Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Help!! When I connect to l2tp server i don't have access to internet

    Scheduled Pinned Locked Moved OpenVPN
    35 Posts 3 Posters 5.4k Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ Online
      johnpoz LAYER 8 Global Moderator
      last edited by johnpoz

      Please do not spam every section with the same question.. I have deleted your other threads.. This seems like the most appropriate section.

      I take it your vpn into pfsense? Via L2TP server? You need to provide a bit more info. Can you ping say the lan side IP once you have connected?

      Don't get many people using L2TP server - I can not recall if have even seen a question about it ;)

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

      G 1 Reply Last reply Reply Quote 0
      • G Offline
        gab.rc14 @johnpoz
        last edited by

        @johnpoz Yes I'm using pfense as l2tp VPN server. While connected, I can ping LAN devices but I lose the Internet on the device I’m connecting with. I assume it is a rule I’m missing but can’t figure out what I need to change. Can anyone point me in the right direction?

        1 Reply Last reply Reply Quote 0
        • johnpozJ Online
          johnpoz LAYER 8 Global Moderator
          last edited by

          What rules do you have setup for the l2tp? Also I believe that using the vpn connection as your connection for internet, ie the default gateway would be done on the client.

          And you would also need to make sure that outbound nat allows for natting your l2tp network.. So if you have say changed from auto to manual, the outbound nat wouldn't be created.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

          G 2 Replies Last reply Reply Quote 0
          • G Offline
            gab.rc14 @johnpoz
            last edited by

            @johnpoz said in Help!! When I connect to l2tp server i don't have access to internet:

            What rules do you have setup for the l2tp? Also I believe that using the vpn connection as your connection for internet, ie the default gateway would be done on the client.
            And you would also need to make sure that outbound nat allows for natting your l2tp network.. So if you have say changed from auto to manual, the outbound nat wouldn't be created.

            NAT Rules.PNG

            1 Reply Last reply Reply Quote 0
            • johnpozJ Online
              johnpoz LAYER 8 Global Moderator
              last edited by johnpoz

              You don't need any of those.. When you create l2tp server the nat for your outbound nat is auto added to the automatic rules.

              What rules did you put on the actual l2tp interface rules, the interface gets created when you enable l2tp.

              Also On the client did you tell it to use it for all traffic.. example on my iphone

              l2tp.png

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

              1 Reply Last reply Reply Quote 0
              • G Offline
                gab.rc14 @johnpoz
                last edited by

                @johnpoz L2TP Rules.PNG

                1 Reply Last reply Reply Quote 0
                • johnpozJ Online
                  johnpoz LAYER 8 Global Moderator
                  last edited by

                  Ok don't see any hits on that.. You sure your actually connecting ;) And did you set your client to send all traffic..

                  Lets see yoru logs of connection and what happens when you do a traceroute from client to some internet IP, etc.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

                  G 1 Reply Last reply Reply Quote 0
                  • G Offline
                    gab.rc14 @johnpoz
                    last edited by

                    @johnpoz Captureuser.PNG
                    image from the client trying to access google

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ Online
                      johnpoz LAYER 8 Global Moderator
                      last edited by johnpoz

                      And where is the setting that says send all traffic out the l2tp vpn?

                      Why not just use say ipsec or openvpn? That looks that is some router? As you client?

                      Do a traceroute.. showing traffic is going out the vpn to get to 8.8.8.8

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

                      G 2 Replies Last reply Reply Quote 0
                      • G Offline
                        gab.rc14 @johnpoz
                        last edited by

                        @johnpoz Yes I'm using a TP-Link router that only supports l2tp it's why I can't use OpenVPN or IPSec.

                        1 Reply Last reply Reply Quote 0
                        • G Offline
                          gab.rc14 @johnpoz
                          last edited by

                          @johnpoz the tplink shows me that it is connected, and it assigned the correct address that I set up in the pfsense but when I tried to go to internet I don't have a connection.

                          1 Reply Last reply Reply Quote 0
                          • RicoR Offline
                            Rico LAYER 8 Rebel Alliance
                            last edited by

                            Put DD-WRT or OpenWRT on that TPLink then you can run OpenVPN. ;-)

                            -Rico

                            G 1 Reply Last reply Reply Quote 0
                            • johnpozJ Online
                              johnpoz LAYER 8 Global Moderator
                              last edited by johnpoz

                              Yeah... I doubt that setup works.. Sniff on pfsense l2tp interface when you try and send traffic - do you see your tplink sending traffic down the connection for 8.8.8.8, I doubt it.. If it did then it would work.

                              Many of the tplink routers are supported by ddwrt
                              https://wiki.dd-wrt.com/wiki/index.php/Supported_Devices#TP-Link

                              An intelligent man is sometimes forced to be drunk to spend time with his fools
                              If you get confused: Listen to the Music Play
                              Please don't Chat/PM me for help, unless mod related
                              SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

                              G 1 Reply Last reply Reply Quote 0
                              • G Offline
                                gab.rc14 @johnpoz
                                last edited by

                                @johnpoz hi, I still having issue with the configuration. Now i try to set up pfsense in my pc with virtualbox
                                Hi, I need help, I'm new on pfsense. This is my configuration. I have installed the pfense in virtual box. i configured as wan an static IP address inside the range of my router netgear (192.168.0.24). I already configured the l2tp VPN, and firewall rules for this. I'm using as service provider comcast. in my netgear router i configured port forwarding with the ports of l2tp works. When i try to check the connection i have a tplink configured as l2tp and it still appears connecting and nothing happens. Please i would like any advice.

                                1 Reply Last reply Reply Quote 0
                                • johnpozJ Online
                                  johnpoz LAYER 8 Global Moderator
                                  last edited by

                                  Just use openvpn!

                                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                                  If you get confused: Listen to the Music Play
                                  Please don't Chat/PM me for help, unless mod related
                                  SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

                                  G 2 Replies Last reply Reply Quote 0
                                  • G Offline
                                    gab.rc14 @johnpoz
                                    last edited by

                                    @johnpoz TPlink.jpg

                                    1 Reply Last reply Reply Quote 0
                                    • G Offline
                                      gab.rc14 @johnpoz
                                      last edited by

                                      @johnpoz Hi I already upgrade tplink framework, but it doesn't appears the openvpn option.

                                      1 Reply Last reply Reply Quote 0
                                      • RicoR Offline
                                        Rico LAYER 8 Rebel Alliance
                                        last edited by

                                        Services > VPN

                                        -Rico

                                        1 Reply Last reply Reply Quote 0
                                        • G Offline
                                          gab.rc14 @Rico
                                          last edited by

                                          @Rico I already upgrade tplink framework, but it doesn't appear the openvpn option.

                                          1 Reply Last reply Reply Quote 0
                                          • RicoR Offline
                                            Rico LAYER 8 Rebel Alliance
                                            last edited by

                                            dd-wrt_vpn.png

                                            -Rico

                                            G 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.