Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    IPSEC tunnel problem with Linux boxes

    Scheduled Pinned Locked Moved IPsec
    2 Posts 1 Posters 174 Views 1 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M Offline
      miboco
      last edited by

      Hi,
      we finally replaced some old OpenBSD boxes at a customer location with a Netgate 1100 running pfSense 25.11. On our site is a PC Engines APU.6B4 with pfSense 2.7.2. The configuration of the IPSEC tunnel works as shown in the pfSense documentation. Actually there are no blocking rules in place. Services on the customer site are web, smb-filesharing, vnc and rdp Remotedesktop, ssh and mailservices with smtp and imap.
      Out two macs, an iPad and a Windows 10 vm can use any of them, no problems. But our 3 linux boxes, 2 Arch Linux and 1 Zorin OS, are showing a strange picture:
      Ping: OK
      imap & smtp: OK
      smb: downloads: OK, uploads: timeout
      https: timeout during tls handshake
      ssh: timeout
      Remote desktops: timeout
      The linux machines are sitting on the same network as the macs so there shouldn´t be any differences, running nc on the Linux boxes always returns open ports, in short: we don´t have any idea why they don´t work. Any help would be appreciated.

      Best regards,

      Mike

      M 1 Reply Last reply Reply Quote 0
      • M Offline
        miboco @miboco
        last edited by

        Hi,
        turns out the problem is with the mtu. Reducing it to 1400 solves the problem.

        Best regards,

        Mike

        1 Reply Last reply Reply Quote 1
        • First post
          Last post
        Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.