Hi All,

I'm loving PFSense and have just deployed the embedded version on some ALIX 
boards for several SOHO users and in the office.  My thanks to everyone who has 
supported/worked on the project. 

My question is how to configure the the firewall to allow for site to site 
IPSec tunnels at the gateway and not kill access to the L2TP/IPSec server 
sitting behind the office gateway.  If I forward UDP 500 to the L2TP server (OS 
X Tiger), L2TP clients work fine but the site to site IPSec tunnels cease 
functioning (no response from the office gateway).  If I turn of the rule, the 
tunnels work fine but the L2TP clients can't connect (no response).  I was 
using a couple of Snapgear gateways before and like magic (because I'm ignorant 
about exactly how it worked) both the site to site and L2TP tunnels worked 
(with UDP 500 forwarded to the L2TP server).  I'm assuming that the gateway was 
inspecting the UDP 500 traffic and only forwarding L2TP traffic that was not 
related to tunnels on the gateway.

Any help would be greatly appreciated.

Thank you,

John

P.S. I first posted this question on the PFSense forum on May 11th but no one 
has responded. http://forum.pfsense.org/index.php/topic,9394.0.html

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to