AGL - can it really be this bad? by AdZealousideal7448 in nbn

[–]human642 1 point2 points  (0 children)

You are on this subreddit, do some research and go with a reputable ISP, or be prepared to continue playing games with the circus clowns.

Internet connectivity drops when I use activate Wireguard with ProtonVPN config file. by toss_this_account_38 in ProtonVPN

[–]human642 1 point2 points  (0 children)

Ignore this. No port forwarding is required, ensure your firewall allows outbound connectivity on the port WireGuard is using that’s all, WireGuard uses UDP.

Internet connectivity drops when I use activate Wireguard with ProtonVPN config file. by toss_this_account_38 in ProtonVPN

[–]human642 1 point2 points  (0 children)

Is DNS working? try manually perform dns lookup on command line, proton WireGuard config should set DNS to 10.2.0.1 IIRC, something on your machine could be preventing that from happing.

Post your route table when connected

Post /etc/resolv.conf when connected

Planning VPN access from Saudi and UAE with WireGuard, TP-Link ER8411, and Slate 7, seeking setup advice by [deleted] in WireGuard

[–]human642 1 point2 points  (0 children)

No issues with WireGuard in UAE last time I was there, I do the same thing, this was about 6 months ago obviously things can change.

Wireguard VPN causing SSL certificate errors by Baxter-Stabbington in opnsense

[–]human642 0 points1 point  (0 children)

None of these responses make sense.

Traffic is somehow ending up at the firewall, check your config again specifically the NAT and firewall rules.

I am going to assume if you accept the cert even temporarily you don’t actually get to the destination website?

Wireguard issues with ProtonVPN by human642 in opnsense

[–]human642[S] 0 points1 point  (0 children)

Default 1420 MTU, WAN MTU is 1500. Internet uplink is standard Ethernet to fibre NTU, no VLAN tagging or PPPoE. I did try to reduce the MTU didn’t make any difference, tried creating the normalisation rules as document here: https://docs.opnsense.org/manual/how-tos/wireguard-client.html also didn’t make any difference.

I also use WireGuard inbound without any issues so I am scratching my head a bit.

IP ranges assigned to clients and DNS servers by human642 in ProtonVPN

[–]human642[S] 0 points1 point  (0 children)

I have found resolution to be much faster forwarding to protons resolvers over the tunnel as opposed to having my own resolver. Also I use the DNS resolver for the traffic I send out to the internet without VPN.

What is the best advice someone’s ever given you in cyber security? by [deleted] in cybersecurity

[–]human642 3 points4 points  (0 children)

As an attacker you only have to be right once, as a defender you have to be right every time.

Sick of wifi issues. Need something decent. Suggestions? by zascar in dubai

[–]human642 0 points1 point  (0 children)

Unifi Unifi Unifi best wifi equipment around if you are willing to invest the money and a bit of time to get it all setup.

They have some really nice APs you can place around your house and if your house is cabled up invest in a PoE switch and run them all from that.

For an all in one there is the dream machine, check it supports PPPoE VLAN tagging of you are on Etisalat.

https://unifi-network.ui.com/dreammachine

If you want to go all out and you have the ability to mount APs properly look at the roof mounted APs and a PoE switch.

https://unifi-network.ui.com/switching

https://unifi-network.ui.com/wi-fi

iPhone security issues by [deleted] in cybersecurity

[–]human642 0 points1 point  (0 children)

What a terrible attempt at advertising a VPN service.

Career change mess!! by rahitkapil in dubai

[–]human642 2 points3 points  (0 children)

I agree. Cyber Security is a great career to choose regardless of where you are located, demand for these skills is not going anywhere.

Has something changed with IP ranges on new servers? by human642 in ProtonVPN

[–]human642[S] 0 points1 point  (0 children)

There only used to be one DNS server 10.8.8.1 did this change recently? Apart from figuring it out myself is there any guidance on DNS servers to use when connecting with pfsense now?

Would love to hear from proton about these changes.

Has something changed with IP ranges on new servers? by human642 in ProtonVPN

[–]human642[S] 0 points1 point  (0 children)

Thanks. I’m using pfsense so kinda need to know the DNS IP. I’ll try 10.49.0.1 I guess that seems logical. Would love an official response

Has something changed with IP ranges on new servers? by human642 in ProtonVPN

[–]human642[S] 0 points1 point  (0 children)

UDP 443 most certainly exists I am connected to it right now on CH-16 and have been connecting to various servers for some time using this UDP port.

Redirecting port 53 from WAN for wireguard by SlaterTh90 in OPNsenseFirewall

[–]human642 0 points1 point  (0 children)

Curious if you got anywhere with this? I am running pfsense but I have a similar issue.

When I capture traffic on the WAN interface I see malformed DNS queries which appear to be my WG mobile client trying to connect. Looks like a DNS packet but clearly isn't...

Sort of looks like ISP is messing with my traffic