I have a pfsense -> mikrotik using ipsec and gre.
I sanitized the public IPs.
I shoot a ping between the tunnel IPs. On pfsense side(172.16.0.1), I have:
Code: Select all
(wan traffic)
10:23:32.367083 IP 1.1.1.1 > 2.2.2.2: ESP(spi=0xcdaad2ef,seq=0xd), length 100
10:23:32.367163 IP 2.2.2.2 > 1.1.1.1: ESP(spi=0x08732688,seq=0xb), length 116
10:23:33.372045 IP 1.1.1.1 > 2.2.2.2: ESP(spi=0xcdaad2ef,seq=0xe), length 100
10:23:33.372099 IP 2.2.2.2 > 1.1.1.1: ESP(spi=0x08732688,seq=0xc), length 116
10:23:34.380881 IP 1.1.1.1 > 2.2.2.2: ESP(spi=0xcdaad2ef,seq=0xf), length 100
10:23:34.380933 IP 2.2.2.2 > 1.1.1.1: ESP(spi=0x08732688,seq=0xd), length 116
(gre traffic)
10:20:37.955303 IP 172.16.0.11 > 172.16.0.1: ICMP echo request, id 5987, seq 0, length 36
10:20:37.955333 IP 172.16.0.1 > 172.16.0.11: ICMP echo reply, id 5987, seq 0, length 36
10:20:38.960379 IP 172.16.0.11 > 172.16.0.1: ICMP echo request, id 5987, seq 1, length 36
10:20:38.960391 IP 172.16.0.1 > 172.16.0.11: ICMP echo reply, id 5987, seq 1, length 36
10:20:39.968975 IP 172.16.0.11 > 172.16.0.1: ICMP echo request, id 5987, seq 2, length 36
10:20:39.968988 IP 172.16.0.1 > 172.16.0.11: ICMP echo reply, id 5987, seq 2, length 36
10:20:40.974048 IP 172.16.0.11 > 172.16.0.1: ICMP echo request, id 5987, seq 3, length 36
10:20:40.974063 IP 172.16.0.1 > 172.16.0.11: ICMP echo reply, id 5987, seq 3, length 36
Code: Select all
60 3.09 casasv-caovh 172.16.0.11 172.16.0.1 icmp 56 0 no
61 3.091 ether1-gateway 1.1.1.1 2.2.2.2 ipsec-esp 120 0 no
63 3.258 ether1-gateway 2.2.2.2 1.1.1.1 ipsec-esp 136 0 no
67 4.095 casasv-caovh 172.16.0.11 172.16.0.1 icmp 56 0 no
68 4.095 ether1-gateway 1.1.1.1 2.2.2.2 ipsec-esp 120 0 no
69 4.262 ether1-gateway 2.2.2.2 1.1.1.1 ipsec-esp 136 0 no
Best regards,
Wagner Sartori Junior