Gateway Offline, packetloss
-
Hi,
I got a secondary pfSense which is showing gateway, offline packetloss. If I try and ping from this fw to internet f.ex 8.8.8.8 I do got a response. I have upgraded the cluster recently and since that it started to show this. Anyone any idea why this might be happening?
BR
-
@nikim
The gateway monitoring (dpinger) is pinging either the gateway IP or the monitoring IP, which you state in the gateway settings.
System > Routing > GatewaysProbably this IP is not replying for whatever reason.
Do you use the same monitoring IP as on the primary?
-
@viragomann actually if I try to ping the gateway I do get a reply. It just on the gui that shows offline and packetloss. I am starting to think that it might be a bug or something!?
-
@nikim Not 100% same for me, but I'm getting packet loss on only one of my 2 WAN connections. Might be different and I'll post a separate Q if so, but by chance is your ISP Xfinity?
If not, I'm wondering whether it has something to do with the automatic static routing setup. Very odd since it works fine for the other ISP (WOW), but no matter what IP I attempt to monitor on the Xfinity gateway, it eventually reports 100% packet loss.
-
@ptyork No it is not Xfinity, it is another ISP. I dont think my problem is related to ISP. I have very little experience with pfSense and I dont know if this is something normal. I have two pfSense in a HA cluster and they have the same gateway. It only shows on the secondary that the gateway is offline and 100% packetloss but when I ping that same gateway from the secondary via Diagnostics -> Ping, I do get a reply from the gateway.
-
@nikim
Again, the "Gateway offline" status is simply determine by pinging the gateway or the stated monitoring IP.
So presumably you don't get a response from it for whatever reason. I cannot investigate this for you.But if another public IP is responding to pings from the secondary, simply set it as monitoring IP in the gateway settings as mentioned above already.
-
@viragomann thanks for the answer.
These two picture below are from the same pfSense:
This is what is making me confused! To ping the gateway from the fw is not a problem but the firewall is showing anyway that this is a problem. I just need to know if pinging from the device is different than the gateway showing as offline or is it the same operation?
-
@nikim
Did you by any change nat the outbound of pfSense to the CARP VIP?
Show the outbound NAT rules please, if unsure.Did you state an alternative monitoring IP?