<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[VPN appears to connect but no traffic]]></title><description><![CDATA[<p dir="auto">Fairly new to pfSense. I'm attempting to make a IPSEC connection to a Fortigate router that is managed by a 3rd party.</p>
<p dir="auto">The pfSense system is behind NAT (ESP protocol is configured) on a VM with its LAN on 10.3.0.0/24.</p>
<p dir="auto">The remote Fortigate's LAN is 10.0.0.0/24.</p>
<p dir="auto">The P1 and P2 connections appear to show connection established. However I don't see a route to 10.0.0.0/24 in the routing table of the pfSense system despite having that destination LAN declared in the P2 settings. If I try a traceroute to 10.0.0.60 (a machine I know is there) the traffic appears to go out over the WAN interface rather than being directed over the VPN.</p>
<p dir="auto">I saw a similar post to this one where the fix was sorting out the P2 settings. But I don't think that's the issue here.</p>
<p dir="auto">Any suggestions for how I go about diagnosing this?</p>
<p dir="auto">Many thanks</p>
<p dir="auto">Ken</p>
]]></description><link>https://forum.netgate.com/topic/168340/vpn-appears-to-connect-but-no-traffic</link><generator>RSS for Node</generator><lastBuildDate>Sat, 18 Apr 2026 07:26:55 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/168340.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 07 Dec 2021 15:02:16 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to VPN appears to connect but no traffic on Tue, 14 Dec 2021 23:01:07 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/alejjime">@<bdi>alejjime</bdi></a> Its on the pfSense toward the bottom of the Phase 1 page. :-)</p>
<p dir="auto"><img src="/assets/uploads/files/1639522844128-screenshot-from-2021-12-14-22-58-57.png" alt="Screenshot from 2021-12-14 22-58-57.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/1014624</link><guid isPermaLink="true">https://forum.netgate.com/post/1014624</guid><dc:creator><![CDATA[kens]]></dc:creator><pubDate>Tue, 14 Dec 2021 23:01:07 GMT</pubDate></item><item><title><![CDATA[Reply to VPN appears to connect but no traffic on Tue, 14 Dec 2021 19:08:56 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/kens">@<bdi>kens</bdi></a> said in <a href="/post/1014530">VPN appears to connect but no traffic</a>:</p>
<blockquote>
<p dir="auto">Split Connections</p>
</blockquote>
<p dir="auto">Do you refer to "Split Connections" in the 3rd party firewall or in your pfSense? I have search in the setup of Phase 1 in my pfSense 2.5.2 fw, but I have not found this parameter.</p>
]]></description><link>https://forum.netgate.com/post/1014597</link><guid isPermaLink="true">https://forum.netgate.com/post/1014597</guid><dc:creator><![CDATA[alejjime]]></dc:creator><pubDate>Tue, 14 Dec 2021 19:08:56 GMT</pubDate></item><item><title><![CDATA[Reply to VPN appears to connect but no traffic on Tue, 14 Dec 2021 10:51:28 GMT]]></title><description><![CDATA[<p dir="auto">Thank you for all the responses. It turned to be firewall policies at the 3rd party Fortigate that needed attention.</p>
<p dir="auto">I case any one reads this in future. This configuration has several Phase 2 entries for different subnets. To make it work the setting "<strong>Split Connections</strong>" needed enabled in the Phase 1 configuration.</p>
]]></description><link>https://forum.netgate.com/post/1014530</link><guid isPermaLink="true">https://forum.netgate.com/post/1014530</guid><dc:creator><![CDATA[kens]]></dc:creator><pubDate>Tue, 14 Dec 2021 10:51:28 GMT</pubDate></item><item><title><![CDATA[Reply to VPN appears to connect but no traffic on Tue, 07 Dec 2021 23:36:57 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/kens">@<bdi>kens</bdi></a> When the connection attempt is made, can you see the traffic using the pfTop tool in pfSense?</p>
]]></description><link>https://forum.netgate.com/post/1013551</link><guid isPermaLink="true">https://forum.netgate.com/post/1013551</guid><dc:creator><![CDATA[alejjime]]></dc:creator><pubDate>Tue, 07 Dec 2021 23:36:57 GMT</pubDate></item><item><title><![CDATA[Reply to VPN appears to connect but no traffic on Tue, 07 Dec 2021 23:30:20 GMT]]></title><description><![CDATA[<p dir="auto">Is this the first IPsec connection on this firewall?  If so, do you have rules in place under IPsec to allow traffic over IPsec?</p>
<p dir="auto">If it is going out over the WAN, I would still be inclined to check the P1 and P2 settings. If the P2 is established correctly, PFsense should route it automatically.</p>
<p dir="auto">Are you using the 10.0.0.0/24 elsewhere in the system?</p>
]]></description><link>https://forum.netgate.com/post/1013548</link><guid isPermaLink="true">https://forum.netgate.com/post/1013548</guid><dc:creator><![CDATA[cswroe]]></dc:creator><pubDate>Tue, 07 Dec 2021 23:30:20 GMT</pubDate></item><item><title><![CDATA[Reply to VPN appears to connect but no traffic on Tue, 07 Dec 2021 15:05:48 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/kens">@<bdi>kens</bdi></a> I should say the pfSense system is 2.5.2</p>
<p dir="auto">I can change the pfSense system to be on a public IP if that would help</p>
]]></description><link>https://forum.netgate.com/post/1013465</link><guid isPermaLink="true">https://forum.netgate.com/post/1013465</guid><dc:creator><![CDATA[kens]]></dc:creator><pubDate>Tue, 07 Dec 2021 15:05:48 GMT</pubDate></item></channel></rss>