Skip to main content
Deftone
New Member
August 9, 2016
Question

Windows IPSec

  • August 9, 2016
  • 2 replies
  • 3434 views

Hello again,

 

I have a question about configuring IPSec for windows. Yesterday I configured (with wizard) an IPSEc tunnel to connect my Windows10 notebook with my home enviroment. So far so good.

 

As for now I can conenct to my enviroment but I can not browse the internet. Even when I create a policy from IPsec range to WAN interface I can't browse the internet... What I saw is that my PC is getting the right ipaddress I specified for the ipsec _range but the pc has no default gateway... I know that I can eanble split tunneling but that is not what I want.

 

Is the lack of default gateway the problem over here?

    2 replies

    Deftone
    DeftoneAuthor
    New Member
    August 9, 2016

    Hmh I ran wizzard again and now it's working. The only thing I needed to change was the policy from ipsec_range to wan1. I needed to chenge the type to all en enable nat. Now it's working. Next step is IPSec wint windows and certificate instead of psk :)

    ede_pfau
    SuperUser
    SuperUser
    August 9, 2016

    The crucial point here is to enable NAT in the policy from LAN to WAN. Otherwise, traffic with private source addresses will leave the WAN interface but cannot be routed back.

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!