Prevent some LAN devices from being accessable over L2TP/IPsec
-
Check stuff like pfctl -sr, pfctl -ss and go from there. I have zero desire to dig into the code generating god knows what rules behind the scene, let alone to set up this nonsense here. IPsec alone is flaky like hell here with the strongswan POS, no need to add another level of crap into the mix. There's also this "Disable Auto-added VPN rules" checkbox in System - Advanced - Firewall.
Perhaps start your own thread, debugging your ICMP is really not what's this thread about.
-
Nice hang time on that punt. Maybe before belittling and insulting people next time you take a step back.
-
well thank you for trying to help … maybe best I pay the guys to get help ...
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.