Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PPPoE with vlan

    Scheduled Pinned Locked Moved General pfSense Questions
    54 Posts 3 Posters 9.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      I would expect it to work with the em port. How exactly was it configured?

      Did the ppp logs show any replies from the server?

      K 1 Reply Last reply Reply Quote 0
      • K
        Kristian_m @stephenw10
        last edited by Kristian_m

        @stephenw10 No it won't even connect like you can see in the logs (in the photo album)

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          What is the WAN actually connected to? Some DSL modem?

          It's possible the modem is already doing the VLAN tagging and you shouldn't have it configured in pfSense?

          K 1 Reply Last reply Reply Quote 0
          • K
            Kristian_m @stephenw10
            last edited by

            @stephenw10 it's connected to the router i have from the ISP it's set to bridge mode and uses cable tv. I could try without the vlan tag in pfsense

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              Yup try that. It might still be tagging WAN side in bridge mode.

              K 2 Replies Last reply Reply Quote 0
              • K
                Kristian_m @stephenw10
                last edited by

                @stephenw10 ok, will do when I get home

                1 Reply Last reply Reply Quote 0
                • K
                  Kristian_m @stephenw10
                  last edited by

                  @stephenw10 it's still the same

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Maybe the ISP requires something else like a priority tag?

                    K 1 Reply Last reply Reply Quote 0
                    • K
                      Kristian_m @stephenw10
                      last edited by

                      @stephenw10 well i don't know since they don't know anything else than i need to setup username, password and it over vlan 101

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S
                        stephenw10 Netgate Administrator
                        last edited by

                        Hmm, I'd be looking for something more basic then. Like maybe the bridge port on the router isn't the one you think it is. Or something as simple as a bad cable.
                        I would definitely use em rather than ue though. No way to know if VLAN tagging is working as expected on a USB NIC.

                        K 1 Reply Last reply Reply Quote 1
                        • K
                          Kristian_m @stephenw10
                          last edited by

                          @stephenw10 just tried new cable from em0 to the bridged router and tried all the ports on the router the same

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            Hmm, well my next step after that would be to try to get a packet capture of what the WAN is actually sending. That would probably require a switch configured with a mirror port in-line though.

                            Steve

                            K 1 Reply Last reply Reply Quote 0
                            • K
                              Kristian_m @stephenw10
                              last edited by

                              @stephenw10 i can try to see if i can do it, where would i need to set my switch then? With a cable directly from the bridged router to it?

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                Well I'd first just try a pcap on em0 in pfSense directly and see if you see any incoming packets there. And that the outgoig packets are tagged as expected.
                                The problem with that is that the capture is after any hardware packet processing so potentially may hide an issue. A pcap from a switch mirror port always shows what's actually on the wire but is more difficult to do. Once you have that though you can capture what other routers are doing when the connection is working as expected.

                                Steve

                                K 1 Reply Last reply Reply Quote 0
                                • K
                                  Kristian_m @stephenw10
                                  last edited by Kristian_m

                                  @stephenw10 Sorry it has been so long. I just did an packet capture packet capture https://imgur.com/a/MyPM4ln

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    Right so only the broadcast traffic from pfSense, no replies from the server at all.

                                    If you expand the layer 2 info there you should be able to see the VLAN tags on it. Assuming you moved the PPPoE config back to em0.101.

                                    Steve

                                    K 1 Reply Last reply Reply Quote 0
                                    • K
                                      Kristian_m @stephenw10
                                      last edited by

                                      @stephenw10 yeah i think so, the data captured i think it was on em0.101 not sure though

                                      1 Reply Last reply Reply Quote 0
                                      • stephenw10S
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        Ah, then try capturing on em0 directly so you can see the VLAN tagged packets.

                                        Capturing on the VLAN won't show that. And it also won't show any replies that aren't using that VLAN tag.

                                        K 1 Reply Last reply Reply Quote 0
                                        • K
                                          Kristian_m @stephenw10
                                          last edited by

                                          @stephenw10 i haven't been home for some days now but i could try, if i even remember how i did it at first

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            Assign and enable em0 as an interface directly if it isn't already. You can leave the IP addresses as 'none'.
                                            Then pcap on that whilst trying to connect.

                                            You should see the PPPoE packets tagged with the 101 VLAN in the capture.

                                            And you will see any replies coming back. And possibly on a different VLAN if so.

                                            K 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.