Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How can I prevent IPSec mobile clients from connecting to each other?

    Scheduled Pinned Locked Moved IPsec
    5 Posts 3 Posters 957 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jwischka
      last edited by

      I have a setup where I will have multiple mobile clients connecting in from a remote site, tunneling all traffic over the IPSec connection. This is set up and working fine. However, all clients can ping and access each other, which I would like to prevent. I know this is easy in OpenVPN, but we are dealing with a customer who is IPSec insistent. Is there any easy way to make this happen in IPSec?

      Thanks

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        Add a firewall rule on the IPsec tab to block from a source of your IPsec subnet to a destination of your IPsec subnet.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • J
          jwischka
          last edited by

          I tried this, actually, but it doesn't seem to do anything. Any other suggestions?

          1 Reply Last reply Reply Quote 0
          • H
            Hugovsky
            last edited by

            Did you reset the state table after you applied the rule?

            1 Reply Last reply Reply Quote 0
            • J
              jwischka
              last edited by

              I did not. Silly me.

              Thanks for the help!

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.