Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    LAN to LAN via IPSEC , Not all hostst are working?

    Scheduled Pinned Locked Moved IPsec
    2 Posts 2 Posters 284 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      Katana
      last edited by

      We have a PfSense instance running on a hosted server, 4 different locations are connecting to this PfSense instance using Draytek 2860 endpoints. All locations are connecting without issue. All Draytek devices are running the same FW version. All VPN Tunnels are configured the same across both devices (PfSense, Draytek endpoints)

      1 Site however, is having a strange issue. If I run an IP Scan on the local network - I detect 45 hosts. If I do an IP Scan from the cloud server, I only detect ~25 devices. The devices that simply aren't being detected, aren't in a specific IP Chunk or even in the same physical location at the site - I cannot establish any sort of pattern between what is detected and what is not.

      A good example would be 2 printers, connected to the same switch, that runs directly back to the Draytek on the site.

      X.X.X.51 - Can ping, can access web UI, can print to
      Tracing route to X.X.X.51 over a maximum of 30 hops
      1 <1 ms <1 ms <1 ms CLIENT-FW.CLIENTNAME[192.168.150.1]
      2 6 ms 6 ms 6 ms X.X.X.1
      3 10 ms 6 ms 7 ms X.X.X.51

      X.X.X.52 - No ping
      Tracing route to X.X.X.52 over a maximum of 30 hops
      1 <1 ms <1 ms <1 ms CLIENT-FW.CLIENTNAME[192.168.150.1]
      2 6 ms 6 ms 6 ms X.X.X.1
      3 * * * Request timed out.

      I've checked the network config of both printers, they are both OK.

      Any idea's because at this point - I'm stumped!

      1 Reply Last reply Reply Quote 0
      • D
        dhb
        last edited by

        Are the subnet masks configured correctly on the target PCs? I just ran into this after changing our entire network subnet - some of the devices I had not yet rebooted were still on the old subnet.

        D.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.