Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Last few days x86 machines connected to isp using vlan but state table goes zero

    2.1 Snapshot Feedback and Problems - RETIRED
    5
    12
    3.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • X
      xbipin
      last edited by

      i seeing this since 25th feb, i have a x86 machine with atom processor and single nic with 4 vlans, 2 wan and 2 lan and after a day, in the morning all lan devices loose connectivity, when i check the web gui the state table shows zero, rebooting also doesnt help, when i plug in a normal router, everything works, could it be pfsense or the cisco vlan switch? pfsense seems to connect to isp just fine and gets ip addresses also but complete lan goes down as well as web gui of pfsense from the wan is also dead.

      any1 else suffering this?

      1 Reply Last reply Reply Quote 0
      • E
        eri--
        last edited by

        Not any info there to help you out.
        Could be the switch/could be pfsense/could be the cisco!

        1 Reply Last reply Reply Quote 0
        • G
          ggzengel
          last edited by

          Since today one of my pfsense with 2.1 have the same problem.
          I can reach the pfsense with ipsec. It's routing over openvpn. But local machines cann't reach the internet.
          The state table is zero, even if i have a connect with ssh.
          The pfsense itself can ping to internet.

          Turning off "Block bogon networks" helped.

          1 Reply Last reply Reply Quote 0
          • X
            xbipin
            last edited by

            i did the same

            Turning off "Block bogon networks" helped

            cisco switch seems all fine coz lan to land evices access all fine and lan to pfsense also all fine so the vlans working all fine, lan clients cant ping on internet through pfsense but pfsense can ping directly just fine

            1 Reply Last reply Reply Quote 0
            • C
              cmb
              last edited by

              Is it really going to 0, I mean exactly 0, or does it just drop off to a far smaller number than usual/it should be?

              Is there traffic hitting the firewall's LAN, destined to its MAC or that of a VIP?

              1 Reply Last reply Reply Quote 0
              • X
                xbipin
                last edited by

                for me the state table actually shows 0/203000 and at the time traffic from lan to pfsense is there but it never goes through, both the wan connections show as up with a valid ip address and disconnecting them also makes it reconnect fine but lan devices still remain in the dark.

                im still able to open the pfsense web gui at the time but doing so the state table still remains as 0

                1 Reply Last reply Reply Quote 0
                • G
                  ggzengel
                  last edited by

                  The state table has exactly zero entries even if there is a lot of traffic over ipsec and openvpn. Apinger is working and shows pings in RRD.
                  What bogus entries are in the bogus ip table?
                  I append the RRD of states at UTC time.

                  statesRRD.png
                  statesRRD.png_thumb

                  1 Reply Last reply Reply Quote 0
                  • AhnHELA
                    AhnHEL
                    last edited by

                    Happened to two of my sites as well.  Thought it was related to this topic.

                    http://forum.pfsense.org/index.php/topic,59866.0.html

                    Havent tested out the workaround yet.  Reinstalled from scratch before I noticed the topic because the forums were down last night for maintenance.

                    AhnHEL (Angel)

                    1 Reply Last reply Reply Quote 0
                    • G
                      ggzengel
                      last edited by

                      But why are the states table empty?

                      1 Reply Last reply Reply Quote 0
                      • AhnHELA
                        AhnHEL
                        last edited by

                        This just happened to me again for the third time this week.  Only way to get access to internet is to uncheck 'Block Bogon Networks' from /Interfaces/WAN in the GUI.

                        I'm not using any VLANs, just a simple cable modem to pfSense with IPv4.  Something is definitely going on with the Bogons Table.  Can any developer look into this showstopper please?

                        http://forum.pfsense.org/index.php/topic,59866.0.html

                        I can connect to router via LAN, or OVPN tunnel into router, but no LAN to WAN.  State Table size says 0/486000.

                        AhnHEL (Angel)

                        1 Reply Last reply Reply Quote 0
                        • X
                          xbipin
                          last edited by

                          i can confirm its the bogons table that causes it, unchecking block bogus networks keeps everything fine

                          1 Reply Last reply Reply Quote 0
                          • C
                            cmb
                            last edited by

                            There was a problem with it earlier, if your system fetched the problem file you'll need to force it to do an update under Diag>Tables.

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.