• How to restart racoon service via shell script?

    3
    0 Votes
    3 Posts
    3k Views
    L
    the "pfSsh.php playback svc start racoon" works for me, if I execute it from shell (PuTTY from my pc) when I issue this command, I can see in the system log: "php: pfSsh.php: Forcefully reloading IPsec racoon daemon" and after 3-4 lost pings, it pings again. Can you post your script, because I have the same problem with ipsec, and trying to solve it. But I'm really rookie in scripting.  ::)
  • IPSec to two Subnets with same IP-Adress Range

    7
    0 Votes
    7 Posts
    2k Views
    O
    Thank you very much!  :)
  • How-to restart RACOON from script?

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Working For A While Then Have To Reboot To Get Connected.

    1
    0 Votes
    1 Posts
    516 Views
    No one has replied
  • MSS Clamping and bad cksum errors

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Vpn only on direction, but i need both direction: makes me mad!

    1
    0 Votes
    1 Posts
    582 Views
    No one has replied
  • Client to Site IPSec Almost Working…

    1
    0 Votes
    1 Posts
    720 Views
    No one has replied
  • Tunnel establishes but can't see LAN

    2
    0 Votes
    2 Posts
    882 Views
    M
    Finally found the answer:  Set NAT Traversal to Force Thanks to Vorkbaard:  https://forum.pfsense.org/index.php?topic=46917.0
  • IPsec VPN

    2
    0 Votes
    2 Posts
    982 Views
    P
    Dials out? If a VPN tunnel isn't up already, it is triggered by the traffic destined for the other site. You do need to have a known WAN address on your home router, either a static ip or a DDNS-updated hostname if you're on a dynamic ip (DHCP).
  • Ipsec breaks randomly

    1
    0 Votes
    1 Posts
    793 Views
    No one has replied
  • IPSEC is connected but one-way traffic - NAT problem

    1
    0 Votes
    1 Posts
    911 Views
    No one has replied
  • Ipsec and gateways

    2
    0 Votes
    2 Posts
    822 Views
    T
    Right so I figured out why it was sometimes working and sometimes not. When I do confguration changes to ipsec - pfsense removes my static host route and replaces it with own. i.e after I do configuration changes to ipsec i have to: make a new static route delete the static route pfsense automatically added. In case of just restarting ipsec pfsense does not delete my static route i.e after restarting racoon i just need to purge the route pfsense added during the racoon restart. Ok workaround for my test setup, but it would be preferable if possible to define a gateway e.g. in the phase1 configuration. Cheers / Thor
  • 0 Votes
    3 Posts
    1k Views
    V
    Thanks breakaway for your reply. It looks like you are correct. The problem seems to be that racoon does not accept wildcards(ran racoon with verbose and debug in a terminal) regarding incoming connections when matching with the PSK(running PSK during tests). There is a simple patch for allowing wildcards, but once I compile it, it won't start on pfSense due to something missing. It looks like I will need to get a older FreeBSD that matches pfSense 2.1.4 and try to compile on that.
  • Pfsense to Sonicwall 57 tunnels

    2
    0 Votes
    2 Posts
    944 Views
    jimpJ
    Performance depends on the CPU that it has available. Stability would be more up to the Sonicwall sides than pfSense. We've had people running 300+ tunnels on pfSense before without issue (I believe they were almost entirely Draytek routers on the other side). It's not a problem with pfSense in general, but might be with your specific implementation.
  • Cannot ping or access my IPSEC VPN clients from local LAN

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • IPsec tunnel using one remote gateway

    1
    0 Votes
    1 Posts
    639 Views
    No one has replied
  • L2TP/IPSec IPSec on Android

    2
    0 Votes
    2 Posts
    2k Views
    jimpJ
    L2TP+IPsec is not officially supported yet. It will be supported in 2.2. I have made it work for Android before on 2.1.x but I don't recall the specifics. I think I at least edited out that input validation you hit.
  • PFsense as Cisco client?

    1
    0 Votes
    1 Posts
    850 Views
    No one has replied
  • IPSEC Tunnel Not Auto Negotiate on Disconnection

    4
    0 Votes
    4 Posts
    2k Views
    A
    Hi Seem to remember that i had this issue the first time i used Pfsense. Resolved by changing Phase 1 proposal, Negotiation mode to Main And Policy Generation to Unique Enable DPD I also noticed that you are using 3g connection, in Australia the providers commonly do not provide a routable IP on 3g connections, you must request an additional feature to get a routable IP. If the IP of the 3g device is not routable i have found the IPsec does not work properly. Hope this helps. regards markl
  • IPSEC fails with files larger than 1400 bytes, PMTUD issue

    1
    0 Votes
    1 Posts
    917 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.