Newest vpn Questions

Q&A for system and network administrators

How to best setup a simple route between two datacenters using dns, nat, and vpn?

The goal: Setup two routes with DNS records, between two data centers with 1 behind a NAT. Where data center Alpha can reach any IP in Beta, but data center Beta can only reach Alpha by going though ...

Azure “firewall” capture VPN traffic

I have setup a VPN Site-to-Site IPSec connection from on-premis (192.168.0.0/24) to my new Azure virtual network (10.1.1.0/24). The connection is setup with an Azure virtual gateway associated with my ...

strongSwan: multiple rightsubnet using IKEv1

https://wiki.strongswan.org/projects/strongswan/wiki/ConnSection According to strongSwan documentation rightsubnet with multiple network addresses only works with IKEv2. There is a common (?) ...

RRAS IKEv2 VPN Error 20255

After spending all day on this, I think it's time to put it to the community. We have an RRAS server with NPS on a Win 2016 server located in AWS. It has worked fine up until a point over the weekend ...

OpenVPN server Windows Server 2012 R2 can't ping after connection

I have created VPN connection by OpenVPN on WS2012R2. I can connect from my Windows host to the server by VPN but I can't ping it. Network on server site 192.168.10.0 255.255.255.0 OpenVPN addresses ...

AWS VPN: Can't redirect traffic from AWS to specific IP through VPN

I've a a windows machine running on AWS. I managed to create a VPN between Amazon VPC and my office, I can ping devices from one side to the other. What I need to do is redirect the traffic from VPC ...

Traffic cannot be routed despite Strongswan VPN connection being established

I have setup a host to host (tunnel) VPN connection with Strongswan (doing this for the first time) between peers B and C so that hosts A and D can connect securely. A and B are on my side which I ...

OpenVPN can't ping LAN devices

I have a setup pretty similar to this except the LAN clients are behind a DHCP relaying router. The outermost router forwards traffic to the OpenVPN server on port 1194 and I can connect clients ...

OpenVPN Client connects, but DNS setting are not correct (cannot resolve domain names)

I've an active subscription with VPNUnlimited, and they have sent a few settings in order to be able to use OpenVPN client with their service. (they have sent me pre-made .ovpn files for each of their ...

Seting static ip for softether vpn client on linux

I'm connecting three hosts with databases over vpn, they'll exchange data between each other, so I need to set static ip on each one of them. For the vpn I'm using Softether, which works well in case ...

how to use aesni in openvpn and ipsec (strongswan)

I'm trying out different VPN technologies. I successfully created openvpn and ipsec connections to my server, and now I'm trying to use aesni (or AES-NI) to see how much impact it will have on the ...

Connection to a VPN with L2TP over IPsec [closed]

I am using elementaryOS Loki (based on Ubuntu 16.04) and I am trying to connect to the Windows network. Credentials I've been provided with are IP address (gateway) PSK (12 digit number) my login ...

How to debug slow VPN transfer speeds

I have following network setup, two machines on different ISPs, in different cities. +----------------------------+ +------------------------------+ | HOME | ...

Unable to make incoming connections when VPN is connected [duplicate]

I have a Ubuntu router that I've recently made connect to a VPN service to get around internet filtering. The idea is to use the VPN for everything, the machine also hosts some stuff so the normal IP ...

Accessing private instances using VPN

Is it possible to access private resources in a VPC via a VPN? I looked at the solution using bastion hosts but I prefer a solution where I use a VPN client, enter my credentials and have full access ...

Can't access Internet while connected to SSTP VPN on Azure

I'm able to connect successfully to my SSTP VPN on a Windows 2012 R2 machine running RRAS on Azure, but once connected, I can't access the internet. I understand that I could workaround this issue by ...

Pritunl daemon doesn't automatically connect to the vpn

how can i add to autoconnect or autostart the service for connecting to my vpn. It's a client but i need to autoconnect that. So, when i reboot the computer (client) with centos 7 the service its ...

OpenVPN and pfsense port configuration

I want to configure OpenVpn in pfsense to connect in a private network inside a virtual server, I follow some instructions, and read a lot, and I have the same problem, that's what I did: generate CA ...

When VPN tunnel fails between primary Domain Controller and secondary DC - What happens?

I'm a little unclear as to what happens when a VPN tunnel fails between a primary and secondary Domain controller for an extended period of time. Here is a basic rundown of our environment. We have ...

Azure File Share from on prem.

I'm going to reference this question where I was asking about VPNs and Azure. http://security.stackexchange.com/questions/146041/migrating-iis-to-azure However, this brings me to my next question. ...

VPN from AWS into Office

I'm trying to build a VPN gateway from my VPC -> into the office network. I've successfully set up a VPN client on one of my EC2 instances (let's name it "gateway") and now it has VPN virtual ...

Centos to Sonicwall Openswan VPN Tunnel UP but can't access Subnet behind Sonicwall

I'm trying to establish a VPN site-ti-site connection between a couple networks behind a Sonicwall 5600 and my Centos 6 Linux server. Using Openswan I have successfully created a VPN (ie there is a ...

OpenVPN client doesn't have “use default gateway on remote network” option

I am on Windows 8.1. Trying to follow the advice from http://superuser.com/questions/178674/setting-vpn-to-go-through-certain-ips-and-not-others/178675#178675 VPN network I have is TAP Adapter OAS ...

DirectAccess install error: Error: Configuration settings cannot be retrieved from the DirectAccess server GPO

I am installing DirectAccess on Windows Server 2012 using the wizard however I keep getting the error message: Error: Configuration settings cannot be retrieved from the DirectAccess server GPO. ...

Application layer security in cloud mesh network

I am developing few applications running on a server at digitalocean at the moment, mostly Ubuntu Server or Debian. Since I need to scale the system, I will create 2 mysql servers with master-master ...

How to setup a local VPN to route all traffic through proxy?

So global proxy-ing has been a long headache for Linux. GUI options (e.g. GNOME's NetworkManager) are not so reliable and sometimes fail to reach some CLI tools; http-proxy variable doesn't work all ...

Thoughts on Setting up a Caching and VPN Server [closed]

In my country we get poor game update speeds and high ping to gaming server which makes it impossible to play games smoothly. Hence, I've come across the idea to setup a local server. THE PLAN : The ...

IPsec VPN with subnet overlapping and NAT

I'm trying to configure, through OpenSwan on a Linux Ubuntu 14.04 the following scenario. It's an interesting configuration and it would be great to understand why I'm failing configuring correctly, ...

Accessing shared folders on remote subnet (over site-to-site VPN) via local server

I have two sites connected via a site to site VPN. Site 1 is on 192.168.0.0/24 Site 2 is on 192.168.1.0/24 Domain Controller at site 1 is 192.168.0.2. File server at site 1 is 192.168.0.3. Domain ...

RDP connection to another site fails over Open VPN

I have two sites I currently look after. The first uses subnet 192.168.30.x and houses our Open VPN server and the other site is on 192.168.31.x. If we VPN in we get an IP of 192.168.30.x. But when ...

How to configure idle timeout in Google cloud VPN?

Since Google cloud VPN charge by up time, is there possible to configure it to be timeout if no traffic detected for a defined period of time?

Why should my web server be on a seperate network? (Azure)

Just to start, I fully understand that a webserver should be on a seperate network, in the DMZ, not connected to the domain (or at least in a different forest). However, Im website developer and ...

Chaining sshuttle commands over two hops

I have the following scenario: Host A: Mi machine Host B: Server - 192.168.1.1 Host C: Hop node - 192.168.2.1 Network N: 192.168.3.0/24 Using sshuttle what's the best way to forward and be able to ...

Watch Guard Total Security working over VPN

We have a warehouse and 4 other showroom locations. All the 4 locations are connect to the warehouse through a VPN. If we get a watch guard for each location and connect through a VPN. Would it be ...

PowerShell Command to Disable PPTP Remote Access Connections

I'm trying to automate the creation of a L2TP VPN server using PowerShell but I can't find any articles or cmdlets on how to disable PPTP inbound connections in RRAS using PowerShell. Below is a ...

How do i configure Multi WAN Windows VPN Server?

So normally when clients connect to a VPN of ip address = 1.1.1.1 , they get the public IP - 1.1.1.1. But in my case , there will be a lot of traffic so using the same NIC would be pointless. Let ...

One external IP address, multiple VPN servers (l2tp/ipsec)

I am trying to achieve multitenancy for l2tp/ipsec VPN servers. I have one external IP address. I want multiple customers to be able to launch a VPN server on that IP address with whatever internal ...

DirectAccess DNS warning: Enterprise DNS servers (192.168.100.33,::1) used by DirectAccess clients for name resolution are not responding

I'm attempting to set up DirectAccess Remote Access on a standalone Windows Server 2012 server (DC, DHCP, DNS etc.) are handled on another server. I used the wizard but DNS kept throwing warning ...

On an ASA 5505 can you setup Site to Site VPN's as well as Anyconnect or IPSEC VPN's at the same time

I have an ASA 5505 with 3 site-to-site vpn's configured and working. I also want to setup a remote access vpn, either using the AnyConnect wizard or just an IPSEC VPN (again using the wizard) to use ...

Connect to VPN in Windows 10

Until yesterday I used a Windows 7 Pro and OpenVPN to connect to a VPN. In the OpenVPN config folder I had: ca.crt client.key connection.ovpn Due to some hardware failure I was forced to buy a new ...

Deploy AD server over VPN

I have recently been tasked with finding a way to have centralized account management for workstations that are used remotely. An AD server is thus far my only solution to managing machine accounts ...

Commercial Layer 3 VPN is not working on Azure

I am trying to deploy our own commercial VPN server on Azure. For this, deployed VPN server (Centos based VM) in one virtual networks (10.0.0.0/8) VPN server gets IP 10.0.0. 4 as private IP and 104....

How to share tap interface of the IPSec tunnel

I am using shrewsoft for connecting to the IPSec endpoint. Thing is, there is only Windows/Linux version available and I have a Mac - that's why I decided to do a workaround - I virtualise Linux box ...

OpenVpn troubleshooting

I run a VPN with Openvpn on a Debian 8 server. It works kinda well. Sometimes (once a month or every 3 weveks) the tunnel stops running and I have to reboot the server to be able to connect to the ...

pfSense VPN: L2TP/IPSec: Blocked traffic

I set up a VPN via L2TP/IPSec and I am able to connect to it. Pinging the servers in the network is also possible but every other traffic is blocked. Also the outgoing traffic is blocked. A quick ...

Routes for two openvpn connections (different hosts) in the same client

Im trying to make multiple tunnels in the same client, and after a successful connection to the openvpn server I've applied some routes for the tunnels created without success. My first tunnel works ...

Red Hat server blocking SSH from firewall but allowing from other machine behind same firewall

I have two Red Hat VMs behind a firewall with IPSec VPN access configured. Once I connect to the VPN, I cannot SSH into one of the machines (using terminal on the Mac). However, I can get into the ...

Is there a way to tell what process changed a route in Windows 7?

I have a situation where our Windows 7 clients (Windows 10 works ok) are having intermittent connectivity issues when connecting over our Checkpoint Endpoint Connect VPN. The issue manifests itself as ...

Manually specifying routing for an OpenVPN client [on hold]

I've set up an OpenVPN client on Raspbian which is working as expected and services on that machine are tunnelled through the VPN (on interface tun0). Unfortunately the default settings provided ...

cant connect to pptpd vpn

I am using Centos 7 with firewalld enabled on my server and currently i am not able to connect to my pptpd vpn Logs Dec 26 23:34:39 pptpd[28944]: CTRL: Client 39.55.196.181 control connection ...
Translating... 0%