Need help

PaulB_

Well-Known Member
Joined
Sep 25, 2012
Messages
414
Hi all, I need assistance to please get this working.

My work has a free internet service provided by the Western Cape Education Department.
The issue is, there is no DHCP server, and one needs to enter the IP address in manually to connect, and to access the internet, one needs to enter a transparent proxy server, we have staff who work from home, and therefore this system is currently semi-useless to us, so it's only enabled on a small selection of PCs.

Just an example of how one connects currently.
We have issued manual IP addresses to the desktops
(10.4.83.1xx)
Gateway is 10.4.83.129
Subnet is 255.255.255.192
DNS1 (Which also doubles as the proxy server) is 10.0.241.226
DNS2 is 10.0.241.238
We don't have access to their equipment, (Switches they put in) so any changes which will need to be done, will need to be done on our equipment

The proxy is, SQUID and runs on 3128.

What I would like to do, is I have a server with me that we weren't using to it's full potential, so I wiped it, and installed PFSense. I would like the server to deal with the issuing of IP addresses, and also redirect the proxy server (10.0.241.226) to the server, and also redirect 3128 to port 80, so the need to enter the server address on each machine is no longer needed.

This is my ideal configuration.
PFSense Server
WAN Interface - 10.4.83.xxx Subnet 255.255.255.192 (No DHCP) (Gateway 10.4.83.129)
LAN Interface 192.168.0.xx Subnet 255.255.0.0 (DHCP enabled on this interface)
The server acts as a gateway for the internet, and uses port 80 whereas before the gateway was (10.0.241.226:3128)

I had this set up in a similar manner to test, and I was able to ping, and teamviewer was connecting, however I was unable to browse the internet, most likely because the proxy redirecting wasn't correct.

Here is the result of a tracert

C:\Users\Paul>tracert google.com

Tracing route to google.com [216.58.223.14]
over a maximum of 30 hops:

1 <1 ms <1 ms <1 ms 192.168.0.1
2 2 ms 2 ms 2 ms 10.4.83.129
3 106 ms * * 10.3.196.6
4 30 ms 29 ms 36 ms 10.255.252.17
5 89 ms 15 ms 70 ms 10.3.255.77
6 197 ms 99 ms * 10.3.255.78
7 * * 48 ms 10.0.241.226
8 * * * Request timed out.
9 * * * Request timed out.
10 * * * Request timed out.
11 * * * Request timed out.
12 * * * Request timed out.
13 * * * Request timed out.
14 * * * Request timed out.
15 * * * Request timed out.
16 * * * Request timed out.
17 * * * Request timed out.
18 * * * Request timed out.
19 * * * Request timed out.
20 * * * Request timed out.
21 * * * Request timed out.
22 * * * Request timed out.
23 * * * Request timed out.
24 * * * Request timed out.
25 * * * Request timed out.
26 * * * Request timed out.
27 * * * Request timed out.
28 * * * Request timed out.
29 * * * Request timed out.
30 * * * Request timed out.

Trace complete.

Looking forward to responses.

Thanks
 

HunterGR

Expert Member
Joined
Nov 30, 2011
Messages
2,140
Your "Free" connection from the WCED is on the SITA network, and they have it locked down. Had a similar issue at a school we support and it was a nightmare. They blocked teamviewer type applications and their proxy left much to be desired.

All i can say is good luck dealing with them..
 
Top