• Site-to-site VPN with non-static IP address

    7
    0 Votes
    7 Posts
    2k Views
    J
    @fazevedo How would that be any different than the actual IP address? You don't have to tell anyone what the domain name you chose is. There's literally no security concern any different than having a public IP.
  • OpenVPN & IPSec with pfSense and External network

    1
    0 Votes
    1 Posts
    491 Views
    No one has replied
  • Phase 2 network issue

    2
    0 Votes
    2 Posts
    637 Views
    maverickwsM
    Enabling Split connections on Phase 1 solved it.
  • IPsec ESP traffic

    1
    0 Votes
    1 Posts
    367 Views
    No one has replied
  • IPSEC - Multiple Encryption domain

    1
    0 Votes
    1 Posts
    486 Views
    No one has replied
  • Disable Anti-Replay Protection

    1
    0 Votes
    1 Posts
    437 Views
    No one has replied
  • different ACLs for different road warrior configurations?

    1
    0 Votes
    1 Posts
    405 Views
    No one has replied
  • IKEv2 Mikrotik to PFSense authentication error

    1
    0 Votes
    1 Posts
    627 Views
    No one has replied
  • IPSec on three sites with intermediate tunnel

    4
    0 Votes
    4 Posts
    838 Views
    L
    @viragomann++ Thanks for your reply. You where right, I was missing firewall rules Site A (intermediate hop) Now I've the hop tunnel working. Thanks again.
  • IPSec block internet

    1
    0 Votes
    1 Posts
    510 Views
    No one has replied
  • NAT addressing problem

    4
    0 Votes
    4 Posts
    828 Views
    D
    Aaaannnndd it started working, somehow. I played a little with "Rekey Time" and " Reauth Time" but didn't get the results I expected, so I disabled them (which is what I had before). But somehow, icmp translation started to work. Now it works but I don't know why..... :-P Tks. Roberto
  • Pfsense L2TP over IPSEC server and TP-Link ER605 router L2TP client.

    1
    0 Votes
    1 Posts
    973 Views
    No one has replied
  • freeradius static ip assignment causes very slow speeds&packet losses

    1
    0 Votes
    1 Posts
    456 Views
    No one has replied
  • Block unwanted IPsec connection attempt

    3
    0 Votes
    3 Posts
    723 Views
    J
    @johnpoz Thanks for the reply. I think I've done that, i've also added it to the LAN and IPsec section for good measure. [image: 1665643833597-9c297238-893b-4bf2-9ccf-7f8a6c17a83d-image.png] [image: 1665643844292-eaeb2008-15cf-4338-b279-787330cc6462-image.png] [image: 1665643850924-89ec900d-fe2a-4896-8a41-35813600e913-image.png] And still I get the following in the IPsec log: [image: 1665644055797-a21db9c7-c0b4-4ec2-96d6-b785f499734b-image.png] I've blacked out my IP. Thanks Jacob
  • Win10 IKEv2 Connects, but No Network Access

    7
    7
    0 Votes
    7 Posts
    1k Views
    T
    @thewaterbug said in Win10 IKEv2 Connects, but No Network Access: @keyser Thanks! Does putting the config file in the /conf/ folder work for all pfsense installs? It didn't work for me. My problem may have been that I didn't rename the config file. I just put it in there with its full filename, e.g.: config-hostname.domain.tld-20221007121918.xml After doing some reading, I renamed it as just config.xml. I didn't know whether to put it at the root or at /conf/, so I put it in both, and it worked this time.
  • PFSense - IPSEC to Fortigate - Too Many Phase 2 SA's kills Tunnel

    2
    0 Votes
    2 Posts
    2k Views
    B
    I have fixed it for now. The Current tunnel configurations was setup as IKEv1. I have converted both sides of the tunnels to IKEv2 and I can now see all the SA's on the PFSENSE SIDE and they match the networks on the Fortigate Side. I am able to pass traffic on my 2 test networks. I will add more networks on Monday....If I can pass traffic on all 14 of the networks ....then I am good. if not, IKEv2 on the PFSENSE Side provided the Ability to split connections. You can read more about split connections in this document. https://docs.netgate.com/pfsense/en/latest/vpn/ipsec/configure-p1.html#advanced-options Thank You
  • 0 Votes
    3 Posts
    664 Views
    T
    @thewaterbug Fixed: Add-VpnConnectionRoute -ConnectionName "PI-IKEV2-VPN" -DestinationPrefix 192.168.0.0/24 -PassThru with the Use Default Gateway . . . unchecked.
  • IPSec Firewall not allowing SNMP

    ipsec ipsec rules snmp
    1
    0 Votes
    1 Posts
    718 Views
    No one has replied
  • Ipsec Configuration not Working!

    66
    1
    0 Votes
    66 Posts
    20k Views
    G
    @gary-lopez viva la raza carnal!
  • IPSec Site to Multi-Site VPN (Established but cannot ping local hosts)

    1
    1 Votes
    1 Posts
    390 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.