Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Windows DNS issue when resolves to WAN address

    Scheduled Pinned Locked Moved OpenVPN
    8 Posts 3 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      pr3dict
      last edited by

      So my issue is weird and only happens on windows.

      I connect to the vpn as vpn.mywebsite.com (98.xx.xx.56)

      Once Im connected I get an internal network address of 192.168.11.2 Default gateway of 192.168.11.1

      I try to access my webproxy thats running on PFsense at proxy.mywebsite.com (98.xx.xx.56)

      The way it should work is:

      192.168.11.1
      DNS lookup in PFSENSE and notice its the WAN Address and connect to itself w/loopback or whatever.
      Done….

      What it is doing:

      going to the actual network card im connected to.
      to the actual network router
      to the internet
      internet
      my WAN address 98.xx.xx.56
      then my server says um no this isnt for you only inside network please and thank you and closes connection.

      THIS only happens on windows. Android config is fine. I have no idea why its happening. The interface metric is lower then the others as well so Im at a loss.

      1 Reply Last reply Reply Quote 0
      • P
        pr3dict
        last edited by

        Any idea why it is not routing through the VPN when trying to connect to the routers WAN address?

        1 Reply Last reply Reply Quote 0
        • P
          pr3dict
          last edited by

          still an issue…

          1 Reply Last reply Reply Quote 0
          • G
            Gcomm
            last edited by

            So the client side is Windows?

            Connect with your client program and go to the command prompt CMD and type "route print" and save the output.

            Then disconnect, close your client program, then run it again with admin rights, then go to the command prompt CMD and type "route print" and save the output.

            Paste both results in a reply message here.

            1 Reply Last reply Reply Quote 0
            • B
              Birke
              last edited by

              do you have dns resolver or forwarder enabled? then you could just add a host override for proxy.mywebsite.com that provides the internal ip.

              1 Reply Last reply Reply Quote 0
              • P
                pr3dict
                last edited by

                @Gcomm:

                So the client side is Windows?

                Connect with your client program and go to the command prompt CMD and type "route print" and save the output.

                Then disconnect, close your client program, then run it again with admin rights, then go to the command prompt CMD and type "route print" and save the output.

                Paste both results in a reply message here.

                not exactly sure what you were asking. IT seemed you wanted me to route print while on the vpn twice but that didnt make sense o I have it on the vpn and off the vpn

                Interface List
                  8...94 de 80 af df c6 ......Realtek PCIe GBE Family Controller
                 18...8c ae 4c f0 42 44 ......Plugable Ethernet
                 10...0c 8b fd 68 b9 02 ......Microsoft Wi-Fi Direct Virtual Adapter
                  2...0e 8b fd 68 b9 01 ......Microsoft Wi-Fi Direct Virtual Adapter #2
                  6...00 ff 69 23 51 c5 ......TAP-Windows Adapter V9
                  3...0c 8b fd 68 b9 01 ......Intel(R) Dual Band Wireless-AC 7260
                  5...0c 8b fd 68 b9 05 ......Bluetooth Device (Personal Area Network)
                  1...........................Software Loopback Interface 1
                 13...00 00 00 00 00 00 00 e0 Microsoft Teredo Tunneling Adapter
                ===========================================================================
                
                IPv4 Route Table
                ===========================================================================
                Active Routes:
                Network Destination        Netmask          Gateway       Interface  Metric
                          0.0.0.0          0.0.0.0         10.1.0.1       10.1.6.222     50
                         10.1.0.0    255.255.248.0         On-link        10.1.6.222    306
                       10.1.6.222  255.255.255.255         On-link        10.1.6.222    306
                       10.1.7.255  255.255.255.255         On-link        10.1.6.222    306
                        127.0.0.0        255.0.0.0         On-link         127.0.0.1    331
                        127.0.0.1  255.255.255.255         On-link         127.0.0.1    331
                  127.255.255.255  255.255.255.255         On-link         127.0.0.1    331
                        224.0.0.0        240.0.0.0         On-link         127.0.0.1    331
                        224.0.0.0        240.0.0.0         On-link        10.1.6.222    306
                  255.255.255.255  255.255.255.255         On-link         127.0.0.1    331
                  255.255.255.255  255.255.255.255         On-link        10.1.6.222    306
                ===========================================================================
                Persistent Routes:
                  Network Address          Netmask  Gateway Address  Metric
                          0.0.0.0          0.0.0.0     192.168.91.1  Default
                ===========================================================================
                
                IPv6 Route Table
                ===========================================================================
                Active Routes:
                 If Metric Network Destination      Gateway
                  1    331 ::1/128                  On-link
                  3    306 fe80::/64                On-link
                  3    306 fe80::9403:cc07:e941:7329/128
                                                    On-link
                  1    331 ff00::/8                 On-link
                  3    306 ff00::/8                 On-link
                ===========================================================================
                Persistent Routes:
                  None
                
                ===========================================================================
                Interface List
                  6...00 ff 69 23 51 c5 ......TAP-Windows Adapter V9
                  8...94 de 80 af df c6 ......Realtek PCIe GBE Family Controller
                 18...8c ae 4c f0 42 44 ......Plugable Ethernet
                 10...0c 8b fd 68 b9 02 ......Microsoft Wi-Fi Direct Virtual Adapter
                  2...0e 8b fd 68 b9 01 ......Microsoft Wi-Fi Direct Virtual Adapter #2
                  3...0c 8b fd 68 b9 01 ......Intel(R) Dual Band Wireless-AC 7260
                  5...0c 8b fd 68 b9 05 ......Bluetooth Device (Personal Area Network)
                  1...........................Software Loopback Interface 1
                 13...00 00 00 00 00 00 00 e0 Microsoft Teredo Tunneling Adapter
                ===========================================================================
                
                IPv4 Route Table
                ===========================================================================
                Active Routes:
                Network Destination        Netmask          Gateway       Interface  Metric
                          0.0.0.0          0.0.0.0         10.1.0.1       10.1.6.222     50
                          0.0.0.0        128.0.0.0     192.168.91.1     192.168.91.4      3
                         10.1.0.0    255.255.248.0         On-link        10.1.6.222    306
                       10.1.6.222  255.255.255.255         On-link        10.1.6.222    306
                       10.1.7.255  255.255.255.255         On-link        10.1.6.222    306
                    68.132.39.155  255.255.255.255         10.1.0.1       10.1.6.222     50
                        127.0.0.0        255.0.0.0         On-link         127.0.0.1    331
                        127.0.0.1  255.255.255.255         On-link         127.0.0.1    331
                  127.255.255.255  255.255.255.255         On-link         127.0.0.1    331
                        128.0.0.0        128.0.0.0     192.168.91.1     192.168.91.4      3
                     192.168.91.0    255.255.255.0         On-link      192.168.91.4    259
                     192.168.91.4  255.255.255.255         On-link      192.168.91.4    259
                   192.168.91.255  255.255.255.255         On-link      192.168.91.4    259
                        224.0.0.0        240.0.0.0         On-link         127.0.0.1    331
                        224.0.0.0        240.0.0.0         On-link        10.1.6.222    306
                        224.0.0.0        240.0.0.0         On-link      192.168.91.4    259
                  255.255.255.255  255.255.255.255         On-link         127.0.0.1    331
                  255.255.255.255  255.255.255.255         On-link        10.1.6.222    306
                  255.255.255.255  255.255.255.255         On-link      192.168.91.4    259
                ===========================================================================
                Persistent Routes:
                  None
                
                IPv6 Route Table
                ===========================================================================
                Active Routes:
                 If Metric Network Destination      Gateway
                  1    331 ::1/128                  On-link
                  3    306 fe80::/64                On-link
                  6    259 fe80::/64                On-link
                  6    259 fe80::8020:a2c:40c8:327a/128
                                                    On-link
                  3    306 fe80::9403:cc07:e941:7329/128
                                                    On-link
                  1    331 ff00::/8                 On-link
                  3    306 ff00::/8                 On-link
                  6    259 ff00::/8                 On-link
                ===========================================================================
                Persistent Routes:
                  None
                
                Interface List
                  8...94 de 80 af df c6 ......Realtek PCIe GBE Family Controller
                 18...8c ae 4c f0 42 44 ......Plugable Ethernet
                 10...0c 8b fd 68 b9 02 ......Microsoft Wi-Fi Direct Virtual Adapter
                  2...0e 8b fd 68 b9 01 ......Microsoft Wi-Fi Direct Virtual Adapter #2
                  6...00 ff 69 23 51 c5 ......TAP-Windows Adapter V9
                  3...0c 8b fd 68 b9 01 ......Intel(R) Dual Band Wireless-AC 7260
                  5...0c 8b fd 68 b9 05 ......Bluetooth Device (Personal Area Network)
                  1...........................Software Loopback Interface 1
                 13...00 00 00 00 00 00 00 e0 Microsoft Teredo Tunneling Adapter
                ===========================================================================
                
                IPv4 Route Table
                ===========================================================================
                Active Routes:
                Network Destination        Netmask          Gateway       Interface  Metric
                          0.0.0.0          0.0.0.0         10.1.0.1       10.1.6.222     50
                         10.1.0.0    255.255.248.0         On-link        10.1.6.222    306
                       10.1.6.222  255.255.255.255         On-link        10.1.6.222    306
                       10.1.7.255  255.255.255.255         On-link        10.1.6.222    306
                        127.0.0.0        255.0.0.0         On-link         127.0.0.1    331
                        127.0.0.1  255.255.255.255         On-link         127.0.0.1    331
                  127.255.255.255  255.255.255.255         On-link         127.0.0.1    331
                        224.0.0.0        240.0.0.0         On-link         127.0.0.1    331
                        224.0.0.0        240.0.0.0         On-link        10.1.6.222    306
                  255.255.255.255  255.255.255.255         On-link         127.0.0.1    331
                  255.255.255.255  255.255.255.255         On-link        10.1.6.222    306
                ===========================================================================
                Persistent Routes:
                  Network Address          Netmask  Gateway Address  Metric
                          0.0.0.0          0.0.0.0     192.168.91.1  Default
                ===========================================================================
                
                IPv6 Route Table
                ===========================================================================
                Active Routes:
                 If Metric Network Destination      Gateway
                  1    331 ::1/128                  On-link
                  3    306 fe80::/64                On-link
                  3    306 fe80::9403:cc07:e941:7329/128
                                                    On-link
                  1    331 ff00::/8                 On-link
                  3    306 ff00::/8                 On-link
                ===========================================================================
                Persistent Routes:
                  None
                
                
                1 Reply Last reply Reply Quote 0
                • P
                  pr3dict
                  last edited by

                  @Birke:

                  do you have dns resolver or forwarder enabled? then you could just add a host override for proxy.mywebsite.com that provides the internal ip.

                  I have resolver enabled and I cannot do a host override for an ip address because the ip address of proxy.mywebsite.com is the ip address of the router. It is a reverse proxy and it has logic to know based on where the source IP address is coming from to route it to the right internal server.

                  1 Reply Last reply Reply Quote 0
                  • P
                    pr3dict
                    last edited by

                    how has nobody dealt with this issue before?

                    Nobody has nat traversal on and using a vpn?

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.