Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Locked out of PFsense GUI

    Scheduled Pinned Locked Moved General pfSense Questions
    29 Posts 6 Posters 3.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      SteveITS Galactic Empire @mskidz
      last edited by

      @mskidz Define "locked out"...invalid password?

      When you say you run the setup wizard and lose connection what choices are you making for WAN and LAN? We need more information than "it doesn't work." If it worked with factory defaults and then stopped then something changed.

      Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
      When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
      Upvote ๐Ÿ‘ helpful posts!

      M 1 Reply Last reply Reply Quote 0
      • M
        mskidz @SteveITS
        last edited by

        @SteveITS
        good point i totally agree. define locked out - after running the set up wizard i only changed a few things in the set up wizard I changed the name of the firewall, I changed the IP address that I speak with from 192.168.1.1 to 192.168.77.1 and I changed the admin password. then it took a really long time for the reload on the wizard when it finally reloaded. the screen went dark and said can not connect.

        S 1 Reply Last reply Reply Quote 0
        • S
          SteveITS Galactic Empire @mskidz
          last edited by

          @mskidz Did you change your PC to a 192.168.77.x address also? (I'm assuming both pfSense LAN and your PC have a /24 subnet mask)

          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
          Upvote ๐Ÿ‘ helpful posts!

          M 1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            What WAN address is it getting? A public IP?

            1 Reply Last reply Reply Quote 0
            • M
              mskidz @SteveITS
              last edited by

              @SteveITS I did not make any changes to my computer if the changes did not come from the set up wizard. Not sure about he subnet mask. what ever the wizard set up and whatever was set up when I installed linux mint. I set up linux mint a couple of years ago.

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                You would need to retrigger the client to pull a DHCP lease in the new subnet. Usually easiest to simply unplug the replug the Ethernet cable on the client to do that.

                M 1 Reply Last reply Reply Quote 0
                • M
                  mskidz @stephenw10
                  last edited by

                  @stephenw10
                  I unplugged the cable and plugged it back in I can now get into PFsense, but I still cant get on to the internet.

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Is it showing a valid WAN IP? How is the WAN configured?

                    Does it show link LEDs on the WAN NIC at least/

                    M 1 Reply Last reply Reply Quote 0
                    • M
                      mskidz @stephenw10
                      last edited by

                      @stephenw10

                      Yes I show the lights blinking at the back of the device in both the wan and lan ports that have a cable plugged in.

                      I am not sure what you mean how is the wan configured and is it showing a valid wan IP.

                      GertjanG 1 Reply Last reply Reply Quote 0
                      • GertjanG
                        Gertjan @mskidz
                        last edited by

                        @mskidz

                        Show for example : Status > Interfaces

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        M 1 Reply Last reply Reply Quote 0
                        • stephenw10S
                          stephenw10 Netgate Administrator
                          last edited by

                          Yes, the status will show if it has an IP. It will also show that at the console.

                          How is the WAN configured in Interfaces > WAN? DHCP? Static? PPPoE?

                          Steve

                          M 1 Reply Last reply Reply Quote 0
                          • M
                            mskidz @Gertjan
                            last edited by

                            Interface status - wan shows a red x with auto select both an ipv4 and ipv6 address
                            Lan shows a green arrow 1000base T with the ipv4 address I assigned

                            All other wan and lan show red x auto select no ip addresses

                            1 Reply Last reply Reply Quote 0
                            • M
                              mskidz @stephenw10
                              last edited by

                              @stephenw10
                              The wan is a DHCP ipv4 the enable box is checked and the two reserved networks at the bottom are checked rfc1918 and bogon

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                Ok so it's failing to pull a dhcp lease.

                                What is it connected to?

                                M 1 Reply Last reply Reply Quote 0
                                • M
                                  mskidz @stephenw10
                                  last edited by

                                  @stephenw10
                                  I have the 4100 connected to my laptop that has Linux mint as an os though the lan port. I have the wan port hooked up to a port on the modem that my ISP gave me.

                                  The lap top does not have the traditional Ethernet jack. It has a USB C so I have a converter that receives the Ethernet cable from the 4100 then this convertor has a USB C that connects into my laptop.

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    Ok, so the ISP is not passing pfSense a DHCP lease.

                                    The first thing to try is to power cycle to modem. Many ISPs will lock to the MAC address of whatever was connected and that can be reset by rebooting the modem.
                                    Sometimes you need to call the ISP for that or spoof the MAC address of the old device on the pfSense WAN.

                                    If that still fails make sure the ISP doesn't require something else on the WAN like VLAN or priority tagging.

                                    Steve

                                    M 1 Reply Last reply Reply Quote 0
                                    • GertjanG Gertjan referenced this topic on
                                    • M
                                      mskidz @stephenw10
                                      last edited by

                                      @stephenw10
                                      Ok i power cycled the modem and now I have both the WAN and LAN on the with a green arrow and all the other connects lan 2-4 and wan2 have red x. I still am unable to connect to the internet through the fire wall.

                                      1 Reply Last reply Reply Quote 0
                                      • stephenw10S
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        Does the WAN show as having a valid IP address and/or gateway though?

                                        If not check the system and dhcp logs for errors.

                                        M 1 Reply Last reply Reply Quote 0
                                        • M
                                          mskidz @stephenw10
                                          last edited by

                                          @stephenw10

                                          This is what it shows on the dashborad for eh WAN

                                          1000baseT <full-duplex,rxpause,txpause> 192.168.0.161
                                          2604:2d80:ab82:c700:92ec:77ff:fe35:430b

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            Ok, so it's pulling a valid IP there.

                                            Check the routes in Diag > Routes. Make sure it has a default route via the upstream router; probably: 192.168.0.1.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.