Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Access webui need to open 443?

    Scheduled Pinned Locked Moved General pfSense Questions
    webui
    30 Posts 5 Posters 2.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Or if you want the WIFI AP on a different subnet so you can filter traffic differently you can set on the ports to be a discrete interface:
      https://docs.netgate.com/pfsense/en/latest/solutions/netgate-2100/configuring-the-switch-ports.html

      Steve

      N 2 Replies Last reply Reply Quote 0
      • N
        nadvig23 @stephenw10
        last edited by

        @stephenw10
        good idea i prefer to have the wifi on another subnet that the local network. i will folow this documentation, thanks! i have netgear wifi router, i will see how to set up this one too (probably that i need to put this one on static ip 192.168.100.1)?

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          The netgear router/ap could pull a lease from pfSense in the new subnet. I would set it to static mapping so it always gets the same IP address if you do. But, yes, setting it statically will also work.

          1 Reply Last reply Reply Quote 0
          • N
            nadvig23 @stephenw10
            last edited by

            @stephenw10

            hello i have finaly have time to configure my wifi to Netgate on OPT1.

            i have follow your link. everything go well thanks!

            but i have to do some firewall rules...because none of my laptop go out to Internet. here what i have configured:

            Screenshot from 2023-09-10 13-36-14.png

            can youhelp?

            N 1 Reply Last reply Reply Quote 0
            • N
              nadvig23 @nadvig23
              last edited by

              i have just add the gateway...i have forgot that !

              wifi OPT1 192.168.100.1 192.168.100.1

              N 1 Reply Last reply Reply Quote 0
              • N
                nadvig23 @nadvig23
                last edited by nadvig23

                but still not go out:

                from a laptop 192.168.100.201:

                cyber@cyberlaptop:~$ ping 192.168.100.1
                PING 192.168.100.1 (192.168.100.1) 56(84) bytes of data.
                From 192.168.100.201 icmp_seq=1 Destination Host Unreachable
                From 192.168.100.201 icmp_seq=2 Destination Host Unreachable

                1 Reply Last reply Reply Quote 0
                • stephenw10S
                  stephenw10 Netgate Administrator
                  last edited by

                  That should pass anything but you can see it has not opened any states or passed any traffic on any of those rules.

                  I assume the OPT1 interface is where you have the WIFI connected? And that is using the 192.168.100.1/24 interface address?

                  Do wifi clients pull a dhcp lease in that subnet correctly?

                  N 1 Reply Last reply Reply Quote 0
                  • N
                    nadvig23 @stephenw10
                    last edited by nadvig23

                    @stephenw10
                    oh my god!!!! the probleme was :

                    wifi 6 netgear nighthwak ....yellow port ....was connected to the netgate lan 4 (opt1). i have unpluged it, put the cable in the lan 1 port of the netgear (not the yellow one) and it's working!!!!!!!!!!!!!

                    GertjanG 1 Reply Last reply Reply Quote 1
                    • GertjanG
                      Gertjan @nadvig23
                      last edited by

                      @nadvig23 said in Access webui need to open 443?:

                      i have unpluged it, put the cable in the lan 1 port of the netgear

                      The "yellow" (single) port on the AP Netgear router is a so called WAN port.
                      You've created a Router (Netgear) after Router ( pfSEnse) setup.
                      That could be just what you want, but is often totally not understood. (read = you've complicated your live)

                      What you probably want : using your Netgaer as a "Access Point" only, and not as a router (and not a DNS, not a firewall, not a DHCP server) == just as an AP.

                      The basic setup for such a device is :

                      Your pfSense LAN (== OPT1) uses 192.168.100.1 / 24

                      Set your LAN IP of you Netgate like :
                      192.168.100.2 /24 (= 255.255.255.0) = =a static IP setup.
                      Set the Netgear gateway to 192.168.100.1
                      Set the DNS of Netgear as 192.168.100.1

                      Disable the DHCP server on Netgaer !

                      Done.

                      No "help me" PM's please. Use the forum, the community will thank you.
                      Edit : and where are the logs ??

                      N 1 Reply Last reply Reply Quote 0
                      • N
                        nadvig23 @Gertjan
                        last edited by

                        @Gertjan

                        that's what i have done sunday! i was surprised that it didn't worked, but i saw the cable was still in the yellow of port of the netgear....i put it in the right port and everything goes well!

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.