How to make a transparent bridge between a local LAN and VPN

Hi all,

My situation:

I have a RB100U working perfectly with 3 WAN connections and multiple subnets. In 1 of those subnets (lets say 192.168.0.1/24) i have industrial machines which have a hardcoded mac adress, IP and subnet into them (cannot be changed) and NO default gateway! The thing is i want to be able to access them via some sort of VPN.
I made a bridge, put eth0 into it and set up a pptp server with a secret and a profile that includes previously made bridge.
The problem is i cant seem to get it working properly. I can ping all subnets except the one I want.
Tried setting up a client ip in 192.168.0.1/24 range also in a new range, but I just can’t ping these machines. I a best scenario I could ping rb1100u and me and all other subnets, but not 192.168.20.0/24.

Any ideas?

br,
bysaRD

Create a separate VLAN / routed port for the industrial machines and enable proxy-arp on the interface. Terminate your VPN into ROS like normal. Do not put it into a bridge.

Should work fine.

Works like a charm. Ty very much!


+karma