IPsec policy issues for WAN traffic

Tue Feb 12, 2019 10:43 am

There are 2 locations with static ip s on each of their WAN interfaces.

I have setup de IPsec policy so that on both ends i have an encrypt all rule: on router A: add src-address=bbb.bbb.bbb.bbb/32 on router B: add dst-address=bbb.bbb.bbb.bbb/32

My issue is that i can no longer access services(forwarder ports) on the WAN ports from A WAN ip to B WAN ip and vice versa. Only with those IPsec policy's active dose this issue arrive.

Over the ipsec connections i have some L2TP tunnels for the LAN A to LAN B and vice versa traffic.

How can i modify the rules so that services on different ports on routers A and B can be accessed?

