• Mobile IPSEC on 2.0 for Android

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    I
    Thanks for the information.
  • IPSec Transport mode yello status

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Ipsec vpn and smoothwall keeps dropping

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    R
    Could the builders of pfsense help me pls.
  • Site2Site IPSEC VPN unable to ping remote subnet

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    M
    @ferret: crypto isakmp key ABC123 address 203.XXX.XXX.XXX no-xauth that was the difference, when looked very fast preview
  • IPSEC with multiple subnets

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    jimpJ
    You need multiple phase 2's for each possible combination, such as: Client -> Server LAN Client -> Server Static Route Net 1 Client -> Server Static Route Net 2 Client -> Server Static Route Net 3 […]
  • Nokia IP330: IPsec LAN-to-LAN VPN

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Can't get IPsec to work

    Locked
    1
    0 Votes
    1 Posts
    3k Views
    No one has replied
  • Traffic over IPSec blocked by "Default deny rule IPv4".

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    F
    @alexis.olivier: Hello everybody, I have two pfSense boxes running with 2.0RC3 in the same network. I tried to make an IPSec transport connection between them. The IPSec works well (racoon gets its connection established), but the problem is that all traffic going through enc0 is blocked by "Default deny rule IPv4", despite a firewall rule has been added to pass all the IPv4 traffic (tcp/udp) coming through IPSec interface (enc0). This rules is evaluated (evaluations counter grows up in pfctl -v -sr), but no packets is allowed. Did i forget something ? Thanks in advance for your answers ! Hi, Did you resolve this issue yet? Cheers
  • SNAT and second remote gateway

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    M
    if remote gateway is down, for example, multi-WAN cannot solve the problem. it is solved if pfsense can connect to a secondary remote gateway.
  • Change IPsec Negotiation Time

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 0 Votes
    7 Posts
    19k Views
    A
    Hello everyone,   Thank you for responses.  I have since downgraded to 1.2.3 stable and have not had a tunnel drop out since.  It is too bad because I really wanted to use some of the new functionality of pfSense 2.0 however, everyone is much happier now that the network is stable. Andrew
  • /32 SA should have higher precedence than /28 SA

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 0 Votes
    3 Posts
    3k Views
    F
    here are the rest of the settings ![Screen Shot 2011-09-16 at 12.48.02 AM.png](/public/imported_attachments/1/Screen Shot 2011-09-16 at 12.48.02 AM.png) ![Screen Shot 2011-09-16 at 12.48.02 AM.png_thumb](/public/imported_attachments/1/Screen Shot 2011-09-16 at 12.48.02 AM.png_thumb) ![Screen Shot 2011-09-16 at 12.44.23 AM.png](/public/imported_attachments/1/Screen Shot 2011-09-16 at 12.44.23 AM.png) ![Screen Shot 2011-09-16 at 12.44.23 AM.png_thumb](/public/imported_attachments/1/Screen Shot 2011-09-16 at 12.44.23 AM.png_thumb) [image: photo.PNG] [image: photo.PNG_thumb]
  • IPhone IPSec AT&T Fail?

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    jimpJ
    Try setting NAT-T to force on the server side. It may have better luck breaking out of their network.
  • HELP!!! IPSEC Failover

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Racoon.conf file error / block every tunnels below

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    D
    You may want to submit a report to http://ipsec-tools.sourceforge.net/ (and secondary to http://redmine.pfsense.org/projects/pfsense )
  • Do I always need XAuth when using IPsec? (re: iPhone VPN and XAuth)

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    jimpJ
    …until someone steals your phone and then has unlimited access to your network... The certificate auth, I believe, only replaces the pre-shared key part, not the username/password part.
  • Ipsec to network with multiple gateways

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    R
    Hi, i think i found my answer by playing around a bit. My remote network is 10.1.105.0/24, i then added a route on 10.0.0.2 –> route add -net 10.1.105.0 10.0.0.1 255.255.255.0 then i could access the machines running through gateway 10.0.0.2 i hope this might help someone else. Thanks,
  • IPSec and Mac issue

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Site2Site with dynamic IP without dns

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    jimpJ
    If you use a dynamic DNS hostname it does work properly - I use this personally and I know people using it with dozens/hundreds of tunnels. It works great. However the title of the thread said "without DNS" so that's how I replied.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.