• IPSEC connected but cannot ping remote network.

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    S

    Personally I would give OpenVPN a try over PPTP.

  • Can't enable my ipsec tunne

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • IPSec endpoint at LAN

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • IPSec VPN with Cisco PIX

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Can iVPN be use in Roadwarrior?

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    L

    I would like to know that as well.
    My clients are using sim/smartcards to store an identifier and I'm wondering if I can read from those sims
    some sort of a key rather than a cert.

  • IPSec for RoadWarriors on Windows using SIM/Smartcards?

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Upstream Squid Proxy via IPSEC

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    X

    I was able to work around this by creating a port forward nat rule on the lan interface with the ip as ANY with the external port as http and internal ip/port as 192.168.0.12:8080
    then i disabled the local squid proxy.

  • Site to Site VPN for Lan party

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    JeGrJ

    Broadcasting between the VPN users is possible with OpenVPN running in bridge mode (looking only at OpenVPN). OpenVPN implementation on pfSense seems to have some problems with that (as it looks to me when I'm reading through the articles) but one may proove me wrong here. I've tested OpenVPN in the lab in bridging mode and it did indeed worked fine with broadcasts. Never had the opportunity to test it with pfsense though.

  • IPSec / NAT Routing question

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    S

    So this would require a different class address?

    Sticking with non-routable addresses I couldn't quite figure out how to do something past 192.168.20.0 / 255.0.0.0 …

  • Checkpoint Securemote <-> Pfsense <-> Internet <-> Checkpoint Firewall

    Locked
    1
    0 Votes
    1 Posts
    4k Views
    No one has replied
  • IPSec and Virtual IPs

    Locked
    8
    0 Votes
    8 Posts
    6k Views
    X

    Thanks Bill, the problem has been resolved with your advice. I was thinking about this aliased ip situation from the wrong angle. thanks again for the support.

  • Vigor -> pfSense IPSec

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    X

    Sounds like the LAN to LAN might be L2TP? I dont believe pfSense supports this yet, perhaps in a few versions. Or you could try posting a bounty to help epedite the addition and support the project. Otherwise you could try IPSec between the two with DES/MD5 and small bit keys, maybe it supports those? I'd say try to figure out exactly how the Vigor 2800 does IPSec then have pfSense mimic those configurations.

  • VPNC

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    X

    you could try building binary package of vpnc and then sftp'ing  it over to the pfsense machine, and use pkg_add. if that doesn't work maybe you could build the binarys and use tarball to push them over? just a thought.

  • IPsec setup???

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    X

    i believe you could do this with openbsd 3.9/4.0. they have utilities for ipsec failover, i'm sure they'll work they're way into pfSense either through a bounty or in a couple releases.

  • Does IPSEC traffic pass through firewall?

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    H

    @hoba:

    However we have this already working in head.

    This means it's already working in our codetree for the next major version. You won't be able to achieve this with 1.0. You have to wait for the release of this version to get this feature.

  • IPSEC rules loading error while bridging Wireless card to LAN interface

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    H

    Yes, and that error was fixed right after RC2 was released with RC2a or b when I recall correctly.

  • WAN WITH A 56K Modem

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H

    Not really. pfSense only supports ethernet kind of gear. You would need some kind of dial-on demand 56k network modemrouter for this. There are ISDN-Routers that could be used this way but I don't know of a 56k alternative that does something similiar.

  • IPSEC with a Juniper appliance on the other end

    Locked
    10
    0 Votes
    10 Posts
    6k Views
    H

    @Phobia:

    Hi,

    Please don't take from my previous message that I was going to throw in the towel with PFSense!  I was referring to the Netscreen if anything.  ;D

    Thanks again for a truly wonderful firewall platform!

    – Phob

    No problem at all, just wanted to point out that you need that for tunnels from pfsnese to anything (even another pfSense) if one end is dynamic.  ;D

  • IPSEC with NAT

    Locked
    9
    0 Votes
    9 Posts
    7k Views
    S

    NAT-T will not be included in 1.0.

    Maybe 1.1 or in the future.

  • Connect pfSense to Windows ISA 2004 vpn using L2TP

    Locked
    6
    0 Votes
    6 Posts
    5k Views
    R

    I've had an IPsec connection to a Watchguard x1000 for a little over a month. I'll be posting some screenshots and a basic howto shortly. (hopefully this week) I will put up the screenshots first, as soon as I can edit out the important stuff.
    The short answer is yes, IPsec to watchguard is possible and so, far, seems quite nice.
    Pay attention to the "advanced" button when setting up the tunnel on the watchguard side.
    Remember; both sides require identical settings for protocols, renegotiating timing, and identifiers.
    The default settings do not match between pfsense and watchguard.
    This is Monday. I hope to have some images up by Thursday/Friday. (depending how my "real" job goes…)

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.