• HA Site to Site IPSEC VPN Issues

    2
    1
    0 Votes
    2 Posts
    585 Views
    ?
    Did you try Child SA Close Action: Restart/Reconnect for the Tunnel Configuration at Site B?
  • IPSEC widget

    Moved
    10
    1
    4 Votes
    10 Posts
    2k Views
    conbonburC
    Ok. Thank you for the effort.
  • IPsec VPN establish both ends But could not access the LAN resources

    Moved
    1
    0 Votes
    1 Posts
    341 Views
    No one has replied
  • IPSec Status on Dashboard is broken on 2.5.2 after Upgrade

    4
    2
    1 Votes
    4 Posts
    918 Views
    jimpJ
    This will be much improved on the next release: https://forum.netgate.com/post/994704 https://forum.netgate.com/topic/165510/heads-up-ipsec-changes?_=1627666555213
  • How to enable Tunnel Isolation Mode

    4
    0 Votes
    4 Posts
    819 Views
    jimpJ
    Sounds like what you want is "Split connections" in the P1 options. IKEv1 is always split -- each P2 gets its own separate configuration IKEv2 can combine traffic selectors and does so by default, so all your P2 configurations get lumped into a single configuration entry. This is more efficient and flexible, since it only needs to maintain one child SA for all traffic, but some other devices/services don't like it for various reasons. If you are using IKEv2 and check "Split Connections" then it creates a separate configuration for each P2 so they will be independent.
  • IPsec com 2 WANs na Filial, e 1WAN na matriz

    1
    0 Votes
    1 Posts
    355 Views
    No one has replied
  • VPN connected but no traffic

    2
    0 Votes
    2 Posts
    375 Views
    W
    FYI someone linked a similar issue described here: https://www.reddit.com/r/AZURE/comments/osp4n3/i_can_no_longer_connect_to_some_of_the_nodes_over/
  • IPsec connection error

    2
    1
    0 Votes
    2 Posts
    627 Views
    jimpJ
    Check the logs on the far side. It would seem to indicate that your identifier doesn't match what the other side expects, but your side doesn't have any more than that to go on. Logs on the other side would be more specific.
  • IPSEC Transparent traffic with pfsense

    4
    1
    0 Votes
    4 Posts
    639 Views
    V
    @mrgizmo The point is that it only behaves like that if there is an active outbound NAT rule on LAN or if you're doing NAT in IPSec p 2. So if you're in doubt provide these settings.
  • Client Certificate and Client credentials authentication for mobile VPN

    1
    0 Votes
    1 Posts
    231 Views
    No one has replied
  • General recommendation for Site2Site VPN setup

    2
    0 Votes
    2 Posts
    525 Views
    KOMK
    @polka44 I'm not sure IPv4 will work behind CG-NAT but IPv6 should from what little I understand. IPsec Site-to-Site VPN Example with Certificate Authentication IPsec Site-to-Site VPN Example with Pre-Shared Keys Site to Site VPNs on pfSense
  • IPsec not reconnecting after site failure

    6
    0 Votes
    6 Posts
    3k Views
    B
    @shellbr There is another thread going on about this. Someone suggested a script. https://forum.netgate.com/post/992563
  • Can I use Ipsec VPN for end users and use it for Site to Site

    2
    0 Votes
    2 Posts
    505 Views
    dotdashD
    @cre8toruk There is no problem creating a separate site to site tunnel.
  • IPSec tunnel with redundancy

    2
    1
    0 Votes
    2 Posts
    587 Views
    J
    @froussy Hi, may be IPSEC (VTI) + OSPF/BGP???
  • Slow Performance ipsec

    3
    0 Votes
    3 Posts
    705 Views
    D
    @digitalcomposer So what is the problem with IPSEC and Crypto AES-GCM?? I try with WireGuard and the SITE TO SITE speed is 800Mbit/s and with IPSEC 23Mbit/s.
  • DNS over IPsec -cross post

    2
    2
    0 Votes
    2 Posts
    488 Views
    S
    This post was flagged as spam so I can't edit out the redundant image, sorry.
  • Pfsense is not replying or forwarding packets

    1
    0 Votes
    1 Posts
    312 Views
    No one has replied
  • IPSEC VTI tunnels lost packets

    26
    4
    0 Votes
    26 Posts
    4k Views
    dotdashD
    @metisit A little late on this reply, but for anyone coming across this- that link concerns racoon and not strongswan.
  • IPSEC Performance problems with PFCE in one site

    2
    0 Votes
    2 Posts
    535 Views
    D
    @ralphandreas Hi we have the same problem with 2.5.2 it is not better.
  • IPSEC VPN BGW320

    6
    0 Votes
    6 Posts
    2k Views
    P
    @cybertivo did you ever get anywhere with this. I have some traffic passing but seems like traffic initiated from at&t end is where most of the problem lies. I thought static IPs would help, but no such luck so far. This same tunnel config was previously working when connected to cable modem.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.