Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Remote VPN Ipsec Tunnel not reachable from mobile clients

    Scheduled Pinned Locked Moved IPsec
    4 Posts 2 Posters 470 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      trasher mx
      last edited by

      Hi Guys,

      Im quite new in ipsec tunnels and stuff, so for now i created a tunnel ipsec between two locations local-net(192.168.11.0/24) and remote-net (172.16.0.0/16).
      So far, no issues everything working fine.

      After that i had to create mobile users, using openvpn same, no issues, the problem is when the mobile users tries to reach one of the remote address at remote-net (172.16.0.0/16) they are not able to, if they try with local-net (192.168.11.0/24). no issues.

      Can anyone help me with this?

      Thanks in advance.
      ![alt text](network.diagram.JPG image url)

      K 1 Reply Last reply Reply Quote 0
      • K
        Konstanti @trasher mx
        last edited by

        @trasher-mx
        Hi,
        perhaps you need to create additional phase 2 in ipsec tunnel settings with traffic selectors
        172.16.0.0/16<-> 192.168.12.0/24 (on both sides of the tunnel)

        1 Reply Last reply Reply Quote 0
        • T
          trasher mx
          last edited by

          Hi, @Konstanti

          I've already did it but didnt work

          K 1 Reply Last reply Reply Quote 0
          • K
            Konstanti @trasher mx
            last edited by

            @trasher-mx
            Then you need to show / check the phase 2 settings on both sides of the tunnel
            and show/check the rules on the openvpn interface
            Or using tcpdump to find the place where the packets are blocked

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.