Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Tunnelling all traffic to remote sites – having issues

    Scheduled Pinned Locked Moved IPsec
    2 Posts 1 Posters 816 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      breakaway
      last edited by

      My goal is to route all the traffic from my branch office through the head office. To that end I used this guide and setup the IPSEC tunnel, firewall rules and NAT rules as outlined in the guide: https://doc.pfsense.org/index.php/Routing_internet_traffic_through_a_site-to-site_IPsec_tunnel

      Despite pings etc working in all directions I am having some trouble this. The tunnel comes up, and I can ping the head office pfSense from the branch office and vice versa. I can also ping from a machine at the branch office to a machine at the head office and vice versa.

      However internet seems to be extremely intermittent. Connections time out and at times web pages will load without any CSS formatting.

      What could be causing this? I have attached screenshots of the config at both ends if that helps.

      http://i.snag.gy/sG0Hd.jpg

      ![S2S ITL.png](/public/imported_attachments/1/S2S ITL.png)
      ![S2S ITL.png_thumb](/public/imported_attachments/1/S2S ITL.png_thumb)

      1 Reply Last reply Reply Quote 0
      • B
        breakaway
        last edited by

        I have found the fix.

        Had to enable "Clear invalid DF bits instead of dropping the packets" in System > Advanced > Firewall/NAT.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.