Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Multiple IPSec Peers

    IPsec
    4
    7
    2.7k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cdall1979
      last edited by

      Hi all, I am attempting to setup 2 IPSec tunnels to 2 unique peers, both having the same PhaseII settings. This would be to automatically have pfsense failover to using the second tunnel in the list in the event connectivity is lost to the first. I am having trouble doing this; pfsense seems to be only attempting to use the 1st entry. Any thoughts?

      1 Reply Last reply Reply Quote 0
      • D
        drees
        last edited by

        Yeah, that's not going to work.

        You're going to need something more complicated (probably involving IPsec transport networks and routing protocols) if you want failover.

        1 Reply Last reply Reply Quote 0
        • C
          cmb
          last edited by

          That's possible in 2.1 only, using a gateway group on a single entry.

          1 Reply Last reply Reply Quote 0
          • C
            cdall1979
            last edited by

            I see that the latest version 2.0.3 is available for download. Is 2.1 a future release or am I misreading your post?

            1 Reply Last reply Reply Quote 0
            • D
              dhatz
              last edited by

              @cdall1979:

              I see that the latest version 2.0.3 is available for download. Is 2.1 a future release or am I misreading your post?

              You can download pfSense 2.1-BETA from
              http://snapshots.pfsense.org/

              1 Reply Last reply Reply Quote 0
              • C
                cdall1979
                last edited by

                Got it thanks, already upgraded. Any idea when 2.1 will be a stable release?

                1 Reply Last reply Reply Quote 0
                • C
                  cdall1979
                  last edited by

                  I am a bit confused as far as the Gateways are concerned. I can't add a Gateway that falls outside the subnet of the WAN interface. How would I set this up to connect to 2 unique public IP endpoints?

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.