• pfSense behind nat, not connection/response to Fortinet

    2
    0 Votes
    2 Posts
    249 Views
    M
    I also noticed this Why the ID says "any identifier" if I established the IP in both? [image: 1723251693398-d9a3b80c-6d46-495e-abc2-20f99c573b89-image.png]
  • IPSEC: requests: list-sas then disconnect

    2
    0 Votes
    2 Posts
    533 Views
    keyserK
    @datacare There are no responses from the opposite end. Remeber IKE uses UDP, and can transmit several packets it considers “data” without any preceeding “connection” being made as with TCP. Notice there are no packets recieved from the other end - so you need to investigate that, and why :-)
  • IPSec Status shows Local/Remote as /0[esp]

    1
    0 Votes
    1 Posts
    159 Views
    No one has replied
  • Ipsec interface assignment

    1
    0 Votes
    1 Posts
    151 Views
    No one has replied
  • IPSec Random Disconnections

    1
    1 Votes
    1 Posts
    161 Views
    No one has replied
  • Ipsec and android

    11
    1 Votes
    11 Posts
    767 Views
    A
    @planedrop don't load pn the ipsec tunnel.
  • IPSec tunnel issue

    1
    0 Votes
    1 Posts
    179 Views
    No one has replied
  • VPN S2S - Bytes-Out: 0 (0 B) Packets-Out: 0

    ipsec vpn s2s
    2
    0 Votes
    2 Posts
    336 Views
    E
    can you share P2 subnet/IPs of both end, and firewall rule configured on IPSec interface - both ends,
  • No IKEv2 Phase 1 with IPv6 Client

    2
    0 Votes
    2 Posts
    303 Views
    R
    @rsdu Even though the documentation states that firewall rules are added automatically, firewall log shows that incoming traffic is blocked by the "default IPv6 incoming block" rule. I added UDP Port 500 and ESP to the ruleset and there we go ...
  • IPSec wont route traffic, only after 2/3 disconects

    2
    0 Votes
    2 Posts
    225 Views
    M
    @Mr_JinX system logs............ ipsec logs........... Unless you didn't provide the logs on purpose its impossible to say why anything happens anywhere.
  • create an IPSEC route-based connection with one tunnel and two peers?

    1
    0 Votes
    1 Posts
    155 Views
    No one has replied
  • IPSec with custom port

    2
    0 Votes
    2 Posts
    269 Views
    G
    After taking the screenshot, and recognizing the mismatch between the ports, I've updated the PHASE1 settings on both ends, specifying just the NAT-T port. [image: 1721305805900-0dbb0d4a-70c8-496a-87dd-bee9fa740865-image.png] Now, the ports looks coherent. SITE A [image: 1721305847630-5387557b-d330-43ec-a494-e44119f1e484-image.png] SITE B [image: 1721305874011-a0791832-6b78-4a3a-a053-f749822d43b5-image.png] Now ping works :) [image: 1721305914479-996ddfcd-d96a-4b60-9bb5-f194f3ed1fa9-image.png] [image: 1721305938523-08a81d89-236c-44e0-8ecc-26dc19d27d4e-image.png] Still open the question on why this port mismatch happened.....I've lost like 40 hours on this
  • IPsec: The same LAN + VLAN network

    5
    0 Votes
    5 Posts
    354 Views
    P
    @viragomann Thanks for helping me. Your tip worked for me.
  • Phantom ISRG Root X1 CA cert

    1
    0 Votes
    1 Posts
    396 Views
    No one has replied
  • Windows 11 IPSec ESP no acceptable proposal found

    7
    0 Votes
    7 Posts
    2k Views
    keyserK
    @lifeboy When editing the Phase one and Phase 2 settings, only one encryption settings is enabled in both: AES256 and using SHA256 with DH14: [image: 1721142730850-72a1546e-02d3-4f89-bebe-3fc688c05aec-image-resized.png] [image: 1721142765204-937960d9-5daa-465f-a6f4-630ecdc079ac-image-resized.png]
  • all VPN IPSEC connections are down suddenly

    4
    0 Votes
    4 Posts
    377 Views
    P
    @viragomann Hello @viragomann Please see details logs on attachment filelog-ipsec-details-pfsense.txt Thank you for your help Regards
  • Phase 2 drops

    1
    0 Votes
    1 Posts
    156 Views
    No one has replied
  • 0 Votes
    2 Posts
    240 Views
    J
    turns out, it was me. i mistakenly upgraded the secondary node to 2.7.2, but forgot to upgrade the primary node and it was still 2.7.0. HAsync was not working due to this error, so this was not a pfsense problem, it was a me problem :)
  • 0 Votes
    3 Posts
    553 Views
    L
    @michmoor i've founf the problem. When my p1 have multiple p2. It always getting disconnected. I dont know why its happening on latest pfsense version.
  • IPSec behind NAT

    11
    0 Votes
    11 Posts
    1k Views
    X
    @viragomann Before routing the traffic of Server, I would like PFSense01 and PFSense02 to ping on the VTI interfaces, because from the screenshot that I showed before on PFSense01 there are 0 outbound packets, and I don't now why
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.