Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPSec tunnel to Unifi USG up but no traffic passes

    Scheduled Pinned Locked Moved IPsec
    6 Posts 3 Posters 1.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • O
      orangehand
      last edited by

      All looks fine; the remote subnets are correctly stated, but nothing is singable from either end. Anyone know how to sort, please?

      1 Reply Last reply Reply Quote 0
      • dotdashD
        dotdash
        last edited by

        I haven't had much trouble going from a USG to pfSense. On the USG side, I used site-to-site, manual IPSec, (fill in settings), uncheck enable dynamic routing.

        1 Reply Last reply Reply Quote 0
        • O
          orangehand
          last edited by orangehand

          Dynamic routing was enabled, so I've unchecked it, but still cannot ping the LAN IP of the USG from pfSense..... Any more ideas as to where to look? I haven't got SSH access to the USG right now, but will have tomorrow I hope

          1 Reply Last reply Reply Quote 0
          • dotdashD
            dotdash
            last edited by

            Sorry, not sure what else to check. In my case, unchecking dynamic routing got it going.

            1 Reply Last reply Reply Quote 0
            • O
              orangehand
              last edited by

              Doh - there was never an issue it seems. BEWARE: unless I was doing it wrong (using defaults) you cannot test the VPN by pinging the other end from within the UI; you have to test using endpoints. Wasted hours on that one!! Netgate, is that a bug?

              1 Reply Last reply Reply Quote 0
              • M
                MeCJay12
                last edited by

                When I make an IPsec between two pfSense routers I can ping both sides of the tunnel from the pfSense UI. Are you sure you don't still have suttle config error or issue?

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.