<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>
	Comments on: Setting up VPN client on your pfSense (Surfshark) with  Kill switch	</title>
	<atom:link href="https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/feed/" rel="self" type="application/rss+xml" />
	<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/</link>
	<description>Trying to learn just a bit!</description>
	<lastBuildDate>Mon, 30 Dec 2024 18:02:29 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	
	<item>
		<title>
		By: Thiago Crepaldi		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-239</link>

		<dc:creator><![CDATA[Thiago Crepaldi]]></dc:creator>
		<pubDate>Tue, 01 Nov 2022 23:15:24 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-239</guid>

					<description><![CDATA[In reply to &lt;a href=&quot;https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-238&quot;&gt;Thomasky&lt;/a&gt;.

How did you diagnosed the DNS leak? Have you checked https://geekistheway.com/2020/06/21/protect-your-dns-requests-using-your-pfsense/, in specific the section &quot;Verify everything works&quot;? It describes a possible false-positive when DNSSEC is enabled]]></description>
			<content:encoded><![CDATA[<p>In reply to <a href="https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-238">Thomasky</a>.</p>
<p>How did you diagnosed the DNS leak? Have you checked <a href="https://geekistheway.com/2020/06/21/protect-your-dns-requests-using-your-pfsense/" rel="ugc">https://geekistheway.com/2020/06/21/protect-your-dns-requests-using-your-pfsense/</a>, in specific the section &#8220;Verify everything works&#8221;? It describes a possible false-positive when DNSSEC is enabled</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Thomasky		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-238</link>

		<dc:creator><![CDATA[Thomasky]]></dc:creator>
		<pubDate>Mon, 31 Oct 2022 20:43:06 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-238</guid>

					<description><![CDATA[HI Guys,

I have tried to follow this guide and my vpn is working fine and kill switch also works. Only I still have a DNS leak when iam connected trough my Surfshark VPN. Does someone have a solution for this?]]></description>
			<content:encoded><![CDATA[<p>HI Guys,</p>
<p>I have tried to follow this guide and my vpn is working fine and kill switch also works. Only I still have a DNS leak when iam connected trough my Surfshark VPN. Does someone have a solution for this?</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Thiago Crepaldi		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-82</link>

		<dc:creator><![CDATA[Thiago Crepaldi]]></dc:creator>
		<pubDate>Sat, 30 Jan 2021 23:29:49 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-82</guid>

					<description><![CDATA[Actually I do use several simultaneous Open VPN client connections on my pfsense and they all work. There is a catch, though. When your surfshark connections succeeded, check their &quot;Virtual Address&quot;. If they happen to be assigned the same address, one of them will not work. A workaround is to restart one of the connections until different virtual addressed are assigned to all of your Surfshark connections]]></description>
			<content:encoded><![CDATA[<p>Actually I do use several simultaneous Open VPN client connections on my pfsense and they all work. There is a catch, though. When your surfshark connections succeeded, check their &#8220;Virtual Address&#8221;. If they happen to be assigned the same address, one of them will not work. A workaround is to restart one of the connections until different virtual addressed are assigned to all of your Surfshark connections</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Simon		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-81</link>

		<dc:creator><![CDATA[Simon]]></dc:creator>
		<pubDate>Fri, 29 Jan 2021 07:42:40 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-81</guid>

					<description><![CDATA[Thank you so much for this great tutorial. I use option 2 with my OPNsense and it works like a charm. I tried to use a second VPN client with an other Surfshark host adress for a different PC. But 2 Surfshark VPN client instances at the same time seems not to work. I guessed the reason is that both clients use the same wan ip and come up in the same virtual network area (e.g. 10.8.8.0/24).

Greetings
Simon]]></description>
			<content:encoded><![CDATA[<p>Thank you so much for this great tutorial. I use option 2 with my OPNsense and it works like a charm. I tried to use a second VPN client with an other Surfshark host adress for a different PC. But 2 Surfshark VPN client instances at the same time seems not to work. I guessed the reason is that both clients use the same wan ip and come up in the same virtual network area (e.g. 10.8.8.0/24).</p>
<p>Greetings<br />
Simon</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Thiago Crepaldi		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-80</link>

		<dc:creator><![CDATA[Thiago Crepaldi]]></dc:creator>
		<pubDate>Sun, 24 Jan 2021 22:02:35 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-80</guid>

					<description><![CDATA[Hey Michael, which part of the DNS config did you get confused? I can try to rewrite and clarify!

The RFC1918 alias is created so that we can easily create firewall rules that separate traffic from private LANs (defined at RFC 1918) from traffic coming from Internet. In this tutorial, we created a rule that allowing traffic to pass coming from the specific PCs (alias VPNCLIENT_USA_DEVICES) towards Internet (which is inverted match of RFC1918). You could get away with &quot;any&quot; in the destination too, but I always try to be as restrictive as possible with what the firewall allows]]></description>
			<content:encoded><![CDATA[<p>Hey Michael, which part of the DNS config did you get confused? I can try to rewrite and clarify!</p>
<p>The RFC1918 alias is created so that we can easily create firewall rules that separate traffic from private LANs (defined at RFC 1918) from traffic coming from Internet. In this tutorial, we created a rule that allowing traffic to pass coming from the specific PCs (alias VPNCLIENT_USA_DEVICES) towards Internet (which is inverted match of RFC1918). You could get away with &#8220;any&#8221; in the destination too, but I always try to be as restrictive as possible with what the firewall allows</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Michael Konowaluk		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-76</link>

		<dc:creator><![CDATA[Michael Konowaluk]]></dc:creator>
		<pubDate>Sat, 16 Jan 2021 05:58:49 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-76</guid>

					<description><![CDATA[Hey thanks so much for this. I tried following the surfshark guide but it seemed so outdated. Glad to have found this. Im still trying to wrap my head around the DNS configs and use cases for RFC and why exactly it needs to be setup that way but im glad I got it working. Before I had just been setting the gateway for the rules I wanted passed but couldnt figure why it wasnt working.]]></description>
			<content:encoded><![CDATA[<p>Hey thanks so much for this. I tried following the surfshark guide but it seemed so outdated. Glad to have found this. Im still trying to wrap my head around the DNS configs and use cases for RFC and why exactly it needs to be setup that way but im glad I got it working. Before I had just been setting the gateway for the rules I wanted passed but couldnt figure why it wasnt working.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Thiago Crepaldi		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-69</link>

		<dc:creator><![CDATA[Thiago Crepaldi]]></dc:creator>
		<pubDate>Tue, 22 Dec 2020 22:28:27 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-69</guid>

					<description><![CDATA[It happens the Gateway field on the DNS configuration page is not used for this kind of scenario. Currently, DNS servers are a global configuration, so you have to either put pfSense behind the VPN or not. I am adopting Cloud Flare for my setup]]></description>
			<content:encoded><![CDATA[<p>It happens the Gateway field on the DNS configuration page is not used for this kind of scenario. Currently, DNS servers are a global configuration, so you have to either put pfSense behind the VPN or not. I am adopting Cloud Flare for my setup</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: buzz		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-68</link>

		<dc:creator><![CDATA[buzz]]></dc:creator>
		<pubDate>Mon, 21 Dec 2020 01:01:14 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-68</guid>

					<description><![CDATA[any news from Netgate ????]]></description>
			<content:encoded><![CDATA[<p>any news from Netgate ????</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Buzz		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-61</link>

		<dc:creator><![CDATA[Buzz]]></dc:creator>
		<pubDate>Tue, 08 Dec 2020 16:11:56 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-61</guid>

					<description><![CDATA[Thx Bro,
i the mean time ..i am going to save my pfsense setup en reinstall it with your Guides

mant thx]]></description>
			<content:encoded><![CDATA[<p>Thx Bro,<br />
i the mean time ..i am going to save my pfsense setup en reinstall it with your Guides</p>
<p>mant thx</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Thiago Crepaldi		</title>
		<link>https://geekistheway.com/2020/08/30/setting-up-vpn-client-on-your-pfsense-surfshark/#comment-60</link>

		<dc:creator><![CDATA[Thiago Crepaldi]]></dc:creator>
		<pubDate>Tue, 08 Dec 2020 02:19:08 +0000</pubDate>
		<guid isPermaLink="false">http://crepaldi.us/?p=422#comment-60</guid>

					<description><![CDATA[Yup, I can confirm this is happening here. To really hide your DNS requests, you have to apply Surfshark (or even opendns server) to all your network (selection None as gateway)

I will try to find out more details with Netgate. There is something wrong about this dns gateway thing]]></description>
			<content:encoded><![CDATA[<p>Yup, I can confirm this is happening here. To really hide your DNS requests, you have to apply Surfshark (or even opendns server) to all your network (selection None as gateway)</p>
<p>I will try to find out more details with Netgate. There is something wrong about this dns gateway thing</p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Object Caching 48/94 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Minified using Disk
Database Caching using Redis

Served from: geekistheway.com @ 2026-05-13 08:35:37 by W3 Total Cache
-->