Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Internet lost in PfSense but VPN or everythingelse work well?

    Scheduled Pinned Locked Moved General pfSense Questions
    47 Posts 4 Posters 3.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GertjanG
      Gertjan @mucip
      last edited by

      @mucip

      Also check your gateways :

      89efc7c3-f1ae-4b1f-816a-44014066793e-image.png

      like you, I have a OpenVPN server (listed as VPNS_VPN4) but that's not a gateway in my (and your) case. It could be one if it was a OpenVPN client, connected to some "VPN ISP".

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      mucipM 1 Reply Last reply Reply Quote 1
      • mucipM
        mucip @Gertjan
        last edited by

        Hi @Gertjan,
        Mine config looks good I guess;
        60683fde-cc24-448f-8ac5-b15b44ff443d-resim.png

        Regards,
        Mucip:)

        GertjanG 1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          What pfSense version are you running?

          Where did you set those DNS servers? In the client or in pfSense directly?

          mucipM 1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan @mucip
            last edited by

            @mucip

            5488b9c3-df26-4740-873b-e63833f2de65-image.png

            192.168.1.1 on WAN ?
            So you've changed the default pfSense LAN to something else like 192.168.0.1 /24

            Not monitoring ? because ?

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 0
            • mucipM
              mucip @stephenw10
              last edited by

              Hi @stephenw10,
              I use 2.7.0.

              I have modem in the office with DMZ to PfSense box.

              Regards,
              Mucip:)

              GertjanG 1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan @mucip
                last edited by

                @mucip

                You like the 2.7.0 bugs better as the 2.7.2 bugs ? ๐Ÿ˜Š

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                mucipM 2 Replies Last reply Reply Quote 1
                • mucipM
                  mucip @Gertjan
                  last edited by

                  @Gertjan ,
                  I check and it says I use latest version?

                  be4ae68d-e8ae-491b-8c95-1f6bbca5aa2a-resim.png

                  1 Reply Last reply Reply Quote 0
                  • mucipM
                    mucip @Gertjan
                    last edited by

                    @Gertjan ,
                    Is this bug?

                    8eeb5794-699c-4fc7-aaf9-8cde546d9257-resim.png

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by

                      At the command line run: certctl rehash

                      Then re-check.

                      That's probably also the pkg issue you are seeing.

                      mucipM 1 Reply Last reply Reply Quote 1
                      • mucipM
                        mucip @stephenw10
                        last edited by mucip

                        @stephenw10 ,

                        6e4b7386-e8ca-40e6-bfe7-a2671047466d-resim.png

                        Now I can see below screen;
                        d2b57b95-1ca5-40e5-8608-7d0a25acae21-resim.png

                        GertjanG 1 Reply Last reply Reply Quote 0
                        • GertjanG
                          Gertjan @mucip
                          last edited by Gertjan

                          @mucip

                          Aha !!
                          You saw that ?
                          Fiirst :

                          3bef47cd-b1bf-4f9b-9571-f47aa50e1fa6-image.png

                          then, after the 'patch' (I sometimes have this strange feeling that @stephenw10 is an AI Netgate bot that is here to drop this "run: certctl rehash" command ๐Ÿ˜Š (sorry, stephenw10, I couldn't resist))

                          and then

                          91b29632-745b-4cd4-b4c3-a9badc787bb0-image.png

                          which opens the path to 2.7.2.

                          Be ware that 2.7.2 won't free you from all misery, as you're like us : upgrading is great, but more then often, don't forget to upgrade the admin also (that's where most of the issues resides).
                          It will include a new OpenSSL and a way more recent OpenVPN.
                          If you are using the OpenVPN server you have to upgrade your clients also.
                          Easy enough : https://openvpn.net/client/client-connect-vpn-for-windows/ or : your phone app store etc.
                          Export a new OpenVPN client profile.
                          Import it into your OpenVPN client, and you're good.

                          No "help me" PM's please. Use the forum, the community will thank you.
                          Edit : and where are the logs ??

                          mucipM 2 Replies Last reply Reply Quote 1
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            Yup. You should upgrade though! ๐Ÿ˜

                            mucipM 2 Replies Last reply Reply Quote 1
                            • mucipM
                              mucip @Gertjan
                              last edited by

                              Hi @Gertjan,
                              Finally. Yes. Thanks.
                              I will try to update today.

                              Regards,
                              Mucip:)

                              1 Reply Last reply Reply Quote 0
                              • mucipM
                                mucip @stephenw10
                                last edited by

                                Dear @stephenw10 ,
                                Finally...

                                73b4d027-acaa-4b9d-be47-504e2373b953-resim.png

                                Regards,
                                Mucip:)

                                1 Reply Last reply Reply Quote 1
                                • mucipM
                                  mucip @Gertjan
                                  last edited by

                                  Dear @Gertjan ,
                                  I updated to 2.7.2 finally. I have one pfsense box in outer office.
                                  As you advice I will update it to 2.7.2 too.
                                  But first of all I apply "certctl rehash" command in other pfsense. :)

                                  Thanks to all guys...

                                  Regards,
                                  Mucip:)

                                  1 Reply Last reply Reply Quote 1
                                  • mucipM
                                    mucip @stephenw10
                                    last edited by

                                    Dear @stephenw10 ,
                                    It happend again. It's like dejavu? :)
                                    I used "run: certctl rehash" and now everything turned to normal. But why? What is the reason?
                                    Should I add this command in the cron or what?

                                    Regards,
                                    Mucip:)

                                    GertjanG 1 Reply Last reply Reply Quote 0
                                    • GertjanG
                                      Gertjan @mucip
                                      last edited by

                                      @mucip said in Internet lost in PfSense but VPN or everythingelse work well?:

                                      But why? What is the reason?

                                      Afaik : when upgrading from pfSense <2.7.0 to 2.7.0, this command should have been part of the steps to do after the upgrade finishes.
                                      The thing is : it was forgotten.

                                      Don't worry, this situation only happened ones ^^ No need to thing about it anymore.

                                      No "help me" PM's please. Use the forum, the community will thank you.
                                      Edit : and where are the logs ??

                                      mucipM 1 Reply Last reply Reply Quote 1
                                      • mucipM
                                        mucip @Gertjan
                                        last edited by

                                        Dear @Gertjan,
                                        I hope so. I already added this command to cron.
                                        Well I will remove command from cron and check in the near future.๐Ÿ˜Š

                                        Regards,
                                        Mucip:)

                                        1 Reply Last reply Reply Quote 0
                                        • stephenw10S
                                          stephenw10 Netgate Administrator
                                          last edited by

                                          There should be no need to run that command manually in 2.7.2. The pkg scripts run it anyway when it's required.

                                          How were you testing? If you simply ran pkg update from the CLI the client cert may have expired. Checking from the webgui should never hit that though.

                                          mucipM 1 Reply Last reply Reply Quote 1
                                          • mucipM
                                            mucip @stephenw10
                                            last edited by

                                            Dear @stephenw10,
                                            I updated from WEB GUI not CLI.
                                            In any case this morning the people said me that there is no internet out from Linux server.
                                            I applied our famous command "certctl rehash" from webgui command execute menu and everything turn to normal again.
                                            I will check. If I need to apply same command again than I add this command in the cron and run every midnight.

                                            Regards,
                                            Mucip:)

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.