• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

How to create an OpenVPN client to IPVanish (updated & working)

Scheduled Pinned Locked Moved OpenVPN
21 Posts 12 Posters 21.4k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • N
    notaduck
    last edited by Mar 30, 2015, 6:24 AM

    i tried to follow the guide but found a fail.
    every time i tried to insert this```
    fast-io;tun-mtu 1500;persist-key;persist-tun;persist-remote-ip;auth-user-pass /conf/ipvanish.auth;verb 3;auth SHA256;keysize 256;tls-cipher DHE-RSA-AES256-SHA:DHE-DSS-AES256-SHA:AES256-SHA;

    
    but iw works without it
    1 Reply Last reply Reply Quote 0
    • S
      SLIMaxPower
      last edited by Apr 10, 2015, 7:11 AM

      using 2.2.1 and interfaces assign doesn't have any dropdowns/or add to add the opt1 interface.

      what do i do ?

      1 Reply Last reply Reply Quote 0
      • D
        Derelict LAYER 8 Netgate
        last edited by Apr 10, 2015, 7:33 AM

        If there are no unassigned interfaces there is no add button.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • P
          prius
          last edited by Apr 26, 2015, 11:31 AM Apr 26, 2015, 11:22 AM

          Hi

          Same problem here. ovpnc1 is not available in the dropdown list.

          Any idea ?

          Thanks !

          1 Reply Last reply Reply Quote 0
          • P
            prius
            last edited by Apr 26, 2015, 11:58 AM

            Solved !

            You have to create the openvpn client BEFORE creating the OPT1 interface.

            1 Reply Last reply Reply Quote 0
            • W
              willieaames
              last edited by Jul 23, 2015, 11:25 AM

              so i got it to work but when i go and check my ipvanish ip on my browser it's still the same?

              1 Reply Last reply Reply Quote 0
              • L
                lar
                last edited by Oct 11, 2015, 9:20 PM

                I don't have an add button on mine under interfaces/assign
                can someone help me out please?

                1 Reply Last reply Reply Quote 0
                • D
                  Derelict LAYER 8 Netgate
                  last edited by Oct 12, 2015, 2:30 AM

                  If you do not have any unassigned interfaces there is no add button presented. Create your OpenVPN client instance first.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • F
                    fauxfaust
                    last edited by Feb 6, 2016, 5:05 AM

                    Agreed. I did this in the altered order suggested and it worked - although the auto-created rules didn't get made in the Firewall:NAT:Outbound section. I created them myself though (as close to the examples in the post as possible) and everything appears to be working.

                    Also did a test through www.ipleak.net to see if it was leaking dns - no dns leak either. Pretty impressed!
                    I'd previously tried a number of other devices for this kind of setup and none worked exactly right (or none of them had write ups/openvpn capable). This one is working exactly as expected and took me all of 20 mins max to get installed AND configured.

                    1 Reply Last reply Reply Quote 0
                    • F
                      fauxfaust
                      last edited by Mar 4, 2016, 8:57 AM

                      Ack…spoke to soon. Worked fine for a month or so...now completely  not functional.

                      Nothing changed, although for some reason the openvpn service went down and now (although restarted) won't get an IP address from the ipvanish server side.

                      Anyone have any ideas on a fix?

                      1 Reply Last reply Reply Quote 0
                      • D
                        Derelict LAYER 8 Netgate
                        last edited by Mar 4, 2016, 8:58 AM

                        Sounds like a problem with IPvanish. Have you called them?

                        Chattanooga, Tennessee, USA
                        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                        Do Not Chat For Help! NO_WAN_EGRESS(TM)

                        1 Reply Last reply Reply Quote 0
                        • F
                          fauxfaust
                          last edited by Mar 4, 2016, 9:13 AM

                          No not yet. Thinking it's something specific to the config/settings and might just reset them first and try again.

                          1 Reply Last reply Reply Quote 0
                          • F
                            fauxfaust
                            last edited by Mar 4, 2016, 9:19 AM

                            Hmm…may be. Getting the following in the status for openvpn

                            ![vpn down.JPG](/public/imported_attachments/1/vpn down.JPG)
                            ![vpn down.JPG_thumb](/public/imported_attachments/1/vpn down.JPG_thumb)

                            1 Reply Last reply Reply Quote 0
                            • F
                              fauxfaust
                              last edited by Mar 4, 2016, 12:33 PM

                              Ok, following what was in this thread, but without ssh or other checks - shutdown the whole machine (previously rebooted).

                              Modified the /conf/ipvanish.auth file with updated credentials.

                              Restarted Openvpn services. 2 Services wouldn't start automatically (NTP and one other I can't remember) - started them manually. Connection started working after this.

                              I'll keep monitoring. Considering it's been running for a while (about a month or more) without a complete shutdown, this could be something that needs scheduling in.

                              1 Reply Last reply Reply Quote 0
                              • D
                                Derelict LAYER 8 Netgate
                                last edited by Mar 4, 2016, 3:00 PM

                                Your walk through is old. You don't need an auth file any more. There's a place for username and password in the pfSense gui now.

                                Chattanooga, Tennessee, USA
                                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                                1 Reply Last reply Reply Quote 0
                                • G
                                  gertty
                                  last edited by Apr 13, 2016, 12:15 AM

                                  Would a CPU with AES-NI instructions help with this configuration?

                                  1 Reply Last reply Reply Quote 0
                                  • First post
                                    Last post
                                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                                    This community forum collects and processes your personal information.
                                    consent.not_received