Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Troubleshooting WAN DHCP

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    24 Posts 2 Posters 2.7k Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      StormGate @stephenw10
      last edited by StormGate

      @stephenw10 They use a product based on OpenVPN that does have a static destination to allow drives to be mapped. This is IPSec based.

      1 Reply Last reply Reply Quote 0
      • stephenw10S Offline
        stephenw10 Netgate Administrator
        last edited by

        OpenVPN and IPSec are different VPN protocols. Do you know which they are using?

        Both should work fine behind NAT (or double NAT) though and both should use random ports to allow multiple clients to connect from behind a single router.

        If there is only one client behind pfSense does it remain connected?

        S 1 Reply Last reply Reply Quote 0
        • S Offline
          StormGate @stephenw10
          last edited by StormGate

          @stephenw10 I think I found the issue after remoting in, when I assembled this new infrastruture and shipped it out, I gave explicit instructions that the new system is 100% VLAN based and sure enough the staff person with their single netowrk connection, slaved the laptop off the VoIP phone and the laptop is running on the phone network, my rules are setup as per vlan so I told them sort it out because reviewing the logs, other staff VPN's connections are not dropping. This was discussed when the network went in that they required on site netwok drops to complete the update.

          1 Reply Last reply Reply Quote 1
          • S Offline
            StormGate @stephenw10
            last edited by StormGate

            @stephenw10 Sophos Connect clients use 3 service strongSwan, OpenVPN and Sophos Connect to allow the configuration of both SSL VPN and IPSec. Our staff use both depending on usage however after seeing the logs it looked evident the culprit was the user plugging into the voIP phone port. The rules are very strict as to what vlans can do what.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.