• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

ip leak, DNS? Using PIA Clueless.

DHCP and DNS
5
18
2.2k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • E
    edwardnizz
    last edited by Jun 15, 2019, 3:56 AM

    I'm relatively new to this and I will explain as best as I can. I set this up using a combination of this YouTube video(https://youtu.be/ov-xddVpxhc) anf the info on the PIA website(https://www.privateinternetaccess.com/helpdesk/guides/routers/pfsense/pfsense-2-4-3-setup-guide).
    I did upgrade to 2.4.4. a few months later. This may have been where the problem started. It was after that I was having trouble with local sites.

    I'm running PFsense 2.4.4 and using PIA as a client in OpenVPN.
    In General setup system is: localdomain
    I using the PIA DNS servers (209.222.18.222 and 209.222.18.218).
    When i google whats my IP im getting a location in the middle of nowhere when I'm using a NYC server.
    Furthermore I cant get on certain local websites like my electric company unless i use google name servers on my laptop (which bypasses the vpn). Could I have set this up wrong?
    Frankly I'm amazed that I actually got this working(sort of)with the technical knowledge I have (or lack,lol). I could look up or screenshot my settings if it will help.
    Any help would be appreciated.

    1 Reply Last reply Reply Quote 0
    • B
      bcruze
      last edited by Jun 17, 2019, 12:10 PM

      i believe with just about any provider that is normal.

      my banking websites go bonkers when i login using a vpn provider. that is just part of it. and in all honestly i would be thankful they are detecting a strange connection to your service

      so just to be clear. you can browse websites normally. it is just banking/ your electric company you are having login issues with?

      1 Reply Last reply Reply Quote 0
      • E
        edwardnizz
        last edited by Jun 17, 2019, 7:16 PM

        I created a rule for some devices to bypass the VPN. Even those cant get on those sites.
        I tried to get help from PIA, they said it was the settings in the router.

        1 Reply Last reply Reply Quote 0
        • M
          mhertzfeld
          last edited by Jun 18, 2019, 8:43 PM

          So when you say you are using the PIA DNS servers (209.222.18.222 and 209.222.18.218), what did you do to set that up? Did you configure the forwarder in pfsense to use those DNS servers?

          E 1 Reply Last reply Jun 18, 2019, 8:53 PM Reply Quote 0
          • E
            edwardnizz @mhertzfeld
            last edited by Jun 18, 2019, 8:53 PM

            @mhertzfeld No. How do i do that?

            E 1 Reply Last reply Jun 22, 2019, 2:15 PM Reply Quote 0
            • E
              edwardnizz @edwardnizz
              last edited by Jun 22, 2019, 2:15 PM

              @edwardnizz still haven't resolved my situation. Would appreciate some help.

              1 Reply Last reply Reply Quote 0
              • J
                johnpoz LAYER 8 Global Moderator
                last edited by Jun 22, 2019, 2:32 PM

                You have not provided enough info to help you to be honest..

                Out of the box pfsense resolves, so you setting your vpn services dns wouldn't do anything. Unless you enabled forwarder mode in the pfsense resolver, or changed over to forwarder. Or set those on your actual client behind pfsense.

                The nonsense guides from those vpn services have all your traffic going through them vs setting up policy routing.. So unless you told pfsense not to pull routes, and setup policy routing correctly.. Its quite possible your still going out the vpn... Which yeah your bank and stuff will prob scream about..

                As to getting help from PIA - yeah good luck with that from the few threads seen around here about their help.. You prob be better off just rando clicking shit :) hehehehehe

                If your doing policy routing for a client and it shows a vpn IP when you google whats my ip vs your actual wan ISP ip then your policy routing is not working!

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                E 1 Reply Last reply Jun 22, 2019, 2:38 PM Reply Quote 0
                • E
                  edwardnizz @johnpoz
                  last edited by Jun 22, 2019, 2:38 PM

                  @johnpoz well you didn't provide any insight either. Just alot of technical mumbo jumbo that you know i dont understand.
                  I could just try from scratch or pay for support. Im willing to pay if anyone knows a good pay support site familiar with PFsense.

                  G 1 Reply Last reply Jun 22, 2019, 2:41 PM Reply Quote 0
                  • G
                    Grimson Banned @edwardnizz
                    last edited by Jun 22, 2019, 2:41 PM

                    @edwardnizz said in ip leak, DNS? Using PIA Clueless.:

                    Im willing to pay if anyone knows a good pay support site familiar with PFsense.

                    https://www.netgate.com/support/ you won't get better support than there.

                    1 Reply Last reply Reply Quote 0
                    • J
                      johnpoz LAYER 8 Global Moderator
                      last edited by johnpoz Jun 22, 2019, 2:45 PM Jun 22, 2019, 2:41 PM

                      Well if you don't understand a techo term - then LOOK IT UP!!

                      You are paying PIA - have them help you!

                      Just at a loss to how people with no understanding of how this stuff works - are convinced they actually need a vpn to hide that they go the internet from from their own ISP. Then when shit doesn't work they don't get it why...

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                      E 1 Reply Last reply Jun 22, 2019, 2:45 PM Reply Quote 2
                      • E
                        edwardnizz @johnpoz
                        last edited by Jun 22, 2019, 2:45 PM

                        @johnpoz you dont know me or what kind of time i have available to me.
                        I dont want to argue abd i dont spend hours in front of a computer.
                        If someone wants to get paid though whatever, there more then welcome to set a time where we coud go over this and sort it out.
                        Im just trying to solve my problem and thats all im saying about this today.

                        1 Reply Last reply Reply Quote 0
                        • M
                          mhertzfeld
                          last edited by Jun 22, 2019, 3:17 PM

                          post some screen shots of the following

                          System\General Setup (specifically the DNS settings)
                          Services\DNS Forwarder
                          Services\DNS Resolver
                          Services\DHCP Server

                          E 1 Reply Last reply Jun 23, 2019, 11:58 PM Reply Quote 2
                          • E
                            edwardnizz @mhertzfeld
                            last edited by Jun 23, 2019, 11:58 PM

                            Thanks mhertzfeld! Here's what I got,
                            login-to-view
                            login-to-view login-to-view login-to-view
                            login-to-view
                            login-to-view
                            There's also a list of static mappings on the bottom of the DCHP Server page.

                            1 Reply Last reply Reply Quote 0
                            • B
                              bcruze
                              last edited by Jun 24, 2019, 10:43 AM

                              under dns resolver. disabled dnssec. PIA doesn't support this.

                              then enable forwarding mode right below it. see if that clears anything up

                              E 1 Reply Last reply Jun 25, 2019, 2:21 AM Reply Quote 1
                              • E
                                edwardnizz @bcruze
                                last edited by Jun 25, 2019, 2:21 AM

                                @bcruze ok on the android device, using the chrome browser, I did get a NY area IP after the adjustment. I have no clue how that relates to DNS, but hey, its a win. Thanks!
                                However, and this is strange, but my laptop (which bypasses the VPN using a bypass rule) still cant connect to the local utility company. Even when i disable the bypass rule. I still dont connect.
                                I did do a workaround by setting up my ip4 settings in my laptop to use "Google " DNS servers 8888 and 8844. That seems to work.

                                Also all my android devices use the vpn. All my pc's are bypassed with aliases. When i checked the laptop i disabled the bypass rule and checked the other pc's as well. When disabled they did show PIA's server instead of my isp's. And when i enabled the rule it showed my real ip as it should.

                                B 1 Reply Last reply Jun 25, 2019, 9:17 AM Reply Quote 0
                                • B
                                  bcruze @edwardnizz
                                  last edited by Jun 25, 2019, 9:17 AM

                                  @edwardnizz
                                  http://dnsleak.com/

                                  That will tell you if you are using their tunnel and dns

                                  1 Reply Last reply Reply Quote 0
                                  • M
                                    mhertzfeld
                                    last edited by Jun 26, 2019, 5:43 PM

                                    Unless you are using the PIA DNS Servers for a reason I would recommend either setting all your DNS settings back to the defaults or follow the guide below to setup DNS over TLS.

                                    https://forum.netgate.com/topic/139771/setup-dns-over-tls-on-pfsense-2-4-4-p2-guide/2

                                    E 1 Reply Last reply Jul 16, 2019, 6:26 PM Reply Quote 1
                                    • E
                                      edwardnizz @mhertzfeld
                                      last edited by Jul 16, 2019, 6:26 PM

                                      I was just following there tutorial. I diddnt know if i had to use there DNS.
                                      Furthermore they never updated there tutorial to the new version.

                                      1 Reply Last reply Reply Quote 0
                                      • First post
                                        Last post
                                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.