Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Help me defeat the Great Firewall of China!

    General pfSense Questions
    5
    5
    2063
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      rogergreenlee last edited by

      Hi all, I am the IT admin at an International School in China.

      We are being hurt big time by the Chinese Internet Filtering system. We cannot use Google Apps anymore without a VPN on our system and we can't afford something like GOIP which is tens of thousands of US dollars per year.

      Here is what I would like to do with pfSense but I cannot seem to figure it out on my own and would REALLY appreciate any help.

      I have the latest pfSense installed on a computer which I can use to replace our current hardware router and 4 gigabit ethernet ports inside the computer (not sure if that many needed but just in case).

      Basically what I need is this: 1 internal static IP that is an "always-on VPN" (could be OpenVPN or PPTP, I'll find the service) then I need to route ALL Google traffic through that gateway VPN. Then another gateway for other traffic that will run normally through the Chinese system.

      Does anyone have any tips or places I could look to try and accomplish this? Thanks in advance! ;D ;D ;D

      Roger

      1 Reply Last reply Reply Quote 0
      • H
        heper last edited by

        https://forum.pfsense.org/index.php?topic=69238.0

        enjoy

        1 Reply Last reply Reply Quote 0
        • KOM
          KOM last edited by

          Rent a VPS for $10-20 per month and build your own OpenVPN instance on it.  A lot of commercial VPN services are also blocked in China, from what I understand.

          1 Reply Last reply Reply Quote 0
          • K
            karla last edited by

            Using OpenVPN over SSH is the most suitable way to conceal you connection and be able to get free access to any blocked content http://www.vpnfaqs.com/2015/06/openvpn-china-conceal-connection-now/  China Firewall can't detect OpenVPN protocol so you can browse normally as you are located outside China.

            1 Reply Last reply Reply Quote 0
            • jimp
              jimp Rebel Alliance Developer Netgate last edited by

              On pfSense 2.4 with OpenVPN you might have some luck with an SSL/TLS VPN that uses TLS Encryption+Authentication (–tls-crypt). It provides extra privacy and protocol obfuscation. That and moving it to another non-default port might help.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post

              Products

              • Platform Overview
              • TNSR
              • pfSense Plus
              • Appliances

              Services

              • Training
              • Professional Services

              Support

              • Subscription Plans
              • Contact Support
              • Product Lifecycle
              • Documentation

              News

              • Media Coverage
              • Press
              • Events

              Resources

              • Blog
              • FAQ
              • Find a Partner
              • Resource Library
              • Security Information

              Company

              • About Us
              • Careers
              • Partners
              • Contact Us
              • Legal
              Our Mission

              We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

              Subscribe to our Newsletter

              Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

              © 2021 Rubicon Communications, LLC | Privacy Policy