Hi to all
so, little RECAP
SITE A:
Operator Router-> SWITCH -> ESXi with PFsense
Public IP -> Internal Lan 192.168.1.0/24 -> PFSENSE wan 192.168.1.240 with GTW 192.168.1.1 and virtual Interface ovpn peer2peer
SITE B:
Operator Router-> Mikrotik -> Internal LAN
Public IP -> wan 192.168.8.1 - LAN 192.168.88.1 -> Internal Lan 192.168.88.1/24
Peer to Peer tunnel 10.10.11.0/28 ( site A 10.10.11.1 / site B 10.10.11.2)
Connection OK between site
ping - other service from B to A -> OK
ping - other service from A to B -> KO
PFSENSE CONFIG:
[image: 1732482146293-29216526-883e-4dcf-be61-40e878d39ca4-image.png]
[image: 1732481526913-7512a6dc-e92b-4e3e-b89e-7c34e5d06f27-image.png]
[image: 1732481658749-6c54caac-b910-4b03-ad33-d67d0fddbc9f-image.png]
[image: 1732481695419-e4dd2f8a-3d7c-423c-bb16-400bbe6aae84-image.png]
[image: 1732481734049-0d34858e-90ff-4c9a-80c5-82a955a1864f-image.png]
[image: 1732481757283-a38cbe88-9c96-4f29-9d8d-863c109cc347-image.png]
With and Without CSO tested, but nothing change.
NAT
[image: 1732481799864-925d14c9-775d-4135-99b7-05c7910ba1a2-image.png]
Rules
[image: 1732481826768-b0188b3d-c32f-4b06-96c4-c3e98b48c821-image.png]
[image: 1732481847849-2e40e12b-3fc8-441c-8e79-1dcf651b606d-image.png]
ROUTING
[image: 1732481884196-69cb7bb0-c088-4e88-a8c3-619c3f95dce1-image.png]
[image: 1732481904939-bbda0e24-58d8-484c-b538-dc7b43ad78ae-image.png]
SITE B: MIKROTIK
[image: 1732482053196-5d692e75-0ebe-4a90-a297-6944770da4e3-image.png]
[image: 1732482077586-7bb9e00c-ba65-4c21-9bc2-48d1c9d75a53-image.png]
Sorry for all the photos, but, it's to understand how the 2 devices were configured.
Any help is welcome, I don't know what else to check or other configurations to try.
Esxi has no rules on the internal switch.
**thank you so much for all the advice already writed, and have a nice new week.
ANDDD sorry for my English XD.**
REGARDS