• Error 13801 - Ike-v2 authentication credentials are unacceptable

    11
    0 Votes
    11 Posts
    29k Views
    R
    @cmb: Your certificate likely doesn't have the proper EKU for Windows to recognize it. I've confirmed that the cert does have the "server authentication" EKU (1.3.6.1.5.5.7.3.1) Isn't it the right one? @cmb: The references to importing certificates on the client is for CA certs, not server certs, where a self-signed cert is used. Yes, I do understand that. I imported the server cert instead because it was quicker, for testing purposes. The point is, I would like to cut off the need to import anything into a computer's "personal" cert folder, since the cert is already publicy trusted.
  • Ipsec tunnel to Azure behind NAT adsl modem

    1
    0 Votes
    1 Posts
    737 Views
    No one has replied
  • Migrate from Openswan to pfsense

    1
    0 Votes
    1 Posts
    734 Views
    No one has replied
  • Mobile IPSec PSK+XAuth with different PSK per user

    1
    0 Votes
    1 Posts
    632 Views
    No one has replied
  • Tutorial - Windows certificate with IPsec

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Phase 2 BINAT same subnet on remote and local point to point

    4
    0 Votes
    4 Posts
    2k Views
    K
    So what about this situation: Site A: Using a (Interface with) subnet with 192.168.1.0/24 different network. (Not part of VPN tunnel) IPSEC P2 Local Subnet is 172.20.20.0/24 Site B: LAN is 192.168.1.0/24 P2 local is using this 192.168.1.0/24 subnet. What would be the proper way to use BINAT or is it not needed?  Will the IPSEC tunnel know to direct traffic for the 172.20.20.0/24 going to 192.168.1.0/24 through the tunnel even though there is annother interface using 192.168.1.0/24?
  • Ipsec between pfsense and lancom stopped working

    4
    0 Votes
    4 Posts
    3k Views
    R
    i have no 1:1 nat or port forward and the outbound nat rules are set to auto… mhh so i have no idea why vpn is going down after some time and wont be reconnect :(
  • [Solved][Mac] can not connect to pfsense L2TP/IPSec server

    2
    0 Votes
    2 Posts
    1k Views
    Y
    case solved by using OpenVPN https://forum.pfsense.org/index.php?topic=112696.0
  • Simple L2TP config question - VPN users can't see LAN

    3
    0 Votes
    3 Posts
    2k Views
    D
    I have the same problem. Could somebody help? As test effects i setted L2TP VPN to accept all traffic. Thank you
  • IPSec not stopping initiator role, even if reset to respond only

    1
    0 Votes
    1 Posts
    560 Views
    No one has replied
  • IKE algorithm not matching in backup HA node

    1
    0 Votes
    1 Posts
    481 Views
    No one has replied
  • IPsec phase 2 traffic selectors inacceptable

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Does all internet traffic have to go through the VPN once connected?

    3
    0 Votes
    3 Posts
    943 Views
    K
    Are you using IPSec client built into Windows running Windows 10 ikev2?
  • Unable to bring phase 2 with custom Local Address up

    1
    0 Votes
    1 Posts
    591 Views
    No one has replied
  • Troubleshooting help

    3
    0 Votes
    3 Posts
    927 Views
    F
    Doh! The ipsec firewall rule on remote. Fsck, forgot about that little gem. Thanks!
  • Access webGUI using DDNS address

    3
    0 Votes
    3 Posts
    782 Views
    ?
    I already use OpenVPN BUT I like IPSec at lot more. I like that it's intergrated in my devices and I don't need third party software for like Mac and etc. I actually have this problem with my OpenVPN as well.
  • IPsec is dead, can't even control it via web-UI

    2
    0 Votes
    2 Posts
    630 Views
    S
    Small update: I've tried now adding a Virtual IP on HQ, it's the exact same behaviour as for IPsec (i.e. settings are not saved/updated). What's even stranger is that HQ is actually a pair of Netgate SG-4860 in an HA pair. They both behave like this. AGain, any help would be greatly appreciated
  • 2.3 UI defect, 3DES128

    6
    0 Votes
    6 Posts
    1k Views
    C
    Yep, finally saw what was happening there. I'm not sure how it didn't happen to me previously. In that case it affects several pages. I was looking for a bug ticket for this, remembering this thread but misremembered it as a redmine ticket.
  • IPSec Tunnel Still Active

    1
    0 Votes
    1 Posts
    610 Views
    No one has replied
  • Blank IKEv2 P1 showing after 2.3.1

    3
    0 Votes
    3 Posts
    854 Views
    C
    Yeah there's a status display issue in that case. There is a bug ticket open on general issue there. https://redmine.pfsense.org/issues/6335 It'll work fine, the status output's just wrong on the "down" one.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.