IPSec - Keepalive
-
Hello.
I would like to know if it is possible to set keepalive "Automatically ping host" if we perform the nat/binat in phase2.
for example
local network: address 10.3.30.11/32 ->NAT 10.80.250.11/32
remote network: 192.168.112.0/23
and Automatically ping host is set to 192.168.112.1
But it does not work and tunel have to be estabilished from host 10.3.30.11.And the other question it is possible to estabilish connection from remote gateway? For example from subnet 192.168.112.0/23 if the tunnel is not up?
Thnaks for any advices
Punny
-
I have the same exact issue. pfSense ipsec to Cisco ipsec. It's configured to use BINAT. I have a pingable host in the field Automatically ping host. But pfSense does not keep the VPN alive. I have to start pinging from a host on the network before the VPN will establish.