Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cant access any computers on domain

    Scheduled Pinned Locked Moved OpenVPN
    26 Posts 3 Posters 10.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      afvadmin
      last edited by

      I have set up openvpn on both a mobile client and the pfsense router and it connects just fine the problem is that i cannot login into the domain of the network from the pfsense box but i can ping the dns and vnc to it
      I need a setup were remote users can login into the domain well remotely and also run programs of the network and also be able to print to a shared printer etc

      1 Reply Last reply Reply Quote 0
      • Cry HavokC
        Cry Havok
        last edited by

        That's a Windows networking problem and not related to your use of OpenVPN.  The solutions depend on what version of Windows you're using for your domain - is this an old school Windows domain, or Active Directory?

        1 Reply Last reply Reply Quote 0
        • A
          afvadmin
          last edited by

          its an active directory, i was doing so more reading an i came across the routing and remote access protocol so ill try an see if by configuring that and then adding my user to the group will solve the problem

          1 Reply Last reply Reply Quote 0
          • Cry HavokC
            Cry Havok
            last edited by

            What OS are your clients?

            Assuming that your VPN server is the default gateway, or you've pushed static routes to the Windows servers (or default gateway) it should all just work - it certainly does for me with XP, Vista or Windows 7 as the client.

            1 Reply Last reply Reply Quote 0
            • A
              afvadmin
              last edited by

              so i should push the default gateway of the domain i want to connect to so that the vpn client has the same default gateway as the domain

              1 Reply Last reply Reply Quote 0
              • Cry HavokC
                Cry Havok
                last edited by

                You need to ensure 2 things:

                1. On your network, either the VPN server is the default gateway, or the servers know how to reach the VPN client

                2. The VPN client knows how to reach the servers on the network

                In other words, basic routing.  It sounds like you've done (2) since you can ping "the dns" (which I'm guessing is your DNS server on the network).

                1 Reply Last reply Reply Quote 0
                • A
                  afvadmin
                  last edited by

                  the vpn server which would be pfsense is the gateway it is the one responsible for distributing the dhcp addresses to the client, also isnt a vpn suppose to allow you to be able to ping ip addresses from the lan subnet which would automatically allow you to ping the dns server, and to ensure this i pushed the dns server and domain name to the client .

                  NB i tried using the push "redirect-gateway def1" to push the gateway to the client , i ended up with the ip address of the pfsense box which is 192.168.xxx.5 as the default gateway on the client

                  1 Reply Last reply Reply Quote 0
                  • Cry HavokC
                    Cry Havok
                    last edited by

                    Your single, massive, sentence is hard to read.  I think you're saying that your VPN server is your gateway?

                    VPN servers only provide connectivity between 2 networks by "hiding" the bit in between.  Basically, you can treat a VPN as you would a router - but that means you need to make sure your basic networking is in place.

                    You are using different IP ranges for your VPN, local network and client network?

                    1 Reply Last reply Reply Quote 0
                    • A
                      afvadmin
                      last edited by

                      the lan subnet is 192.168.0.0 the cleint is 10.10.10.0

                      1 Reply Last reply Reply Quote 0
                      • Cry HavokC
                        Cry Havok
                        last edited by

                        And what are you using for the VPN?

                        1 Reply Last reply Reply Quote 0
                        • A
                          afvadmin
                          last edited by

                          the ip of the vpn is 192.168.200.0

                          1 Reply Last reply Reply Quote 0
                          • A
                            afvadmin
                            last edited by

                            ok so what i needed was to bridge the connections of the vpn to the lan or create a wins server , went with bridging since it is better for most programs, so now i can access shares on the network and i have read access but i dont have write access eg a zipped file will copy to the mapped drive and it will take like forever to unzip

                            1 Reply Last reply Reply Quote 0
                            • B
                              BrianBonnell
                              last edited by

                              Enable NETBIOs on the VPN connections. I did this and now I can access my entire domain.

                              1 Reply Last reply Reply Quote 0
                              • A
                                afvadmin
                                last edited by

                                ok ill try this today sorry about taking so long to answer have been really tied up in work and school, ok well my vpn is bridged

                                1 Reply Last reply Reply Quote 0
                                • A
                                  afvadmin
                                  last edited by

                                  ok still cant access im trying to run a program of the server i have the access to view the shared folder but jus cant run the program i even installed the program pointed it to the ip address of the server so it would get its data from the server and the program fails to run as a matter a fact i cant even install a program from the network share do you think this is a windows server problem or it just cant be fixed cause open vpn stats for certain programs you either have to build a samba or wins server or bridge the connection and i went with bridging an still cant get through i even entered custom options so that the vpn connection would have an ip just like the domain is there any setting i overlooked or anything on my dns server i have to do

                                  1 Reply Last reply Reply Quote 0
                                  • Cry HavokC
                                    Cry Havok
                                    last edited by

                                    Can you:

                                    a) See the share from the VPN?
                                    b) Connect to the share from the VPN?
                                    c) See the contents of files on the share from the VPN?
                                    d)
                                      1) Ping the server from the LAN?
                                      2) Ping the server from the VPN?

                                    1 Reply Last reply Reply Quote 0
                                    • A
                                      afvadmin
                                      last edited by

                                      Can you:

                                      a) See the share from the VPN?
                                      yes

                                      b) Connect to the share from the VPN?
                                      yes i mapped a drive

                                      c) See the contents of files on the share from the VPN?
                                      yes i can copy files from the shared folder

                                      d)
                                       1) Ping the server from the LAN?
                                      yes

                                      2) Ping the server from the VPN?
                                      yes

                                      only thing is cant run a program from the vpn and cant copy to the vpn i think ill give the authentication in open vpn with the ldap service

                                      1 Reply Last reply Reply Quote 0
                                      • Cry HavokC
                                        Cry Havok
                                        last edited by

                                        When you say "to the vpn" - exactly what do you mean?  You've already said you can connect to, and use, shares at the far end of the VPN so there's no obvious problem.

                                        1 Reply Last reply Reply Quote 0
                                        • A
                                          afvadmin
                                          last edited by

                                          what i mean is if i copy a file the the vpn i usually get an error ill try it again to give you the exact code i had it written down somewhere

                                          1 Reply Last reply Reply Quote 0
                                          • Cry HavokC
                                            Cry Havok
                                            last edited by

                                            Sounds like a file/share permissions error on the server - nothing to do with the VPN since you can copy files off of the share.

                                            Are you authenticating to the file server?

                                            Does it work, copying a file to the file server, from the local network?

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.