• IPSEC is giving package errors in "Middle" subnet

    3
    0 Votes
    3 Posts
    436 Views
    R
    @viragomann It wasn't necessary. The issue was happening at the other peer, a Blockbit with two boxes, but the slave box, though operating, has not the redundancy enabled (cabling). When we turned off the slave box, the problem was solved.
  • 1 Votes
    9 Posts
    1k Views
    C
    Looks like Roland filed a report that was confirmed already: https://redmine.pfsense.org/issues/15171 Nice!
  • IPsec manual routing from network NOT present in the IPsec configuration

    1
    0 Votes
    1 Posts
    236 Views
    No one has replied
  • Ipsec issue after upgrade second pfsense to 2.7.2

    1
    1 Votes
    1 Posts
    461 Views
    No one has replied
  • IPSEC - Clients can't connect to VPN.

    1
    0 Votes
    1 Posts
    265 Views
    No one has replied
  • 0 Votes
    5 Posts
    829 Views
    A
    @viragomann It is policy-based tunnel (Tunnel IPv4). Phase2 is working (status connected). Status->SystemLogs->IPSEc has no corresponding entries. But you said " and the subnet is not routed through the tunnel": This is exactly the problem - how to do this? As there are no thus options in the IPSec tunnel settings ("NAT/BINAT translation" should not be the corresponding option.)
  • Sonicwall IKEv2 Payload processing errors

    7
    0 Votes
    7 Posts
    8k Views
    M
    @ctyokley I’ve seen something like that happen. Phase 2 pfs negotiations succeed until it’s time to rekey. But not ok pfsense. Probably thinking of an ASA maybe
  • IPsec one client connects, other does not

    3
    0 Votes
    3 Posts
    507 Views
    A
    @Konstanti Thanks! I will take a look at this. The problem is that I don't know for sure that this is the problem. I would hate to go through regeneration and deployment of new certificates and STILL have the issue. I've managed to get everything (HTTPS/IPsec) working, except for the iPad. I'm guessing that the fragmentation is the issue since it's the last thing I see before destroying the connection. It's not urgent that I get this working on the iPad since I do have a working IPsec on my phone. It would be rare I'm travelling with the iPad and NOT also have my phone available.
  • site to site loosing html trafic

    2
    0 Votes
    2 Posts
    352 Views
    F
    after much searching and trial and some error. I think i have solved the problem. It seemed to be loosing or having packets getting corrupted or out of order as i have seen some documents describe it. I ended up changing the maximum MSS on one firewall. Since i am new at this, it took a long time to find this setting so i will include it here for others that may be having similar problems. system, advanced. firewall & nat tab Scroll down to VPN packet processing, check box enable MSS clamping on VPN traffic. Maximum MSS 1400. I disconnected the VPN and let it reconnect, just to make sure changes happened. After that print jobs between builds and web pages worked again. Thanks.
  • Remote server unreachable over Site-to-Site VPN

    4
    0 Votes
    4 Posts
    545 Views
    V
    @Tirthankar You need to allow access from the remote site here, so from 192.168.1.0/24.
  • IPSec Phase 1: Allow connections from any IPv4 and any IPv6 (Dual Stack)

    2
    0 Votes
    2 Posts
    358 Views
    L
    Nothing to discuss here I guess. Ticket has been opened in Redmine and a todo was assigned to version 2.8.0.
  • Help with Samsung S22 ipsec mobile client VPN to pfSense

    5
    0 Votes
    5 Posts
    713 Views
    A
    I carefully reviewed my settings against a working configuration and discovered that a few things were misconfigured or missing. I now have it working! Now to try the same on an iPod!
  • IPsec traffic Forward

    1
    0 Votes
    1 Posts
    275 Views
    No one has replied
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    3 Views
    No one has replied
  • IPsec trouble disconnection between PFsense and FortiGate

    6
    0 Votes
    6 Posts
    2k Views
    planedropP
    Yeah like @michmoor is mentioning, I'd double check the config on both sides for Phase 1 and 2 and be sure they are identical. If that still doesn't work then I'd dig deeper on the deleting SA issue mentioned by @Konstanti Might also be worth checking to be sure the Fortigate is fully updated so there isn't a chance for some old bug.
  • Support for Post-quantum Preshared Keys and/or Multiple Key Exchanges

    1
    1 Votes
    1 Posts
    259 Views
    No one has replied
  • IPSEC PfSense 2.7.2 between PA-VM

    1
    0 Votes
    1 Posts
    170 Views
    No one has replied
  • Risks To Enabling MSS Clamping on IPSec?

    1
    0 Votes
    1 Posts
    416 Views
    No one has replied
  • IPSEC sending connection to wrong NAT IP

    2
    0 Votes
    2 Posts
    388 Views
    L
    Tried to create a 1:1 NAT, but still not working
  • Admin access via ipsec

    4
    0 Votes
    4 Posts
    567 Views
    F
    @mcury It was a missing firewall rule - now working fine.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.