Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPsec VPN Site to Site (Sonicwall <-> pfsense)

    IPsec
    5
    7
    11.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      trasher mx
      last edited by

      Hey guys,

      I am trying to set up a vpn between different offices of the company I work for.

      I have already made the settings, but I have an error in the logs:

      Jun 13 10:50:37 charon 05 [IKE] <con1 1="" |="">received INVALID_SYNTAX notify error
      Jun 13 10:50:37 charon 05 [ENC] <con1 1="" |="">parsed IKE_SA_INIT response 0 [N (INVAL_SYN)]
      Jun 13 10:50:37 charon 05 [NET] <con1 1="" |="">received packet: from 49.X.X.X [500] to 189.x.x.x [500] (36 bytes)
      Jun 13 10:50:37 charon 11 [NET] <con1 1="" |="">sending packet: from 189.x.X.X [500] to 49.x.x.x [500] (396 bytes)

      I want to assume that there are some different configurations of the sonicwall side.

      Someone has already done this type of configuration that can give me directions or advice.

      Greetings.</con1></con1></con1></con1>

      1 Reply Last reply Reply Quote 0
      • J
        jca1981
        last edited by

        Hi Trasher, we use sonicwalls for all our offices and pfsense for the main server location, what setting are you using?

        1 Reply Last reply Reply Quote 0
        • T
          trasher mx
          last edited by

          I'm trying to set up a point-to-point vpn.

          In the main office, I have a sonicwall and in the branch office I have a pfsense latest version.

          The case is that I have configured the vpn options on the sonicwall side and the pfsense side, but I can not get them to communicate.

          I have already configured rules on both sides of the vpn to allow access to the information, the logs do not show any blocking.

          See attached images.

          regards

          SiteA
          –------------------

          • sonicwall
                          - 172.16.1.0\16

          SiteB

          Network  - 192.168.10.0\24

          See attached images.

          regards

          Capture.PNG
          Capture.PNG_thumb
          Capture2.PNG
          Capture2.PNG_thumb
          Capture3.PNG
          Capture3.PNG_thumb
          Capture4.PNG
          Capture4.PNG_thumb
          Capture5.PNG
          Capture5.PNG_thumb

          1 Reply Last reply Reply Quote 0
          • T
            trasher mx
            last edited by

            UPDATE

            TUNNELS ITS WORKING BOTH SIDE.

            But, when i try to ping nothing happends…...

            Firewall logs, dont show anything

            1 Reply Last reply Reply Quote 0
            • pfrickrollP
              pfrickroll
              last edited by

              @trasher:

              UPDATE

              TUNNELS ITS WORKING BOTH SIDE.

              But, when i try to ping nothing happends…...

              Firewall logs, dont show anything

              In pfSense go to Firewall>Rules>IPsec>add action pass and everything any to any, click save/add

              1 Reply Last reply Reply Quote 0
              • J
                Jon G
                last edited by

                Hi all,

                I'm having a similar issue. I'm trying to connect PFSense to a SonicWall and just can not seem to get it to work. Any help would be greatly appreciated.
                I've attached a bunch of screen shots of the configuration on both sides as well as the error message I'm getting from PFSense.

                Thanks

                1 Reply Last reply Reply Quote 0
                • B
                  Billyboy
                  last edited by

                  I have done it like below (full testing was not possible) and it seems to work:

                  http://zee.linxsol.com/system-administration/pfsense-2-site-to-site-vpn-with-dell-sonicwall-nsa-3500.html

                  I have put in some additional rules on the WAN Interface, see screenshot.

                  Rules_IPSEC.JPG
                  Rules_IPSEC.JPG_thumb

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.