Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPsec not pinging machines on remote side which is running pfsense

    Scheduled Pinned Locked Moved IPsec
    2 Posts 2 Posters 342 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      broadcastbeat
      last edited by broadcastbeat

      Hi!

      I just setup an IPsec tunnel (PFsense at the office) which is now successfully connected with my Meraki MX64 at home. I'm successfully connected, but I can't ping or access anything on the PFsense side where I have internal network servers, etc. Any ideas?

      My office networks (with PFsense) are:
      192.168.128.0/24
      192.168.133.0/24
      192.168.134.0/24

      my HOME network is
      192.168.129.0/24

      Am I supposed to configured the 192.168.129.0/24 on pfsense somewhere? I'm thinking maybe that's my issue as it's not routing?

      Thanks

      Ryan

      1 Reply Last reply Reply Quote 0
      • L
        lfoerster
        last edited by lfoerster

        Keep in mind that in case your pinged devices are Winblows machines that ICMP protocol (Ping) is fully blocked there by default in the local firewall.
        You explicitly need to allow ICMP traffic there in the setup ! (local and remote IP Ranges to "any" or your specific source lan addresses)
        Also the Winblows firewall generally blocks all traffic which has different source IPs then the local network they are in. Keep that in mind if you need access to file sharing or printer service etc.
        So best practice is always to ping the local router interfaces or destination IPs from devices without firewall like printers, wlan ap's etc. from the Diagnostics --> Ping menü. This also makes sense cause you can alter the source IPs to your local LANs here.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.