Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    LAN has no internet access

    Scheduled Pinned Locked Moved General pfSense Questions
    9 Posts 3 Posters 567 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      McMurphy
      last edited by

      Strange issue, no devies on my LAN have internet access.

      The pfSense dashboard completes the version check so connectivity exists.

      I can ping 8.8.8.8 when thew source is set to auto
      I cannot ping 8.8.8.8 when the source is set to LAN

      I have a LAN FW rule that allows access to all.

      What am I missing?

      e6e80e48-9f12-4fa8-be67-cca3e76f93c4-image.png

      85f82b68-e82c-4228-8263-8d516fce0d81-image.png

      0808ed08-ae6f-4e49-8eab-c254a3051620-image.png

      patient0P 1 Reply Last reply Reply Quote 0
      • patient0P
        patient0 @McMurphy
        last edited by

        @McMurphy the LAN rule does look ok, it's not the default rules (that has as source "LAN subnets") but should works fine.

        How is WAN setup? And does a NAT rule exist for LAN?

        M 1 Reply Last reply Reply Quote 0
        • M
          McMurphy @patient0
          last edited by

          @patient0

          Updated the source to "LAN subnets" :)

          I have a single NAT on WAN
          80c0deb3-f0d0-4e61-a208-e57fcd272bed-image.png

          WAN is setup as a static IPv4
          0b4f54e9-1819-4ebf-bda5-cb64c7dc3bdc-image.png

          patient0P 1 Reply Last reply Reply Quote 0
          • patient0P
            patient0 @McMurphy
            last edited by

            @McMurphy said in LAN has no internet access:

            I have a single NAT on WAN

            I wasn't precise enough, I meant are there NAT Outbound rules that fit your LAN?

            And I see you got two gateways, have you set a default gateway in System / Routing?

            M 1 Reply Last reply Reply Quote 0
            • M
              McMurphy @patient0
              last edited by

              @patient0

              I do not have any outbound NAT rules?
              5f3821d5-e4d4-46a1-b2bd-cbf424bc1777-image.png

              Default GW is set:
              2413bc8e-7f9e-4aba-8607-91de34ab74ff-image.png

              patient0P 1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                You have no outbound NAT rules. That's why LAN IPs can't connect.

                That's probably because your WAN interface doesn't have the gateway set on it directly in Interfaces > WAN. pfSense uses that to identify it as an external interface.

                1 Reply Last reply Reply Quote 1
                • patient0P
                  patient0 @McMurphy
                  last edited by

                  @McMurphy said in LAN has no internet access:

                  I do not have any outbound NAT rules?

                  And there are also no automatic rules? That would an issue since your LAN connection doesn't get NAT-ed.

                  If you set the WAN IP manually you have two options:

                  a) in the WAN interface you set in "Static IPv4 Configuration" the "IPv4 Upstream gateway". Then the NAT Outbound rules are set automatically.

                  b) you don't set a gateway and create a NAT rule yourself. For that you set the Outbound NAT to Hybrid and create a rule yourself.

                  I'd recommend a)

                  M 1 Reply Last reply Reply Quote 2
                  • M
                    McMurphy @patient0
                    last edited by

                    @patient0

                    Done & working. Amazing, thank you.

                    patient0P 1 Reply Last reply Reply Quote 0
                    • patient0P
                      patient0 @McMurphy
                      last edited by

                      @McMurphy Excellent, glad it worked. @stephenw10 was of course right on the money too, and faster then me :).

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.