Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Last few days x86 machines connected to isp using vlan but state table goes zero

    Scheduled Pinned Locked Moved 2.1 Snapshot Feedback and Problems - RETIRED
    12 Posts 5 Posters 3.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E
      eri--
      last edited by

      Not any info there to help you out.
      Could be the switch/could be pfsense/could be the cisco!

      1 Reply Last reply Reply Quote 0
      • G
        ggzengel
        last edited by

        Since today one of my pfsense with 2.1 have the same problem.
        I can reach the pfsense with ipsec. It's routing over openvpn. But local machines cann't reach the internet.
        The state table is zero, even if i have a connect with ssh.
        The pfsense itself can ping to internet.

        Turning off "Block bogon networks" helped.

        1 Reply Last reply Reply Quote 0
        • X
          xbipin
          last edited by

          i did the same

          Turning off "Block bogon networks" helped

          cisco switch seems all fine coz lan to land evices access all fine and lan to pfsense also all fine so the vlans working all fine, lan clients cant ping on internet through pfsense but pfsense can ping directly just fine

          1 Reply Last reply Reply Quote 0
          • C
            cmb
            last edited by

            Is it really going to 0, I mean exactly 0, or does it just drop off to a far smaller number than usual/it should be?

            Is there traffic hitting the firewall's LAN, destined to its MAC or that of a VIP?

            1 Reply Last reply Reply Quote 0
            • X
              xbipin
              last edited by

              for me the state table actually shows 0/203000 and at the time traffic from lan to pfsense is there but it never goes through, both the wan connections show as up with a valid ip address and disconnecting them also makes it reconnect fine but lan devices still remain in the dark.

              im still able to open the pfsense web gui at the time but doing so the state table still remains as 0

              1 Reply Last reply Reply Quote 0
              • G
                ggzengel
                last edited by

                The state table has exactly zero entries even if there is a lot of traffic over ipsec and openvpn. Apinger is working and shows pings in RRD.
                What bogus entries are in the bogus ip table?
                I append the RRD of states at UTC time.

                statesRRD.png
                statesRRD.png_thumb

                1 Reply Last reply Reply Quote 0
                • AhnHELA
                  AhnHEL
                  last edited by

                  Happened to two of my sites as well.  Thought it was related to this topic.

                  http://forum.pfsense.org/index.php/topic,59866.0.html

                  Havent tested out the workaround yet.  Reinstalled from scratch before I noticed the topic because the forums were down last night for maintenance.

                  AhnHEL (Angel)

                  1 Reply Last reply Reply Quote 0
                  • G
                    ggzengel
                    last edited by

                    But why are the states table empty?

                    1 Reply Last reply Reply Quote 0
                    • AhnHELA
                      AhnHEL
                      last edited by

                      This just happened to me again for the third time this week.  Only way to get access to internet is to uncheck 'Block Bogon Networks' from /Interfaces/WAN in the GUI.

                      I'm not using any VLANs, just a simple cable modem to pfSense with IPv4.  Something is definitely going on with the Bogons Table.  Can any developer look into this showstopper please?

                      http://forum.pfsense.org/index.php/topic,59866.0.html

                      I can connect to router via LAN, or OVPN tunnel into router, but no LAN to WAN.  State Table size says 0/486000.

                      AhnHEL (Angel)

                      1 Reply Last reply Reply Quote 0
                      • X
                        xbipin
                        last edited by

                        i can confirm its the bogons table that causes it, unchecking block bogus networks keeps everything fine

                        1 Reply Last reply Reply Quote 0
                        • C
                          cmb
                          last edited by

                          There was a problem with it earlier, if your system fetched the problem file you'll need to force it to do an update under Diag>Tables.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.