image-16471" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?resize=640%2C97&#038;ssl=1" alt="" width="640" height="97" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?w=1675&amp;ssl=1 1675w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?resize=595%2C91&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?resize=960%2C146&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?resize=768%2C117&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?resize=1536%2C234&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_21.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a crear las <strong>políticas</strong>:</li>
</ul>
<ul>
<li>Accedemos a <strong>Políticas y objetos&gt; Firewall Policy&gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?ssl=1" data-lbwps-width="1835" data-lbwps-height="260" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22-1536x218.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16472" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?fit=1835%2C260&amp;ssl=1" data-orig-size="1835,260" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?fit=640%2C91&amp;ssl=1" class="aligncenter size-full wp-image-16472" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?resize=640%2C91&#038;ssl=1" alt="" width="640" height="91" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?w=1835&amp;ssl=1 1835w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?resize=595%2C84&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?resize=960%2C136&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?resize=768%2C109&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?resize=1536%2C218&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_22.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Creamos una política para la conexión de sitio a sitio que permita el tráfico saliente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?ssl=1" data-lbwps-width="1234" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16473" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?fit=1234%2C1079&amp;ssl=1" data-orig-size="1234,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?fit=640%2C559&amp;ssl=1" class="aligncenter size-full wp-image-16473" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?resize=640%2C560&#038;ssl=1" alt="" width="640" height="560" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?w=1234&amp;ssl=1 1234w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?resize=595%2C520&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?resize=960%2C839&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_23.png?resize=768%2C672&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Creamos otra política para la conexión de sitio a sitio que permita el tráfico entrante:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?ssl=1" data-lbwps-width="1225" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16474" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?fit=1225%2C1079&amp;ssl=1" data-orig-size="1225,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?fit=640%2C564&amp;ssl=1" class="aligncenter size-full wp-image-16474" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?resize=640%2C564&#038;ssl=1" alt="" width="640" height="564" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?w=1225&amp;ssl=1 1225w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?resize=595%2C524&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?resize=960%2C846&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_24.png?resize=768%2C676&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí podemos ver las políticas creadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?ssl=1" data-lbwps-width="1868" data-lbwps-height="316" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25-1536x260.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16475" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?fit=1868%2C316&amp;ssl=1" data-orig-size="1868,316" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?fit=640%2C108&amp;ssl=1" class="aligncenter size-full wp-image-16475" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?resize=640%2C108&#038;ssl=1" alt="" width="640" height="108" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?w=1868&amp;ssl=1 1868w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?resize=595%2C101&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?resize=960%2C162&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?resize=768%2C130&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?resize=1536%2C260&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_25.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora creamos la ruta estática hacia nuestro entorno on-premise:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?ssl=1" data-lbwps-width="1246" data-lbwps-height="731" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16476" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?fit=1246%2C731&amp;ssl=1" data-orig-size="1246,731" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?fit=640%2C375&amp;ssl=1" class="aligncenter size-full wp-image-16476" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?resize=640%2C375&#038;ssl=1" alt="" width="640" height="375" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?w=1246&amp;ssl=1 1246w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?resize=595%2C349&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?resize=960%2C563&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_26.png?resize=768%2C451&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?ssl=1" data-lbwps-width="1801" data-lbwps-height="324" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27-1536x276.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16477" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?fit=1801%2C324&amp;ssl=1" data-orig-size="1801,324" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?fit=640%2C115&amp;ssl=1" class="aligncenter size-full wp-image-16477" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?resize=640%2C115&#038;ssl=1" alt="" width="640" height="115" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?w=1801&amp;ssl=1 1801w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?resize=595%2C107&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?resize=960%2C173&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?resize=768%2C138&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?resize=1536%2C276&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos el túnel IPSEC levantado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?ssl=1" data-lbwps-width="1661" data-lbwps-height="428" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28-1536x396.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16478" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?fit=1661%2C428&amp;ssl=1" data-orig-size="1661,428" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?fit=640%2C165&amp;ssl=1" class="aligncenter size-full wp-image-16478" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?resize=640%2C165&#038;ssl=1" alt="" width="640" height="165" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?w=1661&amp;ssl=1 1661w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?resize=595%2C153&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?resize=960%2C247&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?resize=768%2C198&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?resize=1536%2C396&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_28.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?ssl=1" data-lbwps-width="1657" data-lbwps-height="260" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29-1536x241.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16479" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?fit=1657%2C260&amp;ssl=1" data-orig-size="1657,260" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?fit=640%2C101&amp;ssl=1" class="aligncenter size-full wp-image-16479" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?resize=640%2C100&#038;ssl=1" alt="" width="640" height="100" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?w=1657&amp;ssl=1 1657w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?resize=595%2C93&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?resize=960%2C151&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?resize=768%2C121&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?resize=1536%2C241&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_29.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para verificar que todo funciona correctamente vamos a realizar un ping desde una máquina on-premise a una máquina en Azure y viceversa:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?ssl=1" data-lbwps-width="1697" data-lbwps-height="635" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30-1536x575.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16480" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?fit=1697%2C635&amp;ssl=1" data-orig-size="1697,635" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?fit=640%2C239&amp;ssl=1" class="aligncenter size-full wp-image-16480" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?resize=640%2C239&#038;ssl=1" alt="" width="640" height="239" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?w=1697&amp;ssl=1 1697w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?resize=595%2C223&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?resize=960%2C359&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?resize=768%2C287&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?resize=1536%2C575&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_30.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?ssl=1" data-lbwps-width="997" data-lbwps-height="458" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16481" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?fit=997%2C458&amp;ssl=1" data-orig-size="997,458" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?fit=640%2C294&amp;ssl=1" class="aligncenter size-full wp-image-16481" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?resize=640%2C294&#038;ssl=1" alt="" width="640" height="294" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?w=997&amp;ssl=1 997w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?resize=595%2C273&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?resize=960%2C441&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_31.png?resize=768%2C353&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?ssl=1" data-lbwps-width="1036" data-lbwps-height="754" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16482" data-permalink="https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/vstsiefopyfa_32#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?fit=1036%2C754&amp;ssl=1" data-orig-size="1036,754" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="vstsiefopyfa_32" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?fit=640%2C466&amp;ssl=1" class="aligncenter size-full wp-image-16482" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?resize=640%2C466&#038;ssl=1" alt="" width="640" height="466" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?w=1036&amp;ssl=1 1036w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?resize=595%2C433&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?resize=960%2C699&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/vstsiefopyfa_32.png?resize=768%2C559&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/vpn-site-to-site-ipsec-entre-fortigate-on-premise-y-fortigate-azure/feed</wfw:commentRss>
			<slash:comments>6</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">16450</post-id>	</item>
		<item>
		<title>Desplegar y configurar tabla de rutas en Azure</title>
		<link>https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure</link>
					<comments>https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 10 Jul 2023 09:54:10 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=16428</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo desplegar y configurar una tabla de rutas en Azure. La topología que vamos a utilizar será esta: Accedemos al Marketplace, buscamos Route table y damos a crear: Sobre Básico le&#8230; <a href="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo desplegar y configurar una tabla de rutas en Azure.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?ssl=1" data-lbwps-width="1133" data-lbwps-height="730" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16429" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?fit=1133%2C730&amp;ssl=1" data-orig-size="1133,730" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?fit=640%2C413&amp;ssl=1" class="aligncenter size-full wp-image-16429" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?resize=640%2C412&#038;ssl=1" alt="" width="640" height="412" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?w=1133&amp;ssl=1 1133w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?resize=595%2C383&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?resize=960%2C619&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_1.png?resize=768%2C495&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos al Marketplace, buscamos Route table y damos a crear:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_2.png?ssl=1" data-lbwps-width="672" data-lbwps-height="624" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16430" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_2.png?fit=672%2C624&amp;ssl=1" data-orig-size="672,624" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_2.png?fit=640%2C594&amp;ssl=1" class="aligncenter size-full wp-image-16430" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_2.png?resize=640%2C594&#038;ssl=1" alt="" width="640" height="594" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_2.png?w=672&amp;ssl=1 672w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_2.png?resize=595%2C553&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Básico</strong> le indicamos el grupo de recursos, la región, le damos un nombre y le indicamos que propague las rutas de puerta de enlace:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?ssl=1" data-lbwps-width="1077" data-lbwps-height="906" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16431" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?fit=1077%2C906&amp;ssl=1" data-orig-size="1077,906" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?fit=640%2C539&amp;ssl=1" class="aligncenter size-full wp-image-16431" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?resize=640%2C538&#038;ssl=1" alt="" width="640" height="538" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?w=1077&amp;ssl=1 1077w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?resize=595%2C501&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?resize=960%2C808&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_3.png?resize=768%2C646&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Etiquetas</strong> podemos configurar las que nos interesen:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?ssl=1" data-lbwps-width="1009" data-lbwps-height="911" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16432" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?fit=1009%2C911&amp;ssl=1" data-orig-size="1009,911" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?fit=640%2C578&amp;ssl=1" class="aligncenter size-full wp-image-16432" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?resize=640%2C578&#038;ssl=1" alt="" width="640" height="578" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?w=1009&amp;ssl=1 1009w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?resize=595%2C537&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?resize=960%2C867&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_4.png?resize=768%2C693&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Revisar y crear</strong> nos muestra un resumen sobre todo lo que le hemos configurado a la tabla de rutas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?ssl=1" data-lbwps-width="986" data-lbwps-height="908" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16433" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?fit=986%2C908&amp;ssl=1" data-orig-size="986,908" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?fit=640%2C589&amp;ssl=1" class="aligncenter size-full wp-image-16433" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?resize=640%2C589&#038;ssl=1" alt="" width="640" height="589" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?w=986&amp;ssl=1 986w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?resize=595%2C548&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?resize=960%2C884&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_5.png?resize=768%2C707&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, comienza a implementar la tabla de rutas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?ssl=1" data-lbwps-width="1575" data-lbwps-height="462" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6-1536x451.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16434" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?fit=1575%2C462&amp;ssl=1" data-orig-size="1575,462" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?fit=640%2C188&amp;ssl=1" class="aligncenter size-full wp-image-16434" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?resize=640%2C188&#038;ssl=1" alt="" width="640" height="188" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?w=1575&amp;ssl=1 1575w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?resize=595%2C175&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?resize=960%2C282&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?resize=768%2C225&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?resize=1536%2C451&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que se ha implementado correctamente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?ssl=1" data-lbwps-width="1591" data-lbwps-height="527" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7-1536x509.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16435" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?fit=1591%2C527&amp;ssl=1" data-orig-size="1591,527" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?fit=640%2C212&amp;ssl=1" class="aligncenter size-full wp-image-16435" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?resize=640%2C212&#038;ssl=1" alt="" width="640" height="212" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?w=1591&amp;ssl=1 1591w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?resize=595%2C197&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?resize=960%2C318&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?resize=768%2C254&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?resize=1536%2C509&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos al recurso y sobre subredes vamos a asociar la subred LAN que configuramos anteriormente, esta subred es dónde vamos a ubicar las máquinas virtuales de nuestra infraestructura en Azure:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?ssl=1" data-lbwps-width="1734" data-lbwps-height="509" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8-1536x451.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16436" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?fit=1734%2C509&amp;ssl=1" data-orig-size="1734,509" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?fit=640%2C188&amp;ssl=1" class="aligncenter size-full wp-image-16436" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?resize=640%2C188&#038;ssl=1" alt="" width="640" height="188" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?w=1734&amp;ssl=1 1734w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?resize=595%2C175&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?resize=960%2C282&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?resize=768%2C225&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?resize=1536%2C451&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<ul>
<li>Como podemos ver, ya la tenemos asociada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?ssl=1" data-lbwps-width="1734" data-lbwps-height="503" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10-1536x446.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16438" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?fit=1734%2C503&amp;ssl=1" data-orig-size="1734,503" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?fit=640%2C185&amp;ssl=1" class="aligncenter size-full wp-image-16438" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?resize=640%2C186&#038;ssl=1" alt="" width="640" height="186" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?w=1734&amp;ssl=1 1734w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?resize=595%2C173&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?resize=960%2C278&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?resize=768%2C223&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?resize=1536%2C446&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a configurar las rutas, para ello, accedemos a Rutas a Agregar:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?ssl=1" data-lbwps-width="1765" data-lbwps-height="445" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11-1536x387.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16439" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?fit=1765%2C445&amp;ssl=1" data-orig-size="1765,445" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?fit=640%2C161&amp;ssl=1" class="aligncenter size-full wp-image-16439" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?resize=640%2C161&#038;ssl=1" alt="" width="640" height="161" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?w=1765&amp;ssl=1 1765w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?resize=595%2C150&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?resize=960%2C242&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?resize=768%2C194&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?resize=1536%2C387&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La primera ruta que vamos a agregar, será la ruta por defecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?ssl=1" data-lbwps-width="1901" data-lbwps-height="910" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12-1536x735.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16440" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?fit=1901%2C910&amp;ssl=1" data-orig-size="1901,910" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?fit=640%2C307&amp;ssl=1" class="aligncenter size-full wp-image-16440" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?resize=640%2C306&#038;ssl=1" alt="" width="640" height="306" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?w=1901&amp;ssl=1 1901w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?resize=595%2C285&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?resize=960%2C460&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?resize=768%2C368&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?resize=1536%2C735&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La siguiente ruta será para el acceso a la subred dónde vamos a ubicar nuestras máquinas virtuales:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?ssl=1" data-lbwps-width="1908" data-lbwps-height="910" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13-1536x733.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16441" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?fit=1908%2C910&amp;ssl=1" data-orig-size="1908,910" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?fit=640%2C305&amp;ssl=1" class="aligncenter size-full wp-image-16441" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?resize=640%2C305&#038;ssl=1" alt="" width="640" height="305" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?w=1908&amp;ssl=1 1908w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?resize=595%2C284&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?resize=960%2C458&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?resize=768%2C366&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?resize=1536%2C733&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos las rutas agregadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="449" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14-1536x360.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16442" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?fit=1914%2C449&amp;ssl=1" data-orig-size="1914,449" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?fit=640%2C150&amp;ssl=1" class="aligncenter size-full wp-image-16442" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?resize=640%2C150&#038;ssl=1" alt="" width="640" height="150" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?resize=595%2C140&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?resize=960%2C225&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?resize=768%2C180&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?resize=1536%2C360&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez configurada la tabla de rutas, accedemos a nuestro Fortigate en Azure, y nos vamos a crear estas tres rutas estáticas, la primera es la ruta por defecto, para que todo lo que no se encuentre en la tabla de enrutamiento del Forti lo envíe por la interface WAN al gateway de la subred external, la segunda ruta es para que todo lo configurado en el espacio de direcciones de la red virtual lo envíe por la interface LAN al gateway de la subred internal, y la tercera ruta son para servicios internos de Azure para que lo envíe por la interface LAN al gateway de la subred internal:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="350" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15-1536x281.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16443" data-permalink="https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/dyctdrea_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?fit=1915%2C350&amp;ssl=1" data-orig-size="1915,350" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dyctdrea_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?fit=640%2C117&amp;ssl=1" class="aligncenter size-full wp-image-16443" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?resize=640%2C117&#038;ssl=1" alt="" width="640" height="117" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?resize=595%2C109&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?resize=960%2C175&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?resize=768%2C140&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?resize=1536%2C281&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dyctdrea_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/desplegar-y-configurar-tabla-de-rutas-en-azure/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">16428</post-id>	</item>
		<item>
		<title>Despliegue Firewall Fortigate en Azure desde Marketplace</title>
		<link>https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace</link>
					<comments>https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 03 Jul 2023 07:31:02 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=16405</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo desplegar un firewall Fortigate en Azure a través del Marketplace. La topología que vamos a utilizar será esta: Accedemos al Marketplace, buscamos por fortigate y seleccionamos la opción Fortinet FortiGate&#8230; <a href="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo desplegar un firewall Fortigate en Azure a través del Marketplace.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?ssl=1" data-lbwps-width="1133" data-lbwps-height="730" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16406" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?fit=1133%2C730&amp;ssl=1" data-orig-size="1133,730" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?fit=640%2C413&amp;ssl=1" class="aligncenter size-full wp-image-16406" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?resize=640%2C412&#038;ssl=1" alt="" width="640" height="412" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?w=1133&amp;ssl=1 1133w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?resize=595%2C383&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?resize=960%2C619&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_1.png?resize=768%2C495&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos al Marketplace, buscamos por fortigate y seleccionamos la opción <strong>Fortinet FortiGate Next-Generation Firewall &gt; Crear &gt; Single VM</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?ssl=1" data-lbwps-width="1320" data-lbwps-height="735" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16407" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?fit=1320%2C735&amp;ssl=1" data-orig-size="1320,735" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?fit=640%2C357&amp;ssl=1" class="aligncenter size-full wp-image-16407" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?resize=640%2C356&#038;ssl=1" alt="" width="640" height="356" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?w=1320&amp;ssl=1 1320w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?resize=595%2C331&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?resize=960%2C535&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_2.png?resize=768%2C428&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En el despliegue del firewall sobre <strong>Básico</strong> le indicamos el grupo de recursos, la región, las credenciales de usuario, el prefijo del nombre, tipo de licencia y la versión de la imagen del Fortigate:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?ssl=1" data-lbwps-width="1047" data-lbwps-height="908" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16408" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?fit=1047%2C908&amp;ssl=1" data-orig-size="1047,908" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?fit=640%2C555&amp;ssl=1" class="aligncenter size-full wp-image-16408" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?resize=640%2C555&#038;ssl=1" alt="" width="640" height="555" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?w=1047&amp;ssl=1 1047w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?resize=595%2C516&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?resize=960%2C833&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_3.png?resize=768%2C666&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Instance</strong> le indicamos el tamaño de máquina, le adjuntamos la licencia y le indicamos el nombre:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?ssl=1" data-lbwps-width="1017" data-lbwps-height="1040" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16409" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?fit=1017%2C1040&amp;ssl=1" data-orig-size="1017,1040" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?fit=640%2C655&amp;ssl=1" class="aligncenter size-full wp-image-16409" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?resize=640%2C654&#038;ssl=1" alt="" width="640" height="654" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?w=1017&amp;ssl=1 1017w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?resize=595%2C608&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?resize=960%2C982&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?resize=768%2C785&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_4.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Networking</strong> le indicamos la red virtual que vamos a utilizar y las subredes del firewall que ya configuramos en un post anterior:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?ssl=1" data-lbwps-width="1015" data-lbwps-height="1042" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16410" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?fit=1015%2C1042&amp;ssl=1" data-orig-size="1015,1042" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?fit=640%2C657&amp;ssl=1" class="aligncenter size-full wp-image-16410" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?resize=640%2C657&#038;ssl=1" alt="" width="640" height="657" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?w=1015&amp;ssl=1 1015w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?resize=595%2C611&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?resize=960%2C986&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?resize=768%2C788&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_5.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Public IP</strong> configuramos una IP pública básica y estática:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?ssl=1" data-lbwps-width="1903" data-lbwps-height="908" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6-1536x733.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16411" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?fit=1903%2C908&amp;ssl=1" data-orig-size="1903,908" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?fit=640%2C305&amp;ssl=1" class="aligncenter size-full wp-image-16411" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?resize=640%2C305&#038;ssl=1" alt="" width="640" height="305" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?w=1903&amp;ssl=1 1903w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?resize=595%2C284&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?resize=960%2C458&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?resize=768%2C366&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?resize=1536%2C733&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre<strong> Advanced</strong> no tocamos nada ya que no tenemos configurado FortiManager:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?ssl=1" data-lbwps-width="1060" data-lbwps-height="1038" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16412" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?fit=1060%2C1038&amp;ssl=1" data-orig-size="1060,1038" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?fit=640%2C627&amp;ssl=1" class="aligncenter size-full wp-image-16412" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?resize=640%2C627&#038;ssl=1" alt="" width="640" height="627" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?w=1060&amp;ssl=1 1060w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?resize=595%2C583&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?resize=960%2C940&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?resize=768%2C752&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_7.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos muestra un resumen de todas las configuraciones realizadas, comenzamos a crear la máquina:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?ssl=1" data-lbwps-width="917" data-lbwps-height="902" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16413" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?fit=917%2C902&amp;ssl=1" data-orig-size="917,902" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?fit=640%2C630&amp;ssl=1" class="aligncenter size-full wp-image-16413" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?resize=640%2C630&#038;ssl=1" alt="" width="640" height="630" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?w=917&amp;ssl=1 917w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?resize=595%2C585&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?resize=768%2C755&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_8.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, comienza el despliegue:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?ssl=1" data-lbwps-width="1595" data-lbwps-height="558" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9-1536x537.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16414" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?fit=1595%2C558&amp;ssl=1" data-orig-size="1595,558" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?fit=640%2C224&amp;ssl=1" class="aligncenter size-full wp-image-16414" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?resize=640%2C224&#038;ssl=1" alt="" width="640" height="224" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?w=1595&amp;ssl=1 1595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?resize=595%2C208&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?resize=960%2C336&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?resize=768%2C269&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?resize=1536%2C537&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos que ya ha terminado y se ha implementado correctamente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?ssl=1" data-lbwps-width="1604" data-lbwps-height="803" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10-1536x769.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16415" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?fit=1604%2C803&amp;ssl=1" data-orig-size="1604,803" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?fit=640%2C321&amp;ssl=1" class="aligncenter size-full wp-image-16415" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?resize=640%2C320&#038;ssl=1" alt="" width="640" height="320" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?w=1604&amp;ssl=1 1604w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?resize=595%2C298&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?resize=960%2C481&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?resize=768%2C384&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?resize=1536%2C769&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora accedemos al grupo de recursos y clicamos sobre la máquina virtual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?ssl=1" data-lbwps-width="1756" data-lbwps-height="795" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11-1536x695.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16416" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?fit=1756%2C795&amp;ssl=1" data-orig-size="1756,795" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?fit=640%2C290&amp;ssl=1" class="aligncenter size-full wp-image-16416" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?resize=640%2C290&#038;ssl=1" alt="" width="640" height="290" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?w=1756&amp;ssl=1 1756w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?resize=595%2C269&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?resize=960%2C435&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?resize=768%2C348&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?resize=1536%2C695&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?resize=300%2C135&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la máquina virtual accedemos a Redes y cómo podemos ver tenemos dos interfaces de red, una es la interface WAN del Fortigate que tiene una IP privada y otra pública, y la otra es la interface LAN que solo tiene una IP privada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="603" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12-1536x484.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16417" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?fit=1913%2C603&amp;ssl=1" data-orig-size="1913,603" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?fit=640%2C202&amp;ssl=1" class="aligncenter size-full wp-image-16417" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?resize=640%2C202&#038;ssl=1" alt="" width="640" height="202" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?resize=595%2C188&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?resize=960%2C303&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?resize=768%2C242&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?resize=1536%2C484&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="609" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13-1536x488.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16418" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?fit=1915%2C609&amp;ssl=1" data-orig-size="1915,609" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?fit=640%2C203&amp;ssl=1" class="aligncenter size-full wp-image-16418" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?resize=640%2C204&#038;ssl=1" alt="" width="640" height="204" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?resize=595%2C189&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?resize=960%2C305&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?resize=768%2C244&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?resize=1536%2C488&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para acceder al firewall accedemos a través de su IP pública:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?ssl=1" data-lbwps-width="1309" data-lbwps-height="762" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16419" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?fit=1309%2C762&amp;ssl=1" data-orig-size="1309,762" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?fit=640%2C373&amp;ssl=1" class="aligncenter size-full wp-image-16419" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?resize=640%2C373&#038;ssl=1" alt="" width="640" height="373" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?w=1309&amp;ssl=1 1309w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?resize=595%2C346&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?resize=960%2C559&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_14.png?resize=768%2C447&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?ssl=1" data-lbwps-width="1911" data-lbwps-height="801" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15-1536x644.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16420" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?fit=1911%2C801&amp;ssl=1" data-orig-size="1911,801" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?fit=640%2C268&amp;ssl=1" class="aligncenter size-full wp-image-16420" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?resize=640%2C268&#038;ssl=1" alt="" width="640" height="268" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?w=1911&amp;ssl=1 1911w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?resize=595%2C249&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?resize=960%2C402&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?resize=768%2C322&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?resize=1536%2C644&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Le aplicamos un alias a sus interfaces como WAN y LAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="617" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16-1536x495.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16421" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?fit=1914%2C617&amp;ssl=1" data-orig-size="1914,617" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?fit=640%2C206&amp;ssl=1" class="aligncenter size-full wp-image-16421" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?resize=640%2C206&#038;ssl=1" alt="" width="640" height="206" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?resize=595%2C192&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?resize=960%2C309&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?resize=768%2C248&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?resize=1536%2C495&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?ssl=1" data-lbwps-width="1231" data-lbwps-height="946" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16422" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?fit=1231%2C946&amp;ssl=1" data-orig-size="1231,946" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?fit=640%2C492&amp;ssl=1" class="aligncenter size-full wp-image-16422" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?resize=640%2C492&#038;ssl=1" alt="" width="640" height="492" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?w=1231&amp;ssl=1 1231w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?resize=595%2C457&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?resize=960%2C738&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_17.png?resize=768%2C590&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?ssl=1" data-lbwps-width="1229" data-lbwps-height="954" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16423" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?fit=1229%2C954&amp;ssl=1" data-orig-size="1229,954" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?fit=640%2C497&amp;ssl=1" class="aligncenter size-full wp-image-16423" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?resize=640%2C497&#038;ssl=1" alt="" width="640" height="497" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?w=1229&amp;ssl=1 1229w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?resize=595%2C462&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?resize=960%2C745&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_18.png?resize=768%2C596&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Y así nos quedaría:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?ssl=1" data-lbwps-width="1432" data-lbwps-height="601" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16424" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?fit=1432%2C601&amp;ssl=1" data-orig-size="1432,601" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?fit=640%2C269&amp;ssl=1" class="aligncenter size-full wp-image-16424" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?resize=640%2C269&#038;ssl=1" alt="" width="640" height="269" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?w=1432&amp;ssl=1 1432w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?resize=595%2C250&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?resize=960%2C403&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?resize=768%2C322&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_19.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>También configuramos el acceso a nuestro Fortigate para que lo haga a través del puerto 30443:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?ssl=1" data-lbwps-width="1221" data-lbwps-height="951" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16425" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?fit=1221%2C951&amp;ssl=1" data-orig-size="1221,951" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?fit=640%2C499&amp;ssl=1" class="aligncenter size-full wp-image-16425" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?resize=640%2C498&#038;ssl=1" alt="" width="640" height="498" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?w=1221&amp;ssl=1 1221w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?resize=595%2C463&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?resize=960%2C748&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_20.png?resize=768%2C598&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ahora tenemos que acceder a través del puerto configurado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?ssl=1" data-lbwps-width="1183" data-lbwps-height="706" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16426" data-permalink="https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/dffeadm_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?fit=1183%2C706&amp;ssl=1" data-orig-size="1183,706" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dffeadm_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?fit=640%2C382&amp;ssl=1" class="aligncenter size-full wp-image-16426" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?resize=640%2C382&#038;ssl=1" alt="" width="640" height="382" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?w=1183&amp;ssl=1 1183w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?resize=595%2C355&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?resize=960%2C573&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dffeadm_21.png?resize=768%2C458&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/despliegue-firewall-fortigate-en-azure-desde-marketplace/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">16405</post-id>	</item>
		<item>
		<title>Despliegue y configuración red virtual en Azure para Firewall Fortigate</title>
		<link>https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate</link>
					<comments>https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Fri, 30 Jun 2023 09:07:29 +0000</pubDate>
				<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=16393</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo desplegar y configurar una red virtual en Azure para firewall Fortigate. La topología que vamos a utilizar será esta: Empezaremos con el despliegue y la configuración de la red virtual&#8230; <a href="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo desplegar y configurar una red virtual en Azure para firewall Fortigate.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?ssl=1" data-lbwps-width="1133" data-lbwps-height="730" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16394" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?fit=1133%2C730&amp;ssl=1" data-orig-size="1133,730" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?fit=640%2C413&amp;ssl=1" class="aligncenter size-full wp-image-16394" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?resize=640%2C412&#038;ssl=1" alt="" width="640" height="412" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?w=1133&amp;ssl=1 1133w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?resize=595%2C383&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?resize=960%2C619&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_1.png?resize=768%2C495&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Empezaremos con el despliegue y la configuración de la red virtual en Azure, para ello, vamos a seleccionar un espacio de direcciones en la red virtual, y le configuraremos las distintas subredes que va a utilizar el firewall y la que utilizaremos como la red local de Azure dónde se conectarán nuestras máquinas virtuales:</li>
<li>Red virtual: <strong>rgs-firewall-vnet </strong>192.168.128.0/18</li>
<li>Subred Externa: <strong>ExternalSubnetFortigate </strong>192.168.191.0/27</li>
<li>Subred Interna: <strong>InternalSub</strong><strong>netFortigate </strong>192.168.191.32/27</li>
<li>Subred Protected: <strong>Protected</strong><strong>SubnetFortigate </strong>192.168.191.64/27</li>
<li>LAN Azure: <strong>Subvnet_rgs_192.</strong><strong>168.130.0-24_</strong><strong>LAN </strong>192.168.130.0/24</li>
</ul>
<ul>
<li>Todos los recursos creados los vamos a ubicar dentro de este grupo de recursos:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?ssl=1" data-lbwps-width="1902" data-lbwps-height="809" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2-1536x653.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16395" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?fit=1902%2C809&amp;ssl=1" data-orig-size="1902,809" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?fit=640%2C272&amp;ssl=1" class="aligncenter size-full wp-image-16395" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?resize=640%2C272&#038;ssl=1" alt="" width="640" height="272" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?w=1902&amp;ssl=1 1902w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?resize=595%2C253&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?resize=960%2C408&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?resize=768%2C327&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?resize=1536%2C653&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos creamos la red virtual, dónde en <strong>Datos básicos</strong> le indicamos, el grupo de recursos y el nombre:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?ssl=1" data-lbwps-width="1044" data-lbwps-height="909" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16396" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?fit=1044%2C909&amp;ssl=1" data-orig-size="1044,909" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?fit=640%2C557&amp;ssl=1" class="aligncenter size-full wp-image-16396" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?resize=640%2C557&#038;ssl=1" alt="" width="640" height="557" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?w=1044&amp;ssl=1 1044w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?resize=595%2C518&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?resize=960%2C836&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_3.png?resize=768%2C669&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Seguridad </strong>lo dejamos por defecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?ssl=1" data-lbwps-width="1011" data-lbwps-height="909" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16397" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?fit=1011%2C909&amp;ssl=1" data-orig-size="1011,909" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?fit=640%2C575&amp;ssl=1" class="aligncenter size-full wp-image-16397" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?resize=640%2C575&#038;ssl=1" alt="" width="640" height="575" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?w=1011&amp;ssl=1 1011w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?resize=595%2C535&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?resize=960%2C863&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_4.png?resize=768%2C691&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En <strong>Direcciones IP</strong> configuramos el espacio de direcciones y las subredes que vamos a utilizar:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?ssl=1" data-lbwps-width="1046" data-lbwps-height="911" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16398" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?fit=1046%2C911&amp;ssl=1" data-orig-size="1046,911" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?fit=640%2C557&amp;ssl=1" class="aligncenter size-full wp-image-16398" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?resize=640%2C557&#038;ssl=1" alt="" width="640" height="557" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?w=1046&amp;ssl=1 1046w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?resize=595%2C518&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?resize=960%2C836&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_5.png?resize=768%2C669&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Etiquetas</strong> podemos configurar las que nos interesen:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?ssl=1" data-lbwps-width="993" data-lbwps-height="908" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16399" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?fit=993%2C908&amp;ssl=1" data-orig-size="993,908" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?fit=640%2C585&amp;ssl=1" class="aligncenter size-full wp-image-16399" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?resize=640%2C585&#038;ssl=1" alt="" width="640" height="585" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?w=993&amp;ssl=1 993w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?resize=595%2C544&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?resize=960%2C878&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_6.png?resize=768%2C702&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Revisar y crear</strong> nos muestra un resumen sobre todo lo que le hemos configurado a la red virtual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?ssl=1" data-lbwps-width="1108" data-lbwps-height="1011" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16400" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?fit=1108%2C1011&amp;ssl=1" data-orig-size="1108,1011" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?fit=640%2C584&amp;ssl=1" class="aligncenter size-full wp-image-16400" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?resize=640%2C584&#038;ssl=1" alt="" width="640" height="584" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?w=1108&amp;ssl=1 1108w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?resize=595%2C543&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?resize=960%2C876&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_7.png?resize=768%2C701&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, el recurso de red virtual se ha creado correctamente, podemos ir al recurso:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?ssl=1" data-lbwps-width="1588" data-lbwps-height="607" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8-1536x587.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16401" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?fit=1588%2C607&amp;ssl=1" data-orig-size="1588,607" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?fit=640%2C245&amp;ssl=1" class="aligncenter size-full wp-image-16401" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?resize=640%2C245&#038;ssl=1" alt="" width="640" height="245" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?w=1588&amp;ssl=1 1588w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?resize=595%2C227&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?resize=960%2C367&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?resize=768%2C294&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?resize=1536%2C587&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Dónde podemos ver el <strong>Espacio de direcciones</strong> configurado y las <strong>Subredes</strong> que vamos a utilizar para desplegar el firewall Fortigate y para ubicar nuestras máquinas virtuales:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?ssl=1" data-lbwps-width="1588" data-lbwps-height="442" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9-1536x428.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16402" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?fit=1588%2C442&amp;ssl=1" data-orig-size="1588,442" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?fit=640%2C178&amp;ssl=1" class="aligncenter size-full wp-image-16402" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?resize=640%2C178&#038;ssl=1" alt="" width="640" height="178" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?w=1588&amp;ssl=1 1588w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?resize=595%2C166&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?resize=960%2C267&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?resize=768%2C214&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?resize=1536%2C428&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?ssl=1" data-lbwps-width="1812" data-lbwps-height="479" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10-1536x406.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16403" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/dycrveapff_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?fit=1812%2C479&amp;ssl=1" data-orig-size="1812,479" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dycrveapff_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-16403" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?w=1812&amp;ssl=1 1812w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?resize=960%2C254&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?resize=1536%2C406&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/06/dycrveapff_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/despliegue-y-configuracion-red-virtual-en-azure-para-firewall-fortigate/feed</wfw:commentRss>
			<slash:comments>4</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">16393</post-id>	</item>
	</channel>
</rss>
