Questions tagged [ipsec]

IPsec (Internet Protocol Security) is a protocol for securing IP communications by authenticating and encrypting each IP packet of a communication session.

IPsec (Internet Protocol Security) is a protocol for securing IP communications by authenticating and encrypting each IP packet of a communication session.

1031 questions
0
votes
0 answers

Site to site IKEv2 VPN between two Windows Server 2012 R2 machines only working in one direction

We are trying to set up a Site-to-Site VPN with IKE v2 using Windows Server 2012 R2 machines as the tunnel endpoints on each end. We are able to PING and get replies in one direction, but we are not able to PING and get replies in the other…
0
votes
1 answer

Use a virtual Network in PFsense to redirect packages to device in another network

I'm using PFsense and i have this situation: Network Example I have a Pfsens already connected with "Site1" through OpenVPN. I can acess the "Device" normally in Pfsense network. But now i have to make another VPN with "Concessionaria" but this…
0
votes
1 answer

No config named ... error when running ipsec up

I am getting the 'no config named ...' error like others have posted. I have auto=add in my etc/ipsec.conf file as I read in one post. I have followed everything which I have read online to no avail. I am running Ubuntu 22.04.1 and the latest…
RodO
  • 1
  • 2
0
votes
0 answers

How to silence ipsec server?

I'm new at ipsec. Using libreswan 3.25-9.1.el7_8 on CentOS7. I'm able to get a connection working, and follow the documentation, but cannot find how to silence the pluto process so it doesn't respond to external scans. the symptom is: Dec 08…
0
votes
1 answer

VyOS on AWS EC2, new IPSEC tunnel won't pass traffic- what am I missing

This is an existing environment that I just stepped into. Running VyOS as a AWS EC2 instance, which handles all of the site-to-site routing for our company. Everything is already up and working. We just acquired a new company for which I replaced…
boog
  • 220
  • 3
  • 11
0
votes
0 answers

ike-scan 0 returned handshake 0 returned notify

I need to establish vpn connection to a specific site, I used strongswan and configure my side according to the provided parameters from another side, but when I try to connect I get 'peer not responding'. I used ike-scan on the ip they gave to me…
0
votes
0 answers

L2TP VPN disconnects after requests to NAS in VPN network

I installed a L2TP IPsec VPN over a Unifi USG for a client of mine. Everything works like a charm, expect one user, that tries to connect with a MacStudio. He permanently gets disconnected after he fires a request to the NAS in the VPN. That…
0
votes
0 answers

Strongswan remote_ts as 0.0.0.0/0, now I can't access my vps

I have a vps, and I tried to install a site-to-site vpn using stronswan and swanctl, I accidentally put remote_ts to 0.0.0.0/0 and now I can't access my vps through ssh. How can I regain access ?
0
votes
1 answer

Forward virbr0 (VM) traffic through IPSec tunnel

I have a virbr0 interface, created by libvirt with inet 10.1.2.1 netmask 255.255.255.0 broadcast 10.1.2.255 There's an active IPSec tunnel with leftsubnet=10.1.2.0/24 rightsubnet=192.168.160.0/20 The VMs are able to reach 192.168.160.0/20 but…
Jochen
  • 137
  • 1
  • 8
0
votes
0 answers

DO to Azure, site to site VPN, can my client private IP send the traffic?

Using Strongswan IPSEC eth0 IP is xx.xx.129.177 (which is our public IP and the one currently sending requests) the gate way to eth0 is xx.xx.128.1 eth0:1 IP is 10.16.0.24/16 - Client expects this address to deliver TCP requests and make the SQL…
0
votes
1 answer

Can't communicate on remote ip using local vip through IPSEC (IPSEC is up + Test port works)

good afternoon. I have the following problem in pfSense: The Service for package Zabbix Proxy not want to go up. The scenario is as follows: pfSense has a IPSEC VPN with Zabbix Server Zabbix IP is 192.168.1.248 pfSense has a VIP (Virtual IP)…
Raul Chiarella
  • 216
  • 1
  • 4
  • 17
0
votes
0 answers

Windows Server 2019 RRAS: L2TP/IPSEC Certificate Configuration

This is my first post on any SE related site. You guys have been such a valuable component of my search results that for 20+ years I've always found answers and never had to post, a testament to the quality of the content on SE. I'm having some…
Gerald
  • 1
  • 1
0
votes
0 answers

No Route To Host With StrongSwan Tunnel Interface

I'm using Ubuntu 20.04 with Strongswan 5.8.2. Configured using the Route-Based VPN instructions. The site-to-site tunnel establishes and is stable, however, I can't route traffic over it. When I try to ping, ssh, curl I get a "No route to host"…
0
votes
0 answers

Double Proxy: IPSec to Server1 then SSH to Server2

What I'm trying to achieve: (Clients)(Server 1)(Server 2) --> Free Internet How is that possible for both UDP and TCP traffics? What I've done: I ran this on Server1: ssh -N -D 1080 user@Server2:7999 I used gost…
Masood Lapeh
  • 48
  • 1
  • 5
0
votes
0 answers

Strongswan IPSec tunnel between linux and windows : "NO_PROPOSAL_CHOSEN"

I'm trying to set up a VPN tunnel between a win10 host and a ubuntu host. Below the configuration I have: /etc/ipsec.conf config setup charondebug=1 uniqueids=yes strictcrlpolicy=no conn %default ikelifetime=60m …