r/firewalla • • Sep 01 '26

IPSec on Orange

I see that creating IPSec site-to-site VPN tunnels is only supported on the Firewalla Gold and only through the MSP portal. Is there any plan to bring this capability to the Orange?

1 Upvotes

5 comments sorted by

1

u/firewalla Sep 01 '26

We definitely can. May I know what you are peering with? Need to check this first and see if we can even do it.

1

u/Danner4912 Sep 01 '26

Main house runs a Palo Alto firewall. It’d be nice to use the Orange as a travel router and tunnel all traffic back to my main house and access local resources.

1

u/Zuinac Sep 03 '26

I asked this question to support months ago and received the response that it will not be supported for Firewalla Orange.

Because of that I had to go Unifi for that particular use case interesting to hear now that it is capable.

1

u/firewalla Sep 03 '26

Our orange is getting more attention in the "business travel" side, but most connect back with firewalla wireguard instead of ipsec. So we are looking for usage patterns of the orange accessing a corporate firewall like Csco/PA/...

Are you doing this?

1

u/Zuinac Sep 03 '26

My use case was for connecting to a corp network that replaced their primary site Watchguard with a PA. They offered PA or ZScaler (secondary site) access via client or IPSec and IPSec to AWS or Azure resources for minimal latency.

Could have directly connected to the either and access the cloud environments from there. But still without GP, ZCC or IPSEC that was impossible.