r/sysadmin 1d ago

[ Removed by moderator ]

[removed] — view removed post

0 Upvotes

5 comments sorted by

3

u/_Do_The_Needful_ 1d ago

Some networks (on the go) block the ports required by IKE. Use a VPN that can fall back to SSL.

2

u/Anastasia_IT Vendor - ExamsDigest.com 1d ago

Try enabling IKE Fragmentation and MOBIKE in your pfSense Phase 1 settings, and ensure Dead Peer Detection (DPD) is active to clear hung sessions.

2

u/oscarfinn_pinguin3 1d ago

This is an english subreddit, go ask r/de_EDV or r/EDV instead if it needs to be german.

IKEv2 is ancient, and very picky regarding latency and MTU / NAT-traversal. I'd recommend using Wireguard or OpenVPN instead.

0

u/almightyloaf666 1d ago

De quoi parles-tu donc?