<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Failback IPsec Tunnel]]></title><description><![CDATA[<p dir="auto">Hello everyone,</p>
<p dir="auto">In order to create an IPsec VPN between two sites, I proceeded as follows :</p>
<p dir="auto">Site A: Pfsense with two WAN1 and WAN2 interfaces (Failover - Gateway Group)<br />
Site B: Pfsense with a single WAN interface</p>
<p dir="auto">I configured IPsec on Site A to choose the gateway group (WAN1 as primary link -  WAN2 as second link).</p>
<p dir="auto">I configured two site-to-site VPN separatly on site B in responder only mode to etablish connection with both WAN1 and WAN2 addresses on Site A</p>
<p dir="auto">1st case: The two WAN links of site A are UP, IPsec establishes the connection and everything works normally (OK)</p>
<p dir="auto">2nd case: I disconnect my primary link WAN1, the IPsec switch well on WAN2 to establish the connection again (OK)</p>
<p dir="auto">3rd case: when I reconnect my primary link WAN1 IPsec always keeps its tunnels establish with WAN2.</p>
<p dir="auto">Thanks for your help,</p>
]]></description><link>https://forum.netgate.com/topic/141974/failback-ipsec-tunnel</link><generator>RSS for Node</generator><lastBuildDate>Wed, 22 Apr 2026 21:22:15 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/141974.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 27 Mar 2019 09:34:03 GMT</pubDate><ttl>60</ttl></channel></rss>