Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Access webui need to open 443?

    Scheduled Pinned Locked Moved General pfSense Questions
    webui
    30 Posts 5 Posters 2.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      SteveITS Galactic Empire @nadvig23
      last edited by

      @nadvig23 try
      https://docs.netgate.com/pfsense/en/latest/troubleshooting/connect-to-gui.html

      And a few of these:
      https://docs.netgate.com/pfsense/en/latest/troubleshooting/locked-out.html

      Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
      When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
      Upvote 👍 helpful posts!

      N 1 Reply Last reply Reply Quote 0
      • N
        nadvig23 @SteveITS
        last edited by

        @SteveITS

        Ok now i have the url showed on the console
        Http://192.168.1.200

        Didn’t ask me to activate https

        Now on my laptop on the Lan i have configured for now ip dhcp with 192.168.1.1 as gateway

        Go to http://192.168.1.200 nothing!!!

        I have check the cable and the switch everything is ok

        S 1 Reply Last reply Reply Quote 0
        • S
          SteveITS Galactic Empire @nadvig23
          last edited by

          @nadvig23 if the pfSense LAN IP is .200 then why is .1 the gateway ? Do you have a second device providing DHCP?

          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
          Upvote 👍 helpful posts!

          N 1 Reply Last reply Reply Quote 0
          • N
            nadvig23 @SteveITS
            last edited by

            @SteveITS

            No. I will put again lan 192.168.1.1 and gateway same ip.

            Will try again

            N 1 Reply Last reply Reply Quote 0
            • N
              nadvig23 @nadvig23
              last edited by

              @nadvig23

              It’s working!!! I can access webui from a pc on the Lan!!! I think it was because i didn’t put the 192.168.1.1 as dns on the laptop while trying to access the webui

              But since lastnight i got network unreacheable the wan is dhcp detected the ip from my Isp but i can’t ping 8.8.8.8 From the console . Before the ping 8.8.8.8 was working. I check the cable and my isp everything is ok

              V 1 Reply Last reply Reply Quote 0
              • V
                viragomann @nadvig23
                last edited by

                @nadvig23
                Try to ping from pfSense WebGUI itself. Diagnostic > Ping
                Is this successful?

                N 1 Reply Last reply Reply Quote 0
                • N
                  nadvig23 @viragomann
                  last edited by nadvig23

                  @viragomann

                  Webui - diagnostics- ping:

                  Yes !
                  Host 8.8.8.8
                  Source wan

                  No!
                  Host 8.8.8.8
                  Source Lan

                  V S 2 Replies Last reply Reply Quote 0
                  • V
                    viragomann @nadvig23
                    last edited by

                    @nadvig23
                    So presumably your outbound NAT is not working. Firewall > NAT > Outbound
                    Is it in automatic mode?
                    Did you change something or disabling NAT in the System > Advanced settings.

                    Is your WAN set properly? Status > Interfaces

                    N 1 Reply Last reply Reply Quote 0
                    • N
                      nadvig23 @viragomann
                      last edited by

                      @viragomann

                      Outbound - automatic
                      I have not yet change something -
                      In status interfaces
                      Wan / rl0

                      • status up dhcp

                      Lan / re0 : up 192.168.1.1

                      N 1 Reply Last reply Reply Quote 0
                      • N
                        nadvig23 @nadvig23
                        last edited by

                        @nadvig23

                        I have change my switch (it was a manageable switch …. Weird cannot change the ip gateway for the new one 192.168.1.1) so with the new netgear switch (not manageable this one) now;

                        Webui Diagnostics Ping:
                        Host 8.8.8.8
                        Source wan or lan is 0% lost
                        So for now this is working

                        But the lan pc cannot acces Internet i don’t go out!

                        Maybe it’s because i have to add firewall rules?

                        S 1 Reply Last reply Reply Quote 0
                        • S
                          SteveITS Galactic Empire @nadvig23
                          last edited by

                          @nadvig23 LAN has an allow to any rule out of the box. If that was removed then yes a rule is needed for DNS and Internet. All Interfaces have a hidden deny all rule.

                          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                          Upvote 👍 helpful posts!

                          N 1 Reply Last reply Reply Quote 0
                          • N
                            nadvig23 @SteveITS
                            last edited by

                            @SteveITS

                            I have done no change yet

                            N 1 Reply Last reply Reply Quote 0
                            • N
                              nadvig23 @nadvig23
                              last edited by

                              If the rules by default :
                              Firewall- rules - lan:
                              Default allow Lan to any rule

                              Will permit to my laptop from the Lan to go out well i can’t go out to internet
                              My laptop is 192.168.1.99 with gateway and dns 192.168.1.1
                              I have put this Mac addr and ip of this laptop in Dhcp server- static mapping….

                              1 Reply Last reply Reply Quote 0
                              • S
                                SteveITS Galactic Empire @nadvig23
                                last edited by

                                @nadvig23 said in Access webui need to open 443?:

                                Webui - diagnostics- ping:

                                Yes !
                                Host 8.8.8.8
                                Source wan

                                No!
                                Host 8.8.8.8
                                Source Lan

                                I was working on a problem router today that I think has a bad WAN port. I reinstalled, and I had this behavior until I finished the setup wizard. I don't recall having to do that in the past.

                                You might reset to factory defaults and start over just to see.

                                Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                                When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                                Upvote 👍 helpful posts!

                                N 1 Reply Last reply Reply Quote 0
                                • jimpJ jimp moved this topic from Problems Installing or Upgrading pfSense Software on
                                • N
                                  nadvig23 @SteveITS
                                  last edited by

                                  @SteveITS

                                  hello i was in vacation....

                                  i have bought Netgate sg-2100...it is really great! my network is working now!
                                  just a question...can i plug the wifi router (netgear) in the LAN2 port of Netgate??
                                  thanks

                                  S 1 Reply Last reply Reply Quote 0
                                  • S
                                    SteveITS Galactic Empire @nadvig23
                                    last edited by

                                    @nadvig23 you can use any port. On the 2100 the 4 LAN ports are a switch.

                                    Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                                    When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                                    Upvote 👍 helpful posts!

                                    1 Reply Last reply Reply Quote 2
                                    • stephenw10S
                                      stephenw10 Netgate Administrator
                                      last edited by

                                      Or if you want the WIFI AP on a different subnet so you can filter traffic differently you can set on the ports to be a discrete interface:
                                      https://docs.netgate.com/pfsense/en/latest/solutions/netgate-2100/configuring-the-switch-ports.html

                                      Steve

                                      N 2 Replies Last reply Reply Quote 0
                                      • N
                                        nadvig23 @stephenw10
                                        last edited by

                                        @stephenw10
                                        good idea i prefer to have the wifi on another subnet that the local network. i will folow this documentation, thanks! i have netgear wifi router, i will see how to set up this one too (probably that i need to put this one on static ip 192.168.100.1)?

                                        1 Reply Last reply Reply Quote 0
                                        • stephenw10S
                                          stephenw10 Netgate Administrator
                                          last edited by

                                          The netgear router/ap could pull a lease from pfSense in the new subnet. I would set it to static mapping so it always gets the same IP address if you do. But, yes, setting it statically will also work.

                                          1 Reply Last reply Reply Quote 0
                                          • N
                                            nadvig23 @stephenw10
                                            last edited by

                                            @stephenw10

                                            hello i have finaly have time to configure my wifi to Netgate on OPT1.

                                            i have follow your link. everything go well thanks!

                                            but i have to do some firewall rules...because none of my laptop go out to Internet. here what i have configured:

                                            Screenshot from 2023-09-10 13-36-14.png

                                            can youhelp?

                                            N 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.