Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    IPsec working without rules?

    Firewalling
    1
    2
    145
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mrsunfire last edited by

      Hi!

      I have created an IPsec connection and everything works fine. But I don't have created any rules. No floating and nothing in WAN as well. But I can connect to the pfSense. If I check the firewall logs, I see that it allows the traffic from port 500 and 4500 with the description:

      IPsec: Mobiluser Phase 1 - inbound isakmp (1000107391) (Port 500)
      IPsec: Mobiluser Phase 1 - inbound nat-t (1000107392) (Port 4500)

      But where did these rules got created?

      I would like to allow traffic only from some countries. For that I use pfBlocker and GeoIP but of course this doesnt work, because I can't set these rules.

      What am I doing wrong here?

      1 Reply Last reply Reply Quote 0
      • M
        mrsunfire last edited by

        Got! Had to disable the auto generated VPN rules.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post

        Products

        • Platform Overview
        • TNSR
        • pfSense Plus
        • Appliances

        Services

        • Training
        • Professional Services

        Support

        • Subscription Plans
        • Contact Support
        • Product Lifecycle
        • Documentation

        News

        • Media Coverage
        • Press
        • Events

        Resources

        • Blog
        • FAQ
        • Find a Partner
        • Resource Library
        • Security Information

        Company

        • About Us
        • Careers
        • Partners
        • Contact Us
        • Legal
        Our Mission

        We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

        Subscribe to our Newsletter

        Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

        © 2021 Rubicon Communications, LLC | Privacy Policy