Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Routing internet traffic through a site-to-site IPsec tunnel

    Scheduled Pinned Locked Moved IPsec
    7 Posts 2 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      AndrewBucklin
      last edited by

      I've got the site-to-site IPsec between two pfSense boxes working fine, and I can even ping Site B's pfSense IP (10.10.3.1) from a computer at Site A (10.10.2.102) with no problems, but I can't get internet traffic to pass through the tunnel.  Here are some screenshots (I'm trying to get Site A's GUESTLAN to use Site B's internet connection):

      Site A:

      Site B:

      For troubleshooting purposes, I have the same IPv4 * * * * * rule in the IPsec tab of the firewall at both sites. I'm thinking it has something to do with Outbound NAT at Site B, but not matter what I try, nothing works. Been trying to figure this out all day; thanks for your help!

      1 Reply Last reply Reply Quote 0
      • J
        jca1981
        last edited by

        Did you get it working? i have the same issue, ifollowed the guide here: https://doc.pfsense.org/index.php/Routing_internet_traffic_through_a_site-to-site_IPsec_tunnel

        but internet is not working.

        1 Reply Last reply Reply Quote 0
        • A
          AndrewBucklin
          last edited by

          No, I never got it working with IPsec. I ended up going with OpenVPN instead.  :-\

          1 Reply Last reply Reply Quote 0
          • J
            jca1981
            last edited by

            sad to hear that, was it easy to set op via openvpn?

            If someone can help getting it to work over ipsec, please reply

            1 Reply Last reply Reply Quote 0
            • J
              jca1981
              last edited by

              I got it working, i had a old p2 setting in ipsec i forgot to disable, now it works.
              if you want to get it working on ipsec, let me know :)

              1 Reply Last reply Reply Quote 0
              • A
                AndrewBucklin
                last edited by

                You did?!?!?  Do you mind sharing redacted screenshots?

                1 Reply Last reply Reply Quote 0
                • J
                  jca1981
                  last edited by

                  yea, did you follow the guide?  ive made a few screenshots of all i i changed.

                  ![pfsense route internet.png](/public/imported_attachments/1/pfsense route internet.png)
                  ![pfsense route internet.png_thumb](/public/imported_attachments/1/pfsense route internet.png_thumb)

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.