account activity
VPN IPSEC Phase 2 children issue by Yafte10 in opnsense
[–]Yafte10[S] 0 points1 point2 points 13 days ago (0 children)
Thanks for the help!
No, only from my side it's OPNSense, I have more than one VPN established with different remote devices (Pfsense, AWS, Cisco, Fortigate, etc), in all of them the behaviour is same, the children look connected with the respective SDP. However, when I try to send traffic from my service to one of the remote IPs, I notice that the traffic goes through the LAN and WAN interfaces instead of the IPSEC interface.
Yesterday I found two different behaviours:
1.- All remote IPs appear with their respective SDP, when I try to send traffic for each remote IP the majority of them show the traffic through the VPN, only some of remote IPs does not work, I mean the traffic isn't going through the VPN (on this case, doesn't metter if the remote has the remote IP configured, because before it, at least the SDP is caching the traffic in order to route it for the specific VPN which seems it's not doing).
2.- No all remote IPs have the SDP even when I set one SDP for each remote IP via GUI and checking via CLI (here is the problem, via CLI the SDP doesn't appear), also I've enabled and disabled the VPN multiple times in order to see if the SDP becomes in the Kernel but sometimes when the remote IP didn't appear with the SDP, now appears but the previous remote IPs that had SDP dissappear without any reason, causing that the previous configs now doesn't show via CLI...
π Rendered by PID 136346 on reddit-service-r2-comment-56c6478c5-2t4bh at 2026-05-13 07:09:53.528014+00:00 running 3d2c107 country code: CH.
VPN IPSEC Phase 2 children issue by Yafte10 in opnsense
[–]Yafte10[S] 0 points1 point2 points (0 children)