IPsec site-to-site broken packets
-
Has a tunnel between two sites, both are pfSense 2.7.0
Ph 1 AES256 - SHA256 - DH14
It starts, ping is ok between subnets, but when I make a http request, I receive a broken packet. Tried to dump packets - so it comes to tunnel ok, but exites with "TCP Previous segment not captured" (Wireshark mark ). Packet on exit contains some of html data, but without first part ( it is a single packet ). Also have "Illegal characters found in header name" in decrypted packets. -
Fixed by change IPSec to OpenVPN ( so even speed increased )