Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Last few days x86 machines connected to isp using vlan but state table goes zero

    2.1 Snapshot Feedback and Problems - RETIRED
    5
    12
    3.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      ggzengel
      last edited by

      Since today one of my pfsense with 2.1 have the same problem.
      I can reach the pfsense with ipsec. It's routing over openvpn. But local machines cann't reach the internet.
      The state table is zero, even if i have a connect with ssh.
      The pfsense itself can ping to internet.

      Turning off "Block bogon networks" helped.

      1 Reply Last reply Reply Quote 0
      • X
        xbipin
        last edited by

        i did the same

        Turning off "Block bogon networks" helped

        cisco switch seems all fine coz lan to land evices access all fine and lan to pfsense also all fine so the vlans working all fine, lan clients cant ping on internet through pfsense but pfsense can ping directly just fine

        1 Reply Last reply Reply Quote 0
        • C
          cmb
          last edited by

          Is it really going to 0, I mean exactly 0, or does it just drop off to a far smaller number than usual/it should be?

          Is there traffic hitting the firewall's LAN, destined to its MAC or that of a VIP?

          1 Reply Last reply Reply Quote 0
          • X
            xbipin
            last edited by

            for me the state table actually shows 0/203000 and at the time traffic from lan to pfsense is there but it never goes through, both the wan connections show as up with a valid ip address and disconnecting them also makes it reconnect fine but lan devices still remain in the dark.

            im still able to open the pfsense web gui at the time but doing so the state table still remains as 0

            1 Reply Last reply Reply Quote 0
            • G
              ggzengel
              last edited by

              The state table has exactly zero entries even if there is a lot of traffic over ipsec and openvpn. Apinger is working and shows pings in RRD.
              What bogus entries are in the bogus ip table?
              I append the RRD of states at UTC time.

              statesRRD.png
              statesRRD.png_thumb

              1 Reply Last reply Reply Quote 0
              • AhnHELA
                AhnHEL
                last edited by

                Happened to two of my sites as well.  Thought it was related to this topic.

                http://forum.pfsense.org/index.php/topic,59866.0.html

                Havent tested out the workaround yet.  Reinstalled from scratch before I noticed the topic because the forums were down last night for maintenance.

                AhnHEL (Angel)

                1 Reply Last reply Reply Quote 0
                • G
                  ggzengel
                  last edited by

                  But why are the states table empty?

                  1 Reply Last reply Reply Quote 0
                  • AhnHELA
                    AhnHEL
                    last edited by

                    This just happened to me again for the third time this week.  Only way to get access to internet is to uncheck 'Block Bogon Networks' from /Interfaces/WAN in the GUI.

                    I'm not using any VLANs, just a simple cable modem to pfSense with IPv4.  Something is definitely going on with the Bogons Table.  Can any developer look into this showstopper please?

                    http://forum.pfsense.org/index.php/topic,59866.0.html

                    I can connect to router via LAN, or OVPN tunnel into router, but no LAN to WAN.  State Table size says 0/486000.

                    AhnHEL (Angel)

                    1 Reply Last reply Reply Quote 0
                    • X
                      xbipin
                      last edited by

                      i can confirm its the bogons table that causes it, unchecking block bogus networks keeps everything fine

                      1 Reply Last reply Reply Quote 0
                      • C
                        cmb
                        last edited by

                        There was a problem with it earlier, if your system fetched the problem file you'll need to force it to do an update under Diag>Tables.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.