Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPSEC Tunnel

    Scheduled Pinned Locked Moved IPsec
    5 Posts 3 Posters 668 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tresrob
      last edited by

      Hi

      I have two pfsense 2.4.4-RELEASE-p whith this configuration:

      Pfsense A:
      wan fff.fff.fff.fff
      lan 192.168.10.1
      opt1 192.168.50.1

      Pfsense B:

      wan sss.sss.sss.sss
      lan 192.168.0.1

      I have created a IPsec

      A:

      first phase: public ip remote sss.sss.sss main AES (128 bits) SHA256 2 (1024 bit)

      sec.phase: mode tunnel OPT1 192.168.0.0/24 ESP AES (256 bits) SHA256

      B:

      first phase: public ip remote fff.fff.fff.fff main AES (128 bits) SHA256 2 (1024 bit)

      second phase:

      tunnel LAN 192.168.50.0/24 ESP AES (256 bits) SHA256

      Status of IPsec is ESTABLISHED

      If i ping from pc lan 192.168.0.xxx a pc of 192.168.50.xxx is OK but if a ping from pc from address 192.168.50.xxx to address 192.168.0.xxx does not work.
      please how can I solve the problem?

      Thanks

      Robert

      1 Reply Last reply Reply Quote 0
      • dotdashD
        dotdash
        last edited by

        What are the firewall rules on the IPSec tab of both boxes?

        1 Reply Last reply Reply Quote 0
        • T
          tresrob
          last edited by

          @dotdash said in IPSEC Tunnel:

          What are the firewall rules on the IPSec tab of both boxes?

          SITE A:

          Protocol Source Port Destination Port Gateway Queue Schedule Description Actions
          0 /30.77 MiB
          IPv4 * 192.168.0.0/24 * 192.168.50.0/24 * * none

          SITE B:

          States Protocol Source Port Destination Port Gateway Queue Schedule Description Actions
          0 /914 KiB
          IPv4 * 192.168.50.0/24 * 192.168.0.0/24 * * none

          T 1 Reply Last reply Reply Quote 0
          • T
            tresrob @tresrob
            last edited by

            @tresrob no help?

            If it can help if I ping directly from pfsense site a to the remote network is ok but if i ping from a pc no.
            Please help me

            K 1 Reply Last reply Reply Quote 0
            • K
              Konstanti @tresrob
              last edited by

              @tresrob
              Hey
              Sorry for my English
              can you ping 192.168.0.1 from 192.168.50.0/24 ?
              And show the rules on lan of the pfsense b
              And rules on the opt1 pfsense A

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.