• L2TP/IPsec or IKEv2

    3
    0 Votes
    3 Posts
    2k Views
    V
    Thanks for your answer Jim! I'll try IKEv2 and the OpenVPN Clients then!
  • Connection to ASA 5580 with multiple remote subnets NATTING local subnet

    2
    0 Votes
    2 Posts
    668 Views
    L
    Today we were able to test. It just works! Lex
  • VPN - PFsense (Client) x Checkpoint (Server)

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Question about changing the interface of an IPSEC Connection

    3
    0 Votes
    3 Posts
    885 Views
    K
    Hi, Firewall -> Virtual IPs -> Create an IP Alias. .10 as interface IP .11 as Virtual IP In the ipsec configuration you can chosse interfaces and virtual IPs. We are using diffrent IPs for IPSEP, OpenVPN and NAT - works fine! Regards
  • IPSEC with IKEv2 and PSK

    5
    0 Votes
    5 Posts
    2k Views
    D
    Hi All, thanks for the answers. We decided to take IKEv1 … Now it is working. :) Regards, M
  • IPSec VPN Internal access

    5
    0 Votes
    5 Posts
    2k Views
    M
    @BlueKobold: If this will not help oyu out then you should better disable at home the VPN part if you are connecting to your home network internally. Really?  So because I didn't understand what you were talking about, you quit helping??  How RUDE!!!!
  • Re: IPSEC IKEv2 with EAP-MSCHAPv2 - Windows error 13801 [SOLVED]

    7
    0 Votes
    7 Posts
    4k Views
    B
    Reading again the whole documentation, experimenting almost everything, SOLVED by changing under Phase1 General information Interface From WAN to 1.2.3.4 (Carp WAN IP) Can't understand why, but I started to try everithing… now it does not go online (internet) but it pings remote ips.. and I have to understand if it's possibile, and how, to resolve some address using the remote local dns... but it's another story. F
  • IKEv2 Disconnect after 20 minutes

    1
    0 Votes
    1 Posts
    866 Views
    No one has replied
  • IKEv2 Windows 13801 error

    3
    0 Votes
    3 Posts
    3k Views
    P
    Found out the trouble when another poster had a similar problem.  My error was that I had imported the server cert and not the CA cert.  Imported the CA cert into Trusted CA store and now progressing with authentication.
  • IPSEC ikev2 on PFS 2.2.6 connection problems DNS

    9
    0 Votes
    9 Posts
    2k Views
    M
    Solved it myself So I thought I would solve the last piece of the puzzle but it seems authentication failes for my user in radius (not the password of the user). Not sure why failing. Tried to change several modes like PEAP but same problem must be something with the user but what!!! I hade choosen password encryption MD5 for my user in FreeRadius. Strangely i though this was how the password was stored in FreeRadius but it seems that IPSEC couldn't resolve my password when it was encrypted. Sound wrong needs to be investigated.
  • 0 Votes
    1 Posts
    2k Views
    No one has replied
  • IPSEC and 2.2.6

    4
    0 Votes
    4 Posts
    1k Views
    C
    There are endless different reasons you can have the same symptoms with IPsec. Please start a new thread with your logs and status output if it happens again, as it's almost certainly not the same root cause so that's the best bet for getting help.
  • IPSec to LAN Clients (Can ping but cant pass TCP/UDP)

    2
    0 Votes
    2 Posts
    968 Views
    P
    I had a very similar problem last time. I could ping, but almost no other services work through the tunnel. I assume you has the right firewall settings in place? Especially when NAT-T is used for your IPSec connection, you surely can get into trouble with MTU. Do you use NAT-T? Go to IPSec -> Advanced Settings and set the Maximum MSS to 1350. This fixed the problem for me. Give it a try.
  • L2TP over IPSec not sending routes

    2
    0 Votes
    2 Posts
    736 Views
    jimpJ
    There is no mechanism to send routes over L2TP. It either sends all, or the client has to maintain its own routes.
  • Multi-wan with vpn to same remote endpoint?

    1
    0 Votes
    1 Posts
    595 Views
    No one has replied
  • Firewall rules for Road Warrior IPSEC VPN?

    4
    0 Votes
    4 Posts
    4k Views
    jimpJ
    They don't show in the GUI, but you'd see them in /tmp/rules.debug or the live pf rules (e.g. pfctl -sr)
  • Issue establishing connection: no RSA private key found

    8
    0 Votes
    8 Posts
    4k Views
    J
    Thanks for the reply! Both CA and server certs were generated in pfSense. I even tried deleting them and generating new ones. I'll try switching up the Phase 1 settings in a bit, see if that changes anything. I'll also take a looks to see what certs ipsec thinks is loaded.
  • Cisco 800 ADSL router IPSEC VPN to PFSense

    5
    0 Votes
    5 Posts
    2k Views
    P
    I have this working, will post the configs for anyone's reference..
  • IPsec doesnt work in or out of office

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • IPSEC & Carp failover

    1
    0 Votes
    1 Posts
    787 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.