<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Initial site to site IPSEC not working ...]]></title><description><![CDATA[<p dir="auto">I'll start by saying I'm new to ipsec and certainly don't have a depth of knowledge with VPN etc.</p>
<p dir="auto">I've used the SG3100 to setup remote users and that has worked fine.<br />
So, now I need to setup some site to site tunnels using ipsec from the SG3100 to 3rd party LTE routers. I am trying to keep things simple to simply fault finding before trying to harden firewalls etc. I have a test router going that is connected and has a dyndns address. I have it configured and can connect (but only from the SG3100 which is odd) but when connected nothing passes when though I have an any/any rule as per the pfsense book ...</p>
<p dir="auto">If anyone has any links to any docs that don't assume pfsense both ends that I can reference it would be appreciated.</p>
]]></description><link>https://forum.netgate.com/topic/152440/initial-site-to-site-ipsec-not-working</link><generator>RSS for Node</generator><lastBuildDate>Sun, 19 Apr 2026 17:57:18 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/152440.rss" rel="self" type="application/rss+xml"/><pubDate>Sun, 12 Apr 2020 06:39:03 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Initial site to site IPSEC not working ... on Fri, 24 Apr 2020 22:59:13 GMT]]></title><description><![CDATA[<p dir="auto">The rules were automatic, the issue was the remote and local identifiers needed to be present. Any / Any did'nt cut it. All sorted although I did'nt find that answered anywhere here.</p>
]]></description><link>https://forum.netgate.com/post/907977</link><guid isPermaLink="true">https://forum.netgate.com/post/907977</guid><dc:creator><![CDATA[oldlock]]></dc:creator><pubDate>Fri, 24 Apr 2020 22:59:13 GMT</pubDate></item><item><title><![CDATA[Reply to Initial site to site IPSEC not working ... on Fri, 24 Apr 2020 19:23:02 GMT]]></title><description><![CDATA[<p dir="auto">Did you add a rule to the ipsec tab on the firewall rules to allow traffic?</p>
]]></description><link>https://forum.netgate.com/post/907921</link><guid isPermaLink="true">https://forum.netgate.com/post/907921</guid><dc:creator><![CDATA[ddbnj]]></dc:creator><pubDate>Fri, 24 Apr 2020 19:23:02 GMT</pubDate></item><item><title><![CDATA[Reply to Initial site to site IPSEC not working ... on Mon, 13 Apr 2020 10:02:12 GMT]]></title><description><![CDATA[<p dir="auto">Ok. so some small steps forward. The tunnel is up and will establish from the client end which is what I need.</p>
<p dir="auto">but</p>
<p dir="auto">No, and I mean no traffic is passed, or even appears to be hitting the firewall.</p>
<p dir="auto">Thoughts ?</p>
]]></description><link>https://forum.netgate.com/post/904785</link><guid isPermaLink="true">https://forum.netgate.com/post/904785</guid><dc:creator><![CDATA[oldlock]]></dc:creator><pubDate>Mon, 13 Apr 2020 10:02:12 GMT</pubDate></item><item><title><![CDATA[Reply to Initial site to site IPSEC not working ... on Sun, 12 Apr 2020 08:45:27 GMT]]></title><description><![CDATA[<p dir="auto"><img src="/assets/uploads/files/1586680989869-capture.jpg" alt="Capture.JPG" class=" img-fluid img-markdown" /></p>
<p dir="auto">Also if anyone has any idea why I have to leave the endpoints (local and remote) as any any to get any (ha ha) kind of connection to begin to form I'd be keen to know ..</p>
]]></description><link>https://forum.netgate.com/post/904554</link><guid isPermaLink="true">https://forum.netgate.com/post/904554</guid><dc:creator><![CDATA[oldlock]]></dc:creator><pubDate>Sun, 12 Apr 2020 08:45:27 GMT</pubDate></item></channel></rss>