I have two edgerouters with an ipsec tunnel between them. Traffic passes fine between sites for systems etc. I have a unifi controller at site 1, with a single AP at site 2. 2 AP at site one work to controller fine. Trying to adopt the AP at site to, to the controller at site 1 is failing. The second site is remote. I can SSH into the AP and have done the firmware upgrade, and reset config. I cannot get the adoption to work over the ipsec site to site vpn. I have all dns resolving correctly, and the dhcp option set as well.
I get the erroron the AP of:
Status: Server Reject (http://unifi:8080/inform)
it appears that some traffic is being blocked or not routed over the ipsec tunnel to the primary site.
I am attaching the configs for both routers if anyone can help or has suggestions where to start. At this point I have a dead wireless network at the second site, as I cannot get it adopted, and have no physical access to the device.
Please advise...