I had created routes for all my subnet that are over the ipsec tunnel. 
Attached, what I did under System -> Routing

Everything work:
>From the gateway (pfsense) itself
>From any PC
from IOS devices..

>From Android.. it's weird. Attached the result I got pinging an ip over the 
>ipsec tunnel. 

PING 192.168.12.245 (192.168.12.245) 56(84) bytes of data.
>From 172.16.35.1: icmp_seq=1 Redirect Host(New nexthop: 192.168.12.245)
64 bytes from 192.168.12.245: icmp_seq=1 ttl=252 time=82.1 ms
>From 172.16.35.15: icmp_seq=2 Destination Host Unreachable
>From 172.16.35.15: icmp_seq=3 Destination Host Unreachable
>From 172.16.35.15: icmp_seq=4 Destination Host Unreachable
--- 192.168.12.245 ping statistics ---
4 packets transmitted, 1 received, +3 errors, 75% packet loss, time 3007ms
rtt min/avg/max/mdev = 82.159/82.159/82.159/0.000 ms, pipe 3



Does someone have an idea?

Thanks

-----Original Message-----
From: List [mailto:[email protected]] On Behalf Of Francois Roussy
Sent: August 6, 2016 11:28 AM
To: pfSense Support and Discussion Mailing List <[email protected]>
Subject: [pfSense] Route Issue over Ipsec

Good day,

I have an issue routing related..

I found that page:
https://doc.pfsense.org/index.php/Why_can%27t_I_query_SNMP%2C_use_syslog%2C_NTP%2C_or_other_services_initiated_by_the_firewall_itself_over_IPsec_VPN%3F

It represent exactly what I'm having as issue..

I did exactly that.. but, as soon I do it, I get the following:

-ONLY Android devices cant access Remote sites (over ipsec) resources -Anything 
else work (IOS,PC.. etc etc)

Anyone know or can guide me to fix that android issue?

Frank
_______________________________________________
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold
_______________________________________________
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold

Reply via email to