Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can't access local network when connected from pfsense to remote side via vpn

    Scheduled Pinned Locked Moved General pfSense Questions
    16 Posts 7 Posters 1.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • emammadovE
      emammadov
      last edited by

      My question seemed unclear. The remote organization has pptp vpn which we give IT support to them. When I connect them via pptp vpn, I can't access my local network then.

      Elvin

      1 Reply Last reply Reply Quote 0
      • RicoR
        Rico LAYER 8 Rebel Alliance
        last edited by Rico

        Still unclear, with pfSense 2.4.4 you can't connect as PPTP Client because the PPTP VPN Client is removed.
        Or do you use PPTP directly on your Client machine? This has nothing to do with pfSense then....and you should never use PPTP anyway since it is completely broken and unsecure.

        -Rico

        stephenw10S 1 Reply Last reply Reply Quote 0
        • emammadovE
          emammadov
          last edited by emammadov

          Pptp vpn is in my windows machine to connect to remote sides. Our network is pfsense.

          Prior to pfsense in our network, I have used Mikrotik, I didn't have this problem.
          I disabled 'Use default Gateway for remote networks" on my windows machine, but then I can't access servers on remote network.

          0_1541348003455_VPN interface.png

          Elvin

          1 Reply Last reply Reply Quote 0
          • RicoR
            Rico LAYER 8 Rebel Alliance
            last edited by

            Overlapping Subnets in Local and Remote Side?

            -Rico

            1 Reply Last reply Reply Quote 0
            • emammadovE
              emammadov
              last edited by emammadov

              What I mean is, we are using pfsense at our company. I can access remote network servers, but can't access my local network when connected via vpn to remote side. Pfsense doesn't allow me to access my local network when connected to remote organization via vpn. But we used Mikrotik before pfsense at our network and we didn't have this problem.

              Elvin

              stephenw10S 1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator @Rico
                last edited by stephenw10

                @rico said in Can't access local network when connected from pfsense to remote side via vpn:

                Still unclear, with pfSense 2.4.4 you can't connect as PPTP Client because the PPTP VPN Client is removed.

                That's not actually entirely correct, you can still create a PPTP interface to use as a client. Though you should only do so if your ISP requires it for example.

                Steve

                1 Reply Last reply Reply Quote 0
                • stephenw10S
                  stephenw10 Netgate Administrator @emammadov
                  last edited by stephenw10

                  @emammadov said in Can't access local network when connected from pfsense to remote side via vpn:

                  pfSense doesn't allow me to access my local network when connected to remote organization via vpn.

                  pfSense has no part in that decision. Your client either sends the traffic over the VPN or tries to use it's local connection.

                  Steve

                  1 Reply Last reply Reply Quote 1
                  • DerelictD
                    Derelict LAYER 8 Netgate
                    last edited by

                    Right. pfSense has no impact on that. It's all in your client configuration. Nothing in pfSense can dictate how your LAN hosts talk to each other on LAN. You should be bringing this up with the people on the PPTP server side after you ask, "Why the hell are you still running PPTP?!?"

                    Nobody should be using PPTP as has been said. It should be considered as adding no security at all.

                    Chattanooga, Tennessee, USA
                    A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                    DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                    Do Not Chat For Help! NO_WAN_EGRESS(TM)

                    1 Reply Last reply Reply Quote 1
                    • K
                      kono
                      last edited by

                      @stephenw10 How would one go about doing that? I have no other choice but to use PPTP VPN. I tried using <2.3 versions but my Realtek NIC isn't being detected on those.

                      1 Reply Last reply Reply Quote 0
                      • RicoR
                        Rico LAYER 8 Rebel Alliance
                        last edited by

                        PPTP, Realtek NIC, ... some nasty talk is going on in this Thread. ๐Ÿ˜‚

                        -Rico

                        1 Reply Last reply Reply Quote 0
                        • stephenw10S
                          stephenw10 Netgate Administrator
                          last edited by

                          You can choose it as a PPP type for a client connection if your ISP requires it:
                          https://www.netgate.com/docs/pfsense/book/interfaces/interfacetypes-ppps.html#pptp-point-to-point-tunneling-protocol

                          I don't think it will connect to a remote VPN server though.

                          Steve

                          1 Reply Last reply Reply Quote 0
                          • K
                            kono
                            last edited by

                            I managed to make 2.2.6 detect my Realtek NIC by patching the driver. But just now realized that the PPTP feature on the pfSense is only for setting itself as a VPN server. Opposite of what I wanted ๐Ÿ˜…

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.