Solved

Setting up VPN with pfSense

Posted on 2011-02-23
5
1,485 Views
Last Modified: 2012-05-11
I am trying to setup a VPN at my workplace with pfSense.

We want to use a simple "vpn.companyname.com" address and then setup the users in the PPTP area of the webGUI.

I've followed many "how-tos" online with no luck - I keep getting errors like "Error 800" and "Error 807" when trying to connect.

So my first question is....

How do I find out the IP that would be the incoming IP for VPN PPTP users? (ie: xxx.xxx.xxx.xxx)

How do I map that IP to vpn.companyname.com?
0
Comment
Question by:ProdigyOne2k
  • 3
  • 2
5 Comments
 
LVL 35

Expert Comment

by:Ernie Beek
ID: 34968644
Normally the incoming ip would be the public address of the firewall.

The mapping is done through your DNS provider. Or if you have access to a 'control panel' for your domain, just create an A record pointing vpn.companyname.com to the formentioned public ip address.
0
 

Author Comment

by:ProdigyOne2k
ID: 34970329
You mention "Normally the incoming ip would be the public address of the firewall."

How do I find out what the public address of the firewall is?  Would it be the same as the "whatismyip.com" address for every computer in the office?

We use everydns.net as our DNS provider - and I do see something setup there with "vpn.companyname.com" - but the IP does *not* match our "whatismyip.com" address on our PCs.  When i got to different PCs throughout the office they ALL give the same "whatismyip.com" address so I'm *assuming* that is the IP of the firewall as well - bad assumption?
0
 
LVL 35

Expert Comment

by:Ernie Beek
ID: 34970442
Well, I am assuming the same ;)
The firewall is the gateway to the internet for your network (I assume). So it should have at least two interfaces: one to the inside and one to the outside. When you issue a ifconfig on it you should be able to see the interface setup with the ip addresses.
0
 

Author Comment

by:ProdigyOne2k
ID: 34974951
Since the IP coming back when I ping "vpn.companyname.com" wasn't matching the IP I get internally - I edited that field on the DNS settings to point to our "whatismyip.com" IP that was coming up.  Now DNS takes a bit to refresh correct? (like 24 hours?!?)  - when I ping "vpn.companyname.com" the old IP is still showing up - not the new one - figure I just wait it out...
0
 
LVL 35

Accepted Solution

by:
Ernie Beek earned 500 total points
ID: 34975204
You're right. As a rule of thumb, take appox. 24 hours for the DNS updates to spread. So just wait. Tomorrow this time it should be ok. If not, we'll have to investigate your public ip(s) a bit more.
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

Suggested Solutions

The DROP (Spamhaus Don't Route Or Peer List) is a small list of IP address ranges that have been stolen or hijacked from their rightful owners. The DROP list is not a DNS based list.  It is designed to be downloaded as a file, with primary intention…
I've written this article to illustrate how we can implement a Dynamic Multipoint VPN (DMVPN) with both hub and spokes having a dynamically assigned non-broadcast multiple-access (NBMA) network IP (public IP). Here is the basic setup of DMVPN Pha…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now