OPNsense Forum

Archive => 19.7 Legacy Series => Topic started by: condinsa on October 18, 2019, 03:07:29 am

Title: HSTS while browsing after vpn config
Post by: condinsa on October 18, 2019, 03:07:29 am
Hello. I'm trying to change my low powered OpenWRT router because of it can't handle with encrypted traffic. I've done basic config in my new OPNsense machine, I've been trying it out succesfully for some days and now i'm dealing with VPN. My provider is ProtonVPN and i've followed a pfsense guide (quite easy) Basic steps are: create a CA, create a vpn client, create an interface, create new outbound NAT rules, route LAN traffic to the new VPN gateway and change DNS servers. All seems to be correct from console. I'm getting connectivity, I can resolve URLs, traceroute, etc but when I open the browser I get network authentication warning and if i try to get any web page i'm getting an HSTS (HTTP Strict Transport Security) security alert and I get stuck without any chance to add any exception and go on (only leave the page is possible). I've noticed that no matter the site I try to get browser always gets OPNsense GUI certificate and not the site certificate (i guess this is the reason firefox is complainning about security). Any idea about how can I solve these issues? Thanks in advance

P.D: As i said my VPN provider is ProtonVPN, this is the guide i've followed (https://protonvpn.com/support/pfsense-vpn-setup/) OPNsense is in kvm virtual machine because of ACPI troubles while installing bare metal.
Title: Re: HSTS while browsing after vpn config
Post by: Hixsten on December 08, 2019, 09:27:42 pm
hi,

I have the same issue. did u find a solution ?
Thank you.
Title: Re: HSTS while browsing after vpn config
Post by: firetron on January 02, 2020, 04:07:56 am
ProtonVPN's pfSense guide was a total fail for me in 19.7 so you seem to be a few steps ahead of me.