Solved

Setting up VPN with pfSense

Posted on 2011-02-23
5
1,501 Views
Last Modified: 2012-05-11
I am trying to setup a VPN at my workplace with pfSense.

We want to use a simple "vpn.companyname.com" address and then setup the users in the PPTP area of the webGUI.

I've followed many "how-tos" online with no luck - I keep getting errors like "Error 800" and "Error 807" when trying to connect.

So my first question is....

How do I find out the IP that would be the incoming IP for VPN PPTP users? (ie: xxx.xxx.xxx.xxx)

How do I map that IP to vpn.companyname.com?
0
Comment
Question by:ProdigyOne2k
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 35

Expert Comment

by:Ernie Beek
ID: 34968644
Normally the incoming ip would be the public address of the firewall.

The mapping is done through your DNS provider. Or if you have access to a 'control panel' for your domain, just create an A record pointing vpn.companyname.com to the formentioned public ip address.
0
 

Author Comment

by:ProdigyOne2k
ID: 34970329
You mention "Normally the incoming ip would be the public address of the firewall."

How do I find out what the public address of the firewall is?  Would it be the same as the "whatismyip.com" address for every computer in the office?

We use everydns.net as our DNS provider - and I do see something setup there with "vpn.companyname.com" - but the IP does *not* match our "whatismyip.com" address on our PCs.  When i got to different PCs throughout the office they ALL give the same "whatismyip.com" address so I'm *assuming* that is the IP of the firewall as well - bad assumption?
0
 
LVL 35

Expert Comment

by:Ernie Beek
ID: 34970442
Well, I am assuming the same ;)
The firewall is the gateway to the internet for your network (I assume). So it should have at least two interfaces: one to the inside and one to the outside. When you issue a ifconfig on it you should be able to see the interface setup with the ip addresses.
0
 

Author Comment

by:ProdigyOne2k
ID: 34974951
Since the IP coming back when I ping "vpn.companyname.com" wasn't matching the IP I get internally - I edited that field on the DNS settings to point to our "whatismyip.com" IP that was coming up.  Now DNS takes a bit to refresh correct? (like 24 hours?!?)  - when I ping "vpn.companyname.com" the old IP is still showing up - not the new one - figure I just wait it out...
0
 
LVL 35

Accepted Solution

by:
Ernie Beek earned 500 total points
ID: 34975204
You're right. As a rule of thumb, take appox. 24 hours for the DNS updates to spread. So just wait. Tomorrow this time it should be ok. If not, we'll have to investigate your public ip(s) a bit more.
0

Featured Post

Webinar: Aligning, Automating, Winning

Join Dan Russo, Senior Manager of Operations Intelligence, for an in-depth discussion on how Dealertrack, leading provider of integrated digital solutions for the automotive industry, transformed their DevOps processes to increase collaboration and move with greater velocity.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I've written this article to illustrate how we can implement a Dynamic Multipoint VPN (DMVPN) with both hub and spokes having a dynamically assigned non-broadcast multiple-access (NBMA) network IP (public IP). Here is the basic setup of DMVPN Pha…
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question