IPsec VPN not routing

Started by gbulfon, July 18, 2019, 05:41:04 PM

Previous topic - Next topic
Hi, I'm getting mad making IPsec to work correctly.
I have configured a VPN from an OPNsense 19.7 public machine to a customer public firewall.
The VPN goes up, but then no ping is possible between the two private networks.
I discovered that from the OPNsense side, pinging a remote machine, packets goes out of the WAN, instead of being routed into the IPsec tunnel.
Looks like the routes are not installed.
I found this link, where someone had the same problem:

https://www.reddit.com/r/OPNsenseFirewall/comments/b6gzz4/ipsec_tunnel_routes_not_installed/

Tried running "ipsec route con3", but not working.
Also, it would be a mess to need to run these routes installs manually for every VPN I need to manage.

Any idea?

Same problem--I downgraded to 19.1, pn two OPNSense firewalls with routed IPSec vpn connections, got it working until a reboot, then my IPsec gw route disappeared on both ends and even if I re-enable, though I can get the IPSec link up, and can see traffic sent and received in logs, nothing shows up getting to the LAN hosts on either end. Very frustrating

Do you have auto nat for outbound nat enabled? Yesterday therecwas acguy with the same issue and settings to manual fixed it ( with adding the usual stuff )