Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Request time out

    Scheduled Pinned Locked Moved Firewalling
    7 Posts 2 Posters 2.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Y Offline
      yellowhat89
      last edited by

      i'm sorry if it's repost…
      But i experience problem with my LAN...

      My LAN can't PING any website and to my modem (WAN Address), the result is Request time out.

      But I can connect to the site and modem via browser...
      can anyone explain me what happen to my network...
      I guest this is because the Rules or the subnet, but I don't know how to make my LAN can Ping the WAN...

      for additional my LAN Address using 192.168.1.0/27 and my WAN 192.168.0.0/30
      I'm installing squid. and make Firewall ==> Rules like this

      Please help me figure it out…
      thanks...

      Stay hungry, Stay Foolish

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG Offline
        GruensFroeschli
        last edited by

        You dont have any rule allowing pings.

        Read up how the firewall rules work.
        You have redundant rules on LAN and WAN.
        (Hint: The WAN rule does nothing for the LAN).

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • Y Offline
          yellowhat89
          last edited by

          I've found the solution about the ping problem, thank you for your guidance.

          on LAN, I add one rule that allow ICMP, did I do right thing there?

          so do you mean, that i should not make any rule for WAN?
          i hope you can reply it, i'm sorry I'm very noob here…

          Stay hungry, Stay Foolish

          1 Reply Last reply Reply Quote 0
          • GruensFroeschliG Offline
            GruensFroeschli
            last edited by

            Traffic is only processed by a rule on the interface on which packets arrive.
            You have a rule on your WAN with as "source" "lan subnet".
            Since on the WAN never a packet from the LAN will arrive, this rule is unneccessary.

            We do what we must, because we can.

            Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

            1 Reply Last reply Reply Quote 0
            • Y Offline
              yellowhat89
              last edited by

              actually, I read a tutorial on Dual Wan and The Rule is like that I used now.
              But Now I disable it, and my network run just fine…

              I've more several question again, I hope anyone don't mind answer it.
              1. Do you think that the rule will work if I using 2 WAN (WAN + Opt1)? from your explanation i guest it's not.

              2. Do you think that it's necesary that I anable UDP port on LAN Rules?
              I don't know why the firewall block some traffic that use UDP Proto, but my network still working fine. So I decide to not allow UDP port on my LAN. what do you think about it?

              Stay hungry, Stay Foolish

              1 Reply Last reply Reply Quote 0
              • GruensFroeschliG Offline
                GruensFroeschli
                last edited by

                Can you post the link to this tutorial? Because this is plain wrong.

                For if the rule will work: as it is right now: no
                read the multiwan howto on the wiki http://doc.pfsense.com
                –> yes you cancreate a rule that works for multiwan.

                If you want to allow udp purely depends on your needs.
                Are you using any software which requires udp?

                We do what we must, because we can.

                Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

                1 Reply Last reply Reply Quote 0
                • Y Offline
                  yellowhat89
                  last edited by

                  The link, I'll give you latter, but the tutorial is in Indonesian language, so I don't think that you want to see it…  ;D

                  Yes, I am using some application that need UDP, but I've made the rule for it. But what about the other UDP port? It's danger if we pass all UDP port (any)?

                  Stay hungry, Stay Foolish

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.