Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    No LAN internet

    Scheduled Pinned Locked Moved General pfSense Questions
    66 Posts 6 Posters 12.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      hoandco
      last edited by

      Hi
      I have installed ce pfsense on a new AMD pc with an Intel dual lan nic.
      I have the wan connected ppoe to the satellite modem. Ping tested.
      It's connected. Speed good.
      I can't connect the LAN. I have tried rules for Lan TCP/UDP lan.net ports any http 80 443 and 64.
      I have a vlan opt1 with same rules after I reinstalled pfsense.
      I have read many posts but I think it's the WAN settings perhaps.
      I look forward to some advice.
      Leigh Horton

      V M GertjanG 3 Replies Last reply Reply Quote 0
      • V
        viragomann @hoandco
        last edited by

        @hoandco said in No LAN internet:

        I can't connect the LAN. I have tried rules for Lan TCP/UDP lan.net ports any http 80 443 and 64.

        Did you remove the default LAN rule?
        If so you need to allow at least als DNS, TCP/UDP port 53.

        I have a vlan opt1 with same rules after I reinstalled pfsense.

        What want you to tell us with that info? Does this VLAN work?

        Also ensure that the outbound NAT is in automatic mode.

        1 Reply Last reply Reply Quote 0
        • jimpJ jimp moved this topic from Problems Installing or Upgrading pfSense Software on
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          If the WAN side is passing your a private IP it may be conflicting with the LAN/OPT1 subnets.

          Can you post some screenshots of the setup?

          H 1 Reply Last reply Reply Quote 0
          • M
            marvosa @hoandco
            last edited by

            @hoandco Since we don't have network map, it could be many things (NAT, switch config, misconfigured LAN interface, DNS, wrong default gateway selected, etc), but... I'd start by verifying basic IP communication with an any/any rule.

            H 2 Replies Last reply Reply Quote 1
            • H
              hoandco @marvosa
              last edited by

              @marvosa said in No LAN internet:

              @hoandco Since we don't have network map, it could be many things (NAT, switch config, misconfigured LAN interface, DNS, wrong default gateway selected, etc), but... I'd start by verifying basic IP communication with an any/any rule.

              I will do a network map for you.
              I will test one rule at a time to verify basic communication.
              I am excited by this.
              Thanks for the advice to date

              1 Reply Last reply Reply Quote 0
              • H
                hoandco @marvosa
                last edited by

                @marvosa
                436bcd5a-3cfb-48a5-9d37-ed121fd157b5-image.png

                1 Reply Last reply Reply Quote 0
                • H
                  hoandco @stephenw10
                  last edited by

                  @stephenw10
                  9899014a-d05a-4a6c-969d-d81dada02ac9-image.png

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    What subnets are you using there on each side? Is it a public IP on the WAN?

                    H 1 Reply Last reply Reply Quote 0
                    • H
                      hoandco @stephenw10
                      last edited by

                      @stephenw10
                      Stephen
                      It is a static IP. Ppoe connection. It connects and works very well.
                      Leigh

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S
                        stephenw10 Netgate Administrator
                        last edited by

                        So, yes, the WAN side is a public IP? No way it can conflict with the LAN?

                        H 1 Reply Last reply Reply Quote 0
                        • H
                          hoandco @stephenw10
                          last edited by

                          @stephenw10
                          I will send some screen shots of wan lan and nat setup a bit later

                          H 1 Reply Last reply Reply Quote 0
                          • H
                            hoandco @hoandco
                            last edited by

                            @hoandco
                            The WAN has been connected but have to use another router to send this

                            caa765b9-20db-4ac8-afea-28809a2d3590-image.png
                            e9550670-f593-4d84-b287-8a5e520a6833-image.png
                            46e314d2-010b-49a1-87e6-7904323a9fe7-image.png
                            d4602974-78cc-48fb-a86f-e2b25dbac0d7-image.png
                            fa36eb47-9b79-460e-b6ce-c8ff8e0fd5cb-image.png

                            GertjanG 1 Reply Last reply Reply Quote 0
                            • GertjanG
                              Gertjan @hoandco
                              last edited by Gertjan

                              @hoandco said in No LAN internet:

                              I have tried rules for Lan TCP/UDP lan.net ports any http 80 443 and 64.

                              Make sure that the last two rules with the red dot are present on your LAN interface :

                              8459e1f4-363b-4d3e-b164-438f781b7d7f-image.png

                              as stated : took me years to find these two.
                              They work flawlessly.

                              The first rule is auto generated, as it is an interface option. pfSense admins like me can very ignorant, so this rule saves me ones in a while.
                              Rule 2, 4 and 5 are deactivated.
                              Rule 3 : got that one from some one who told me to put it there. Dono why.

                              Or keep the default LAN firewall rule that you would find on the LAN interface when you install pfSense. That one is also perfect.
                              ( and not importing your config, as that would also import the bad config )

                              What uses port 64 ??

                              edit : ah, ok, you already have the two perfect rules.
                              So, LAN interface rules is not the issue.
                              Your second rules LAN net to LAN net will never be used, as it's already covered by the first, anti lockout rule.

                              Your LAN uses 192.168.55.1 /24 right ?
                              The device you've connected on the LAN has an IP like 192.168.55.x where x is in the 2->254 range ? Gateway and DNS is 92.168.55.1 on that device ?

                              No "help me" PM's please. Use the forum, the community will thank you.
                              Edit : and where are the logs ??

                              stephenw10S 1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator @Gertjan
                                last edited by

                                @gertjan said in No LAN internet:

                                as stated : took me years to find these two.

                                😂

                                H 1 Reply Last reply Reply Quote 0
                                • stephenw10S
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  Ok, you appear to be using 192.168.55.0/24 as the LAN subnet.

                                  The WAN is using a public IP outside of that I assume?

                                  Please post a screenshot of Status > Interfaces. You can redact your WAN IP if you need to.

                                  Your LAN firewall rules screenshot shows that traffic from the LAN is hitting the LAN interface and opening states.

                                  Check you have a default route in Diag > Routes.
                                  If you don't go to System > Routing > Gateways and save the PPPoE gateway as the default v4 gateway.

                                  Steve

                                  H 1 Reply Last reply Reply Quote 0
                                  • GertjanG
                                    Gertjan @hoandco
                                    last edited by

                                    @hoandco

                                    Added to what steve said :

                                    The device you use on the pfSense LAN, what is the IPv4 is uses ?
                                    It must be something between 192.168.55.2 and 192.168.55.254.
                                    The Gateway and DNS of that device should be 192.168.55.1 for both.

                                    If that device is a windows PC :

                                    ipconfig /all
                                    

                                    Btw : My previous post was hours to late.

                                    No "help me" PM's please. Use the forum, the community will thank you.
                                    Edit : and where are the logs ??

                                    1 Reply Last reply Reply Quote 0
                                    • H
                                      hoandco @stephenw10
                                      last edited by

                                      @stephenw10
                                      update
                                      wan ppoe set as default lan rules changed Also reloadedpfsense and set new ip address

                                      96ddbbe9-928a-401a-b0be-3d9ddb1fcdd6-image.png

                                      pc connected with new ipv4 address and gateway

                                      0f77ccdc-71f5-4609-a0ed-baf769d66826-image.png

                                      Status

                                      a97d71e7-429b-4d4c-868a-8f3aa8e25103-image.png

                                      IPV 4 routes

                                      873007b6-d641-42e2-b709-969d90474325-image.png

                                      interface stats

                                      950acc86-75f7-4086-ad72-0cd9aeff4f71-image.png

                                      WAN gateway - Why offline??

                                      7cb1f573-9d77-4d61-abe1-b5de8b5ad52e-image.png

                                      Gateways

                                      fb0fb2bb-bf3b-459a-9cc7-9f39b753d029-image.png

                                      1 Reply Last reply Reply Quote 0
                                      • H
                                        hoandco @stephenw10
                                        last edited by

                                        @stephenw10

                                        Please check the screenshots. The ping test is working but no internet on lan when pc connected
                                        cdb0f745-25ed-4615-a1a1-d6d1b92ea316-image.png

                                        GertjanG 1 Reply Last reply Reply Quote 0
                                        • GertjanG
                                          Gertjan @hoandco
                                          last edited by

                                          @hoandco

                                          Can't see anything suspect with your WAN setup.
                                          But your latency is huge .... do you have a satellite connection or something like that ?

                                          20047a74-c577-4515-9a87-a636a51f3372-image.png

                                          Or is this an old POTS 'modem' dail-up connection as has been see before 2000 ?

                                          PING packets, send out regularly by pfSense to test the uplink (WAN) connection do all come back, but terrible slow. That will impact your overall 'Internet' performance.

                                          No "help me" PM's please. Use the forum, the community will thank you.
                                          Edit : and where are the logs ??

                                          H 2 Replies Last reply Reply Quote 0
                                          • H
                                            hoandco @Gertjan
                                            last edited by

                                            @gertjan
                                            Yes satellite modem 25 Mbps

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.