Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    EXPRESS VPN DNS Edit: Issue resolved.

    Scheduled Pinned Locked Moved OpenVPN
    16 Posts 3 Posters 5.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bubble_bath
      last edited by bubble_bath

      I just installed pfsense 2.4.4 and followed expressvpn's guide which is no good by the way. Instead of routing the local subnet I set my personal IP as the alias so that only I would be routed through the vpn. I have the dns resolver enabled with query forwarding, dnssec, dns over tls, and quad 9 dns server set in general setup so that non vpn clients would use that. How do I set it up so that openvpn clients get dns handled automatically by expressvpn?

      1 Reply Last reply Reply Quote 0
      • B
        bcruze
        last edited by bcruze

        create an alias for all the devices you want to go through that tunnel, change the default gateway to that tunnel

        then under DHCP Static Mappings for this Interface > edit the devices and change the DNS servers to your providers DNS

        B NogBadTheBadN 2 Replies Last reply Reply Quote 0
        • B
          bubble_bath @bcruze
          last edited by bubble_bath

          @bcruze I already contacted expressvpn and they wont give me their dns server addresses. Another question, in the 3rd picture I have posted is that where I setup the static mapping?
          0_1552224875573_forum1.jpg 0_1552224884775_forum2.jpg 0_1552224889291_forum3.jpg

          1 Reply Last reply Reply Quote 0
          • NogBadTheBadN
            NogBadTheBad @bcruze
            last edited by

            This post is deleted!
            B 1 Reply Last reply Reply Quote 0
            • B
              bubble_bath @NogBadTheBad
              last edited by

              @nogbadthebad this is what it currently looks like.
              0_1552227747582_firewall.jpg

              NogBadTheBadN 1 Reply Last reply Reply Quote 0
              • NogBadTheBadN
                NogBadTheBad @bubble_bath
                last edited by

                @bubble_bath

                Looks fine, I answered the post on my mobile just saw the dhcp lease page, that made me assume that you were changing the default gateway in the DHCP section.

                B 1 Reply Last reply Reply Quote 0
                • B
                  bubble_bath @NogBadTheBad
                  last edited by

                  @nogbadthebad Do you know how I get expressvpn to hand out the dns automatically? Right now everything is quad 9 dns.

                  B 1 Reply Last reply Reply Quote 0
                  • NogBadTheBadN
                    NogBadTheBad
                    last edited by NogBadTheBad

                    @bubble_bath

                    I use NordVPN and they document their DNS servers so I hard code that in my DNS settings for the NordVPN only subnet.

                    0_1552228279217_Screenshot 2019-03-10 at 14.30.06.png

                    You need to know what ExpressVPN use and then maybe change the static DHCP entry for room_doob.

                    If you set it to 8.8.8.8 it would use the nearest Google DNS server to the ExpressVPN exit point.

                    0_1552228740102_Screenshot 2019-03-10 at 14.37.34.png

                    B 1 Reply Last reply Reply Quote 0
                    • B
                      bubble_bath @NogBadTheBad
                      last edited by

                      @nogbadthebad I use to use the nordvpn client but it always gave me issues with amazon. I switched to expressvpn and it's been great, I started with the windows client, then I ran it on a asus ac86u, and in the pursuit of getting more speed I switched to pfsense. Unfortunately they wont give me their dns listening server and it drives me nuts that it worked so flawlessly on asuswrt.

                      NogBadTheBadN 1 Reply Last reply Reply Quote 0
                      • NogBadTheBadN
                        NogBadTheBad @bubble_bath
                        last edited by

                        @bubble_bath

                        Just use 8.8.8.8 it should resolve in country to the exit point.

                        B 3 Replies Last reply Reply Quote 0
                        • B
                          bubble_bath @NogBadTheBad
                          last edited by

                          This post is deleted!
                          1 Reply Last reply Reply Quote 0
                          • B
                            bubble_bath @NogBadTheBad
                            last edited by

                            @nogbadthebad 0_1552230075155_dhcp.jpg

                            How do you get the other options to show up? I only have LAN. I'm a noob at this.

                            1 Reply Last reply Reply Quote 0
                            • B
                              bubble_bath @NogBadTheBad
                              last edited by

                              @nogbadthebad I disabled the dns resolver, enabled the dhcp server, and did the static route using google dns server. Performed a dns leak test and it came up with google, no dice on the expressvpn dns.

                              NogBadTheBadN 1 Reply Last reply Reply Quote 0
                              • B
                                bcruze @bubble_bath
                                last edited by

                                @bubble_bath said in EXPRESS VPN DNS:

                                @nogbadthebad Do you know how I get expressvpn to hand out the dns automatically? Right now everything is quad 9 dns.

                                make a connection to express vpn. login to pfsense > go to diagnostics then command prompt > and the box type in IFCONFIG (not ipconfig) and under your interface for Expressvpn. it will show something similar to: inet 10.32.86.105 --> 10.32.86.1 the 2nd number is their DNS server/ gateway address

                                1 Reply Last reply Reply Quote 1
                                • NogBadTheBadN
                                  NogBadTheBad @bubble_bath
                                  last edited by NogBadTheBad

                                  @bubble_bath

                                  Don't change the whole lan just the client you want to route via ExpressVPN.

                                  Set up a static mapping.

                                  1 Reply Last reply Reply Quote 0
                                  • B
                                    bubble_bath
                                    last edited by bubble_bath

                                    I got it working, after setting up the port forward I had to go to firewall - rules - lan and move up the new rule so that vpn dns grabs before the dns resolver.
                                    Annotation 2019-03-27 033736.jpg
                                    Annotation 2019-03-27 033910.jpg

                                    granted this is with mullvad but I also got it working with expressvpn. Since express doesn't give out their dns and it can't be found in the ovpn config; easiest solution is running their client on your desktop and using cmd commands to find the dns address being used inside the tunnel.

                                    1 Reply Last reply Reply Quote 0
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.