Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to setup Wireless filtering and logging with an access point

    Wireless
    3
    5
    2.7k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      manubz
      last edited by

      Hi,

      I've installed pfSense since two days in my company for testing. We search a solution like pfsense for captive portail about wifi public users.

      So I want to log for 1 year all the wifi activity and for that we have a system like that :

      Acces Point Wifi –------ pFsense
                                                             
      WEB  --------------------------------SWITCH------ Local Area Network (50 computers)

      So i have not find where can i "bridge" my acces point with this OPT1 pfsense interface.

      In my AP configuration, i have turn the Access Point in Bridge mode, since i have loss the connectivity on it and all about pfsense.

      Thank you for you help and sorry for my bad language, i'm french ! :)

      See you.

      1 Reply Last reply Reply Quote 0
      • W
        wallabybob
        last edited by

        Do you have DHCP server enabled on the pfSense OPT1 interface?

        Does the pfSense DHCP log (Status -> System Logs, click on DHCP tab) show DHCP requests from WiFi clients?

        1 Reply Last reply Reply Quote 0
        • M
          manubz
          last edited by

          @wallabybob:

          Do you have DHCP server enabled on the pfSense OPT1 interface?

          Does the pfSense DHCP log (Status -> System Logs, click on DHCP tab) show DHCP requests from WiFi clients?

          Hi,

          I advanced, now i'm bored about firewalling !

          I feel my pfsense does not want to route my http and https requets :/
          I have changed my network installation like that :

          WEB1 –--------------WAN-pfSense-OPT-------------------Wifi AP
                                                |
                                              LAN
                                                |
                                                |
                                                /
          WEB2----------------------    --------------------Switch-------------Data

          WAN interface = 192.168.1.253
          LAN interface  = 192.168.2.2
          OPT interface = 10.10.10.1
          Wifi AP = 10.10.10.2
          WEB1 = 192.168.1.254

          So when i connect a client on the AP, i can ping the AP, the OPT interface but no one else.

          I have done some rules on the firewall but as you can see i'm a beginner with pfsense and i do not know how to route web requests from Wifi AP to Web.

          Thanks for your replies!

          1 Reply Last reply Reply Quote 0
          • W
            wallabybob
            last edited by

            @manubz:

            So when i connect a client on the AP, i can ping the AP, the OPT interface but no one else.

            Default firewall rules for LAN interface allow access from LAN to "anywhere". Default firewall rules for OPTx interfaces block all traffic. You will need firewall rules on OPT1 to allow traffic from OPT1 to appropriate destinations.

            Then after changing firewall rules you should reset firewall states, see Diagnostics -> States click on Reset States tab and read the explanation then click on the Reset button.

            1 Reply Last reply Reply Quote 0
            • H
              hcigmx
              last edited by

              @manubz:

              So when i connect a client on the AP, i can ping the AP, the OPT interface but no one else.

              Is your OPT interface a wifi adapter? If so, your problem seems similar to mine: http://forum.pfsense.org/index.php/topic,55170.0.html

              When LAN-facing adapter is a wireless adapter connected to an Access Point, all other computers can't route through it.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.