OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • Mobile IPSec - No internet (on Android)
« previous next »
  • Print
Pages: [1]

Author Topic: Mobile IPSec - No internet (on Android)  (Read 3124 times)

almador

  • Newbie
  • *
  • Posts: 3
  • Karma: 0
    • View Profile
Mobile IPSec - No internet (on Android)
« on: April 14, 2019, 01:29:41 pm »
Hi All,

I'm ran into a problem where I can't find a solution to.

Overview net:
LAN: 10.10.10.0/23
WAN: static ip
IPSEC Mobile W LAN: 10.10.60.0/24

Setup mobile ipsec with the guide provided in the Wiki.
Connection works fine, I can ping from IPsec to LAN range and the other way around.

An iOS, I have working internet. So in other words only LAN traffic is sent over the tunnel.
On Android (9) I have working tunnel traffic but when trying to go outside the IPSEC/LAN range everything gets blocked.

After checking the NAT Outbound page, I saw that the IPSEC range was not there.
So I have created a new rule (changed to hybrid mode) and setup the following rule. Found the advise in another thread. But still no traffic

Link to image: http://prntscr.com/nbqlp8

The traffic test is done with ping to 1.1.1.1 and requesting http page

PS: 10.10.61.0/24 is used for OpenVPN, so no typo there
Logged

rainerle

  • Full Member
  • ***
  • Posts: 151
  • Karma: 9
    • View Profile
Re: Mobile IPSec - No internet (on Android)
« Reply #1 on: April 21, 2019, 11:45:27 am »
Hi,

some questions here:
- What Android IPsec client are you using?
- Is your plan to use split tunneling or do you want to route all your traffic throught your firewall from the mobile clients?
- Do you plan on using DNS names for the devices in 10.10.10.0/23 ?

Best regards
rainerle
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • Mobile IPSec - No internet (on Android)
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2