1
Virtual private networks / Re: VPN IPSec through LAN nic has no reply-to
« on: May 19, 2023, 09:29:54 pm »
Things I've tried and discovered.
To compare, I installed pfSense with the same configuration and the packets sent to the destination computer were containing the right Destination IP, the pfSense one (is this the Reply-To or it is NAT doing the masquerade?).
So on OPNsense, I tried to add manual NAT outbound rules, which modifies the destination IP in the packet, the receiving computer replies to OPNsense, which then looses the packet, it does not seem to know where to return it! Maybe the manual NAT outbound rule is just confusing it...
Any suggestions as to what to try next?
To compare, I installed pfSense with the same configuration and the packets sent to the destination computer were containing the right Destination IP, the pfSense one (is this the Reply-To or it is NAT doing the masquerade?).
So on OPNsense, I tried to add manual NAT outbound rules, which modifies the destination IP in the packet, the receiving computer replies to OPNsense, which then looses the packet, it does not seem to know where to return it! Maybe the manual NAT outbound rule is just confusing it...
Any suggestions as to what to try next?