<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Ipsec site to site problem web server]]></title><description><![CDATA[<p dir="auto">I have a tunnel ipsec, where the remote network needs access to a web server, I can verify the rules and I made a telnet from the remote local network to the web server responds but entering by browser (chrome, mozilla, etc) don't respond.</p>
<p dir="auto">This is my version firewall 2.3.4-RELEASE (amd64)<br />
FreeBSD 10.3-RELEASE-p19</p>
<p dir="auto">Any ideas?</p>
]]></description><link>https://forum.netgate.com/topic/144282/ipsec-site-to-site-problem-web-server</link><generator>RSS for Node</generator><lastBuildDate>Thu, 11 Jun 2026 12:48:11 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/144282.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 18 Jun 2019 17:40:57 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Ipsec site to site problem web server on Tue, 25 Jun 2019 10:37:09 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/runaway19">@<bdi>runaway19</bdi></a> said in <a href="/post/849247">Ipsec site to site problem web server</a>:</p>
<blockquote>
<p dir="auto">The web server network is internal, not public.</p>
</blockquote>
<p dir="auto">My question was, how do you try to access it?<br />
By its public hostname or by its public IP or by its internal hostname or IP?</p>
]]></description><link>https://forum.netgate.com/post/850153</link><guid isPermaLink="true">https://forum.netgate.com/post/850153</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Tue, 25 Jun 2019 10:37:09 GMT</pubDate></item><item><title><![CDATA[Reply to Ipsec site to site problem web server on Mon, 24 Jun 2019 15:01:51 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/runaway19">@<bdi>runaway19</bdi></a><br />
Try to start <strong>tcpdump</strong> during the connection and show what is happening at this moment</p>
]]></description><link>https://forum.netgate.com/post/849992</link><guid isPermaLink="true">https://forum.netgate.com/post/849992</guid><dc:creator><![CDATA[Konstanti]]></dc:creator><pubDate>Mon, 24 Jun 2019 15:01:51 GMT</pubDate></item><item><title><![CDATA[Reply to Ipsec site to site problem web server on Mon, 24 Jun 2019 14:59:12 GMT]]></title><description><![CDATA[<p dir="auto">Apply that change and the problem still persists.</p>
]]></description><link>https://forum.netgate.com/post/849990</link><guid isPermaLink="true">https://forum.netgate.com/post/849990</guid><dc:creator><![CDATA[runaway19]]></dc:creator><pubDate>Mon, 24 Jun 2019 14:59:12 GMT</pubDate></item><item><title><![CDATA[Reply to Ipsec site to site problem web server on Sat, 22 Jun 2019 12:25:30 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/runaway19">@<bdi>runaway19</bdi></a></p>
<p dir="auto">Hey<br />
try reducing the MSS value</p>
<p dir="auto"><strong>VPN/IPsec/Advanced Settings</strong></p>
<p dir="auto">for example</p>
<p dir="auto"><img src="/assets/uploads/files/1561206327197-b7dd8fa3-2cde-42f4-bc1b-eb2da6a6315b-image-resized.png" alt="b7dd8fa3-2cde-42f4-bc1b-eb2da6a6315b-image.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/849713</link><guid isPermaLink="true">https://forum.netgate.com/post/849713</guid><dc:creator><![CDATA[Konstanti]]></dc:creator><pubDate>Sat, 22 Jun 2019 12:25:30 GMT</pubDate></item><item><title><![CDATA[Reply to Ipsec site to site problem web server on Fri, 21 Jun 2019 15:13:51 GMT]]></title><description><![CDATA[<p dir="auto">nobody knows?</p>
]]></description><link>https://forum.netgate.com/post/849586</link><guid isPermaLink="true">https://forum.netgate.com/post/849586</guid><dc:creator><![CDATA[runaway19]]></dc:creator><pubDate>Fri, 21 Jun 2019 15:13:51 GMT</pubDate></item><item><title><![CDATA[Reply to Ipsec site to site problem web server on Wed, 19 Jun 2019 12:23:15 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/viragomann">@<bdi>viragomann</bdi></a> said in <a href="/post/849146">Ipsec site to site problem web server</a>:</p>
<blockquote>
<p dir="auto">By the web servers public host name?<br />
You have to add a DNS override on the remote site for this host name, pointing to its local IP address.</p>
</blockquote>
<p dir="auto">Thanks for your answer. The web server network is internal, not public.</p>
]]></description><link>https://forum.netgate.com/post/849247</link><guid isPermaLink="true">https://forum.netgate.com/post/849247</guid><dc:creator><![CDATA[runaway19]]></dc:creator><pubDate>Wed, 19 Jun 2019 12:23:15 GMT</pubDate></item><item><title><![CDATA[Reply to Ipsec site to site problem web server on Tue, 18 Jun 2019 19:54:55 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/runaway19">@<bdi>runaway19</bdi></a> said in <a href="/post/849121">Ipsec site to site problem web server</a>:</p>
<blockquote>
<p dir="auto">but entering by browser (chrome, mozilla, etc) don't respond.</p>
</blockquote>
<p dir="auto">By the web servers public host name?<br />
You have to add a DNS override on the remote site for this host name, pointing to its local IP address.</p>
]]></description><link>https://forum.netgate.com/post/849146</link><guid isPermaLink="true">https://forum.netgate.com/post/849146</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Tue, 18 Jun 2019 19:54:55 GMT</pubDate></item></channel></rss>