IPSec Site to Multi-Site VPN (Established but cannot ping local hosts)
-
Hello, I have a four IPSEC setup on four different location and Public IP.
Two Sites (A&B) are connected to a Main Site. (Established)
Main Site is connected to a another Site(X). (Established)Setup are the following:
Main Site to Site X
Local Host (192.168.10.101) <==> PF Local Subnet pfSense (192.168.10.0/24) <==> ISP Router <==> Internet <==> Router <==> Local Subnets (172.16.78.0/24 & 172.16.72.0/24) <==> Host (172.16.78.7) ESTABLISHED P1 & P2
Test: Can PING each hosts.Site A to Main Site
Local Host (192.168.10.101) <==> Local Subnet pfSense (192.168.10.0/24) <==> ISP Router <==> Internet <==> ISP Router <==> PF Local Subnet (192.168.11.0/24) <==> Local Host (192.168.11.16) ESTABLISHED P1 & P2Test 1: Local Host: 4 ICMP requests from 192.168.10.101 to remote pfSense 192.168.11.1, NO ICMP reply. (RTO)
Test 2: Local Host: 4 ICMP requests from 192.168.10.101 to remote Host 192.168.11.16, NO ICMP reply. (RTO)Test 3: Local Host: 4 ICMP requests from 192.168.11.16 to remote pfSense 192.168.10.1, THERE IS ICMP reply.
Test 4: Local Host: 4 ICMP requests from 192.168.11.16 to remote Host 192.168.10.101, NO ICMP reply. (RTO)Site B to Main Site
Local Host (192.168.10.101) <==> Local Subnet pfSense (192.168.10.0/24) <==> ISP Router <==> Internet <==> ISP Router <==> PF Local Subnet (192.168.16.0/24) <==> Local Host (192.168.16.64) ESTABLISHED P1 & P2Test 1: Local Host: 4 ICMP requests from 192.168.10.101 to remote pfSense 192.168.16.1, THERE IS ICMP reply.
Test 2: Local Host: 4 ICMP requests from 192.168.10.101 to remote Host 192.168.16.64, THERE IS ICMP reply.Test 3: Local Host: 4 ICMP requests from 192.168.16.64 to remote pfSense 192.168.10.1, NO ICMP reply (RTO)
Test 4: Local Host: 4 ICMP requests from 192.168.16.64 to remote Host 192.168.10.1, NO ICMP reply. (RTO)Also, I'm trying to Ping from Site A&B Subnets to Site X Subnets but NO REPLIES.
Anyone here that has any idea what causes the problem? I hope someone could help me with this.
Thanks in advance.