<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Problems with outgoing connections via ipsec]]></title><description><![CDATA[<p dir="auto">I'm trying to make a connection from my pfsense machine to a Fortigate firewall at work. The tunnel is up according to the status page and the Fortigate firewall. The problem is that i can't connect to anything in the remote network. If i ping a known ip in the remot network i get:<br />
Reply from 192.168.127.1: Destination host unreachable. (192.168.127.1 is the ip of my firewall)</p>
<p dir="auto">In the remote network i can connect to machines in my network without any problem.</p>
<p dir="auto">It's not a firewall issue in the Fortigate box. It works with the same configuration in the Fortigate if i use a small red box from hell (a Watchguard Firewall) instead of the Fortigate machine at home. The problem with the watchguard is that the entire box is unstable.</p>
<p dir="auto">On my pfsense machine i have the following configuration:<br />
2 WAN interfaces (i get 5 IPs from my ISP via DHCP)<br />
1 LAN interface<br />
1 WLAN interface for testing<br />
1 OpenVPN tunnel to the pfsense machine at my family's house</p>
<p dir="auto">I do a manual load balance with Advanced Outbound NAT.</p>
<p dir="auto">If i create the same tunnel on my family's machine it works without any problems. Their firewall is running 1.2</p>
<p dir="auto">I have tried to upgrade to a 1.2.1 snapshot but no luck. I was going to upgrade to 1.3 but it isn't compatible with my configuration backup and the interface configuration was broken.</p>
<p dir="auto">If i the WLAN interface the configration is basicly same except for the second wan interface.</p>
<p dir="auto">Is it the multi wan configuration that gives me this problem?</p>
]]></description><link>https://forum.netgate.com/topic/10510/problems-with-outgoing-connections-via-ipsec</link><generator>RSS for Node</generator><lastBuildDate>Thu, 18 Jun 2026 08:01:31 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/10510.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 23 Aug 2008 21:42:33 GMT</pubDate><ttl>60</ttl></channel></rss>