Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DHCP client Internet connection problem

    DHCP and DNS
    4
    14
    6.6k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jan.gestre
      last edited by

      @GruensFroeschli:

      How does your Firewall-rule on LAN look like?
      Do you allow the 10.10.11.x range?

      LAN net to any is my rule so it doesn't matter which range, right?

      1 Reply Last reply Reply Quote 0
      • J
        jan.gestre
        last edited by

        @GruensFroeschli:

        Yes but i he had a /24 first and then changed to /23 and forgot to change the Firewallrule accordingly he will still allow the 10.10.10.x range but not the 10.10.11.x range :)

        This is what exactly happened, the first cidr was /24 then changed to /23 but what I can't figure out is I have a default to any from LAN rule, why is it that the other range doesn't have internet connection.

        1 Reply Last reply Reply Quote 0
        • jahonixJ
          jahonix
          last edited by

          What is the source in your access rule?
          Is it of type: LAN subnet  or  Network?

          1 Reply Last reply Reply Quote 0
          • J
            jan.gestre
            last edited by

            @jahonix:

            What is the source in your access rule?
            Is it of type: LAN subnet  or  Network?

            Source is LAN Subnet

            1 Reply Last reply Reply Quote 0
            • H
              hoba
              last edited by

              Is the subnetmask your clients get assigned via dhcp correct?

              Try to use any as source in your firewallrule at lan. Does it work now?

              If not go to firewall>nat, outbound. Do you run the automatically assigned settings? If yes, try switching to manual outbound nat. Then change the autocreated rule to source 0.0.0.0/0 (which means everything). Does it now work?

              1 Reply Last reply Reply Quote 0
              • J
                jan.gestre
                last edited by

                @hoba:

                Is the subnetmask your clients get assigned via dhcp correct?

                yes, they are all assigned by pfSense dhcp server.

                Try to use any as source in your firewallrule at lan. Does it work now?

                Still not working

                If not go to firewall>nat, outbound. Do you run the automatically assigned settings? If yes, try switching to manual outbound nat. Then change the autocreated rule to source 0.0.0.0/0 (which means everything). Does it now work?

                Still not working.. weird I even tried source as Network then declared 10.10.10.0/23 with futile results.

                1 Reply Last reply Reply Quote 0
                • J
                  jan.gestre
                  last edited by

                  And I would like to add that clients that begins with 10.10.11.xxx can't resolve hostname via TinyDNS while 10.10.10.xx can. Weird!  ???

                  1 Reply Last reply Reply Quote 0
                  • H
                    hoba
                    last edited by

                    Time to sniff to find out where the traffic goes.

                    1 Reply Last reply Reply Quote 0
                    • J
                      jan.gestre
                      last edited by

                      @hoba:

                      Time to sniff to find out where the traffic goes.

                      I replicated the same issue on another machine with a different set of NIC's , is this a bug? Anyways I went back to /24 and to serve the other machines I installed a router.

                      1 Reply Last reply Reply Quote 0
                      • J
                        jan.gestre
                        last edited by

                        @jan:

                        @hoba:

                        Time to sniff to find out where the traffic goes.

                        I replicated the same issue on another machine with a different set of NIC's , is this a bug? Anyways I went back to /24 and to serve the other machines I installed a router.

                        I reinstalled for the nth time and did some test regarding network addresses, if network address is 10.10.10.x/24 it works but if 10.10.10.x/23, bottom half of the subnet cannot connect to the internet. If network address is 192.168.x.x series whether it's /24 or /23 , all clients can connect to the net. I wonder why, it's just simple routing.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.