Welcome, Guest. Please login or register.
Did you miss your activation email?
+  pfSense Forum
Username:
Password:
 
 

  Show Posts
Pages: [1] 2 3 4 5 ... 12
1  pfSense English Support / OpenVPN / Re: OpenVPN site to site setup problems on: Today at 11:17:34 am
Post your server1.conf and client1.conf.
2  pfSense English Support / General Questions / Re: Used pfSense as a router at LAN event, went badly, trying to identify the issue. on: Yesterday at 05:04:17 pm
Several things going on:

1.  200+ machines, with 12 - 10/100 switches (they still make these?), your network was saturated before you even began Smiley....  Gigabit layer 3 switches with separate vlans would've helped, but would've been a lot of work and expensive.

2.  200.200.200.x is publicly rotatable... should have used a reserved range

3.  With that many guests, should have run PFsense on bare metal.



3  pfSense English Support / OpenVPN / Re: Routing issue with multiple OpenVPN connections on: Yesterday at 12:30:56 am
Post a network map, your server.conf's, your routing table and firewall rules and lets take a look.
4  pfSense English Support / OpenVPN / Re: Site 2 Site (S2S) tunnel up, but no traffic on: Yesterday at 12:18:52 am
You shouldn't of had to create any rules... especially on the WAN side... the wizard should've taken care of that.  Do this on both sides:

On the wan tab, pick a protocol, don't add both (unless you have a specific need for TCP, use UDP)... and the destination should be "WAN address":

UDP|*| *| WAN address | 1194 (OpenVPN)| *

On the OpenVPN tab, change your protocol to any:

*| *| *| *| *| *   

5  pfSense English Support / OpenVPN / Re: Open VPN TLS Error on: May 21, 2013, 11:57:19 pm
Just out of curiosity, what's with the funky port?
6  pfSense English Support / OpenVPN / Re: Routing problem - Newbee question on: May 21, 2013, 10:35:42 am
Quote
pfSense box: WAN 172.16.63.120/16   (static address from our internal office LAN), Gateway 172.16.63.1 (a Fortinet Firewall)
                   LAN  10.0.0.0/8  (the LAN for all the datacenter servers), Gateway 10.0.0.1
Is this a typo?  I thought this was changed to 10.0.0.0/9?

So, I'm not sure if you're specifically not answering the question or if I'm not being direct enough when I ask for the subnet mask.  For instance, when you say:

Quote
10.1.0.5     ns1   DNS server running on CentOS 6.4
10.1.0.6     ns2   DNS server running on CentOS 6.4
10.2.1.193 - 199  several servers all running CentOS 6.4 working as web-, database- and application servers
10.2.1.129 - 135  several servers all running Windows 2012 woring as AD, RDS and other Windows servers

You still have not given us the masks for the servers you are trying to reach.   You've given us the mask for the host machine, but not each guest.  Double check the mask on each guest and report back.

It would also be helpful if you provided a network map, so we can see how things are physically connected.  Also, where are you testing from?

Your firewall log is interesting.  You shouldn't be getting blocks between 10.1.0.5 and 10.0.2.128 because they are on the same LAN... that traffic should not be hitting the firewall.  Just another reason to double check connections and masks.
7  pfSense English Support / General Questions / Re: who is logged in WebGui on: May 20, 2013, 04:36:50 pm
Don't know if you can list them per se, but you will see messages like this in the system logs:

May 20 16:43:56   php: /index.php: Successful webConfigurator login for user 'admin' from 10.0.50.6
May 20 16:43:56   php: /index.php: Successful webConfigurator login for user 'admin' from 10.0.50.6
8  pfSense English Support / OpenVPN / Re: Routing problem - Newbee question on: May 20, 2013, 04:02:07 pm
Actually no.  but we seem to get more new information with every post Smiley

You said you couldn't ping a device with an IP of 10.2.1.199....  I am asking what that is and where that device is located... (physical machine, vm, router, etc?) ... and what is the subnet mask configured on that device?
9  pfSense English Support / OpenVPN / Re: Routing problem - Newbee question on: May 20, 2013, 03:13:32 pm
What is the subnet mask of 10.2.1.199?  And where is it located on the network?
10  pfSense English Support / OpenVPN / Re: Routing problem - Newbee question on: May 20, 2013, 02:34:33 pm
Yes, this is not making sense.

You said your network is now 10.0.0.0/9, so why are you pushing routes to 10.2.1.0/24, 10.0.0.0/24 and 10.1.0.0/24?  Those are all inside of 10.0.0.0/9... you've got something mixed up.  Give us a network map, so we can see how you're connected and what you're trying to accomplish.

If your LAN is truly 10.0.0.0/9 then in your VPN config, under Tunnel Settings, your Local Network should only read 10.0.0.0/9.... does it?

If so, we should see this in your server1.conf -> push "route 10.0.0.0 255.128.0.0" but we don't.

Also, you are using split tunnel, so why are you pushing google's DNS to your clients?  And your DNS servers are also inside your LAN, so I'm not sure why you're pushing those out either.


11  pfSense English Support / Gaming / Re: Unable to connect to Warframe servers on: May 19, 2013, 12:58:09 pm
It sounds like it's telling you everything you need to know.

Do you have UPNP enabled?

Services -> UPnP & NAT-PMP:

Enable UPnP & NAT-PMP
Allow UPnP Port Mapping

12  pfSense English Support / Gaming / Re: Cant connect to Playstation Network with PFsense :( on: May 19, 2013, 11:59:10 am
Care to share?
13  pfSense English Support / OpenVPN / Re: Routing problem - Newbee question on: May 17, 2013, 03:18:42 pm
server1.conf is located in /var/etc/openvpn
14  pfSense English Support / OpenVPN / Re: Routing problem - Newbee question on: May 17, 2013, 08:50:13 am
post your server1.conf and firewall rules from openvpn tab.

A network map will also be helpful.
15  pfSense English Support / General Questions / Re: Port forwarding (Remote desktop) hangs pfsense on: May 16, 2013, 08:25:00 am
Is the VM bridged or NAT'd?
Pages: [1] 2 3 4 5 ... 12
 

Page created in 0.03 seconds with 19 queries.