Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    What do i have to do to see any host in the other subnet

    Scheduled Pinned Locked Moved IPsec
    2 Posts 2 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • I
      igvm82
      last edited by

      hi, i've just connected a ipsec tunnel between 2 subnets  192.168.1.0 and 192.168.2.0 this is fine it connects perfectly , but mi question is what do i have to do now to see any host in the other subnet  ??? ; in 192.168.2.0 the pfsense connects by pppoe and the wan interface has a public ip , but in 192.168.1.0 the pfsense's wan interface is 192.168.1.1 and has a  gateway( 192.168.1.254 )that's a thomson router which  has the public ip . as well you know, i had to do port forward whit ports 50 and 500 tcp,ip to the firewall , but i don't know if a have to put some nat rules or in static routes or maybe both, please help me  ;D
      thanks

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        Just to be clear, it sounds like this:

        Site A:

        • WAN Subnet is public, PPPoE
        • LAN Subnet is 192.168.2.x

        Site B:

        • WAN Subnet is private, 192.168.1.x
        • LAN Subnet is also 192.168.1.x

        Is that right? If so, that won't work. The LAN and WAN subnets must be different at Site B, and that may be part of your problem.

        However, if the tunnel comes up OK, you may just be missing the firewall rules for IPsec. Go to Firewall > Rules, IPsec tab on both sites and add an allow all rule (or allow whatever you like) - be sure the protocol on the rule is 'any' and not TCP or else you can't ping over the tunnel.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.