OPNsense Forum

English Forums => Virtual private networks => Topic started by: kenobits on March 04, 2021, 01:08:25 pm

Title: VPN OpnSense-Wireguard connection Error
Post by: kenobits on March 04, 2021, 01:08:25 pm
Hi all, hope you're doing good :)

maybe you can help me with this: we tried to set up a IPSec tunnel between two Sites:


Site1[Wireguard Firewall, local Network behind NAT/from: 192.168.100.0 to 192.168.105.0]--------[WAN]-------[OpnSense]

Phase1 seems to work just fine, but we can't get phase2 up and running, getting these error logs:

Wireguard: ERROR  0x021a0011 Received unacceptable traffic selector in IKE_AUTH request

OpnSense: received TS_UNACCEPTABLE, no CHild_SA built

They've changed their network for testing purposes to another, so we don't need NAT, the tunnel went up and everything worked - our problem is the local Network on the Wireguard site has to be nated, for we have another customer with the same local Network

Has anybody an idea on how to solve this?