Hi all, I need assistance to please get this working.
My work has a free internet service provided by the Western Cape Education Department.
The issue is, there is no DHCP server, and one needs to enter the IP address in manually to connect, and to access the internet, one needs to enter a transparent proxy server, we have staff who work from home, and therefore this system is currently semi-useless to us, so it's only enabled on a small selection of PCs.
Just an example of how one connects currently.
We have issued manual IP addresses to the desktops
(10.4.83.1xx)
Gateway is 10.4.83.129
Subnet is 255.255.255.192
DNS1 (Which also doubles as the proxy server) is 10.0.241.226
DNS2 is 10.0.241.238
We don't have access to their equipment, (Switches they put in) so any changes which will need to be done, will need to be done on our equipment
The proxy is, SQUID and runs on 3128.
What I would like to do, is I have a server with me that we weren't using to it's full potential, so I wiped it, and installed PFSense. I would like the server to deal with the issuing of IP addresses, and also redirect the proxy server (10.0.241.226) to the server, and also redirect 3128 to port 80, so the need to enter the server address on each machine is no longer needed.
This is my ideal configuration.
PFSense Server
WAN Interface - 10.4.83.xxx Subnet 255.255.255.192 (No DHCP) (Gateway 10.4.83.129)
LAN Interface 192.168.0.xx Subnet 255.255.0.0 (DHCP enabled on this interface)
The server acts as a gateway for the internet, and uses port 80 whereas before the gateway was (10.0.241.226:3128)
I had this set up in a similar manner to test, and I was able to ping, and teamviewer was connecting, however I was unable to browse the internet, most likely because the proxy redirecting wasn't correct.
Here is the result of a tracert
C:\Users\Paul>tracert google.com
Tracing route to google.com [216.58.223.14]
over a maximum of 30 hops:
1 <1 ms <1 ms <1 ms 192.168.0.1
2 2 ms 2 ms 2 ms 10.4.83.129
3 106 ms * * 10.3.196.6
4 30 ms 29 ms 36 ms 10.255.252.17
5 89 ms 15 ms 70 ms 10.3.255.77
6 197 ms 99 ms * 10.3.255.78
7 * * 48 ms 10.0.241.226
8 * * * Request timed out.
9 * * * Request timed out.
10 * * * Request timed out.
11 * * * Request timed out.
12 * * * Request timed out.
13 * * * Request timed out.
14 * * * Request timed out.
15 * * * Request timed out.
16 * * * Request timed out.
17 * * * Request timed out.
18 * * * Request timed out.
19 * * * Request timed out.
20 * * * Request timed out.
21 * * * Request timed out.
22 * * * Request timed out.
23 * * * Request timed out.
24 * * * Request timed out.
25 * * * Request timed out.
26 * * * Request timed out.
27 * * * Request timed out.
28 * * * Request timed out.
29 * * * Request timed out.
30 * * * Request timed out.
Trace complete.
Looking forward to responses.
Thanks
My work has a free internet service provided by the Western Cape Education Department.
The issue is, there is no DHCP server, and one needs to enter the IP address in manually to connect, and to access the internet, one needs to enter a transparent proxy server, we have staff who work from home, and therefore this system is currently semi-useless to us, so it's only enabled on a small selection of PCs.
Just an example of how one connects currently.
We have issued manual IP addresses to the desktops
(10.4.83.1xx)
Gateway is 10.4.83.129
Subnet is 255.255.255.192
DNS1 (Which also doubles as the proxy server) is 10.0.241.226
DNS2 is 10.0.241.238
We don't have access to their equipment, (Switches they put in) so any changes which will need to be done, will need to be done on our equipment
The proxy is, SQUID and runs on 3128.
What I would like to do, is I have a server with me that we weren't using to it's full potential, so I wiped it, and installed PFSense. I would like the server to deal with the issuing of IP addresses, and also redirect the proxy server (10.0.241.226) to the server, and also redirect 3128 to port 80, so the need to enter the server address on each machine is no longer needed.
This is my ideal configuration.
PFSense Server
WAN Interface - 10.4.83.xxx Subnet 255.255.255.192 (No DHCP) (Gateway 10.4.83.129)
LAN Interface 192.168.0.xx Subnet 255.255.0.0 (DHCP enabled on this interface)
The server acts as a gateway for the internet, and uses port 80 whereas before the gateway was (10.0.241.226:3128)
I had this set up in a similar manner to test, and I was able to ping, and teamviewer was connecting, however I was unable to browse the internet, most likely because the proxy redirecting wasn't correct.
Here is the result of a tracert
C:\Users\Paul>tracert google.com
Tracing route to google.com [216.58.223.14]
over a maximum of 30 hops:
1 <1 ms <1 ms <1 ms 192.168.0.1
2 2 ms 2 ms 2 ms 10.4.83.129
3 106 ms * * 10.3.196.6
4 30 ms 29 ms 36 ms 10.255.252.17
5 89 ms 15 ms 70 ms 10.3.255.77
6 197 ms 99 ms * 10.3.255.78
7 * * 48 ms 10.0.241.226
8 * * * Request timed out.
9 * * * Request timed out.
10 * * * Request timed out.
11 * * * Request timed out.
12 * * * Request timed out.
13 * * * Request timed out.
14 * * * Request timed out.
15 * * * Request timed out.
16 * * * Request timed out.
17 * * * Request timed out.
18 * * * Request timed out.
19 * * * Request timed out.
20 * * * Request timed out.
21 * * * Request timed out.
22 * * * Request timed out.
23 * * * Request timed out.
24 * * * Request timed out.
25 * * * Request timed out.
26 * * * Request timed out.
27 * * * Request timed out.
28 * * * Request timed out.
29 * * * Request timed out.
30 * * * Request timed out.
Trace complete.
Looking forward to responses.
Thanks