IPSec Mobile client internet access



  • I'm setting up a Remote user Access using IPSec, pfSense 2.3.1_1. VPN Works fine. My VPN ends at Lan Subnet and I can ping and access Terminal Server on Lan from Mobile Client (Windows)

    But I'm trying to ping any where (internet, other VLANS, etc) and no traffic is captured or logged at firewall (pfSense) or Lan Subnet.
    "Provide a list of accessible networks to clients" is checked

    thanks in advance

    My mobile client once connected has this IP Configuration: (I can ping any host on 192.168.xxx.0/24 subnet but no other.

    Configuraci¢n IP de Windows

    Nombre de host. . . . . . . . . : r-PC
      Sufijo DNS principal  . . . . . :
      Tipo de nodo. . . . . . . . . . : h¡brido
      Enrutamiento IP habilitado. . . : no
      Proxy WINS habilitado . . . . . : no
      Lista de b£squeda de sufijos DNS: localdomain

    Adaptador PPP Nube:

    Sufijo DNS espec¡fico para la conexi¢n. . :
      Descripci¢n . . . . . . . . . . . . . . . : Nube
      Direcci¢n f¡sica. . . . . . . . . . . . . :
      DHCP habilitado . . . . . . . . . . . . . : no
      Configuraci¢n autom tica habilitada . . . : s¡
      Direcci¢n IPv4. . . . . . . . . . . . . . : 10.1.0.1(Preferido)
      M scara de subred . . . . . . . . . . . . : 255.255.255.255
      Puerta de enlace predeterminada . . . . . : 0.0.0.0
      Servidores DNS. . . . . . . . . . . . . . : 192.168.xxx.10
                                          8.8.8.8
      NetBIOS sobre TCP/IP. . . . . . . . . . . : habilitado



  • Your mobile P2 needs to have a local network of 0.0.0.0/0 for Internet to go across. You probably have "LAN net" there.



  • ok, P2 Local Network set to "Network" and address 0.0.0.0/0

    Works fine. now mobile client has Access to internet and every subnet conected to pfSense



  • sorry, thank you very much.

    More than two weekends looking for solution.

    Thanks again