  • I have build ipsec connectivity between Cisco and two pfsense. The connection shows Connected but can not ping.

    I am also running openVPN on same pfsense between two locations connected and running fine.

    I need to allow, to access my network through ipsec.

    cat /var/etc/ipsec/ipsec.conf

    This file is automatically generated. Do not edit

    config setup
    uniqueids = yes

    conn bypasslan
    leftsubnet =
    rightsubnet =
    authby = never
    type = passthrough
    auto = route

    conn con1000
    fragmentation = yes
    keyexchange = ikev1
    reauth = yes
    forceencaps = no
    mobike = no

    rekey = yes
    installpolicy = yes
    type = tunnel
    dpdaction = restart
    dpddelay = 10s
    dpdtimeout = 60s
    auto = route
    left =
    right = 64.xxx.xxx.70
    leftid = 173.xxx.xxx.109
    ikelifetime = 86400s
    lifetime = 3600s
    ike = aes128-sha1-modp1024!
    esp = aes128-sha1-modp1024!
    leftauth = psk
    rightauth = psk
    rightid = 64.xxx.xxx.70
    aggressive = no
    rightsubnet =
    leftsubnet =

    i dont know what i am missing?

