Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Filtering IPsec tunnel traffic on pfSense 2.1

    Scheduled Pinned Locked Moved IPsec
    2 Posts 2 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      ajacks
      last edited by

      Ok,
      This is an odd one to me.
      I've got a new pfSense 2.1 setup with LAN / Wan / IPsec.
      There is a site to site IPsec VPN between a pfSense 2.0.3 setup at the remote site.

      The only rules on the firewall at my site are the default block BOGON / Private nets on Wan, allow ip4 out from Lan. I started with no rules on the IPsec tab.

      However, I am able to access hosts on the other side of the VPN without any issue from my site. Traffic originating from the remote site is being blocked.

      Then, I added a * * drop rule to the IPsec firewall tab and can still access the hosts on the remote side.

      It seems that the LAN rules on my side are also applying to the tunneled traffic. This did not occur when both sides had pfSense 2.0.3

      Am I missing something? Is this related to the NAT setup on 2.1?

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        Please don't cross-post topics to multiple boards.

        I replied to your other topic in the Firewalling board.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.