Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Routing issues for a network novice

    Scheduled Pinned Locked Moved Routing and Multi WAN
    14 Posts 4 Posters 4.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tomwaller
      last edited by

      @heper:

      you are using a public network as your "newcastle" network. the private range you intend to use is shorter then what you are using (ie: 172.16.0.0 - 172.31.255.255 )

      it's rather unlikely that this is the cause of your issue, but you should change it anyways and if it still does not work provide us with some details (traceroutes/screenshot of firewall rules/static routes / …)

      OK - I've reset the router, and I have adjusted the IP ranges as described above. Same thing. RDP works, but just keeps dropping out.

      Here are my firewall rules on my virtual pfSense system.

      No static routes in place. No gateways in use.

      t.

      rules_HOME.PNG
      rules_HOME.PNG_thumb
      rules_LON_MGMT.PNG
      rules_LON_MGMT.PNG_thumb
      rules_NEW_MGMT.PNG
      rules_NEW_MGMT.PNG_thumb
      rules_WAN.PNG
      rules_WAN.PNG_thumb

      1 Reply Last reply Reply Quote 0
      • G
        georgeman
        last edited by

        I don't think this is a routing problem, if it was it wouldn't work at all.

        In order to start troubleshooting this I would do a packet capture on both ends, and compare them to see if packets are being dropped, where and why

        If it ain't broke, you haven't tampered enough with it

        1 Reply Last reply Reply Quote 0
        • T
          tomwaller
          last edited by

          I did run a Wireshark capture but to be honest, I have no idea what I'm looking for in the trace. Is this the method you'd recommend for performing a capture? Anything in particular I should look out for?

          t.

          1 Reply Last reply Reply Quote 0
          • G
            georgeman
            last edited by

            First thing would be to realize where the packets are dropping, so you would have to capture simultaneously on the diferent hops of your network (client side, both pfSense interfaces, server side), and then compare them

            If it ain't broke, you haven't tampered enough with it

            1 Reply Last reply Reply Quote 0
            • T
              tomwaller
              last edited by

              Thanks for the advice georgeman. If I perform packet captures, is there anything in particular I should look out for with regards to RDP dropping? Will Wireshark be intelligent enough to highlight drops/errors?

              t.

              1 Reply Last reply Reply Quote 0
              • T
                tomwaller
                last edited by

                OK - took some captures. The only one that seemed to look maybe odd (to my untrained eye!) is the one shown attached which was captured on my laptop in the HOME network on 10.0.0.100 which I am using to connect the RDP to the 172.16 'London' network. This happened about the time I got frozen and reconnected!

                Can anyone tell what is wrong simply from this? Starting to pull my hair out!!

                Thanks everyone so far!

                HOME.PNG
                HOME.PNG_thumb

                1 Reply Last reply Reply Quote 0
                • T
                  tomwaller
                  last edited by

                  I thought I would post my resolution in case anyone else experiences similar problems.

                  It looks like it is nothing to do with the routing after all and seems like it was all to do with my client. Executing the following command looks to have cured the error completely!

                  netsh interface tcp set global autotuninglevel=disabled

                  Since running this command on my system, I have yet to see the dreaded reconnect in Remote Desktop! Fingers crossed it lasts! Thank you all for trying to help. Much appreciated!

                  t.

                  1 Reply Last reply Reply Quote 0
                  • H
                    heper
                    last edited by

                    are you seeing alot of Blocked entries on your firewall log ?  Especially with proto: TCP-RA or TCP-A ?
                    If yes: are you natting the connection between one router to the next ? if yes: don't ;)

                    1 Reply Last reply Reply Quote 0
                    • T
                      tomwaller
                      last edited by

                      Ah, thanks heper! Unfortunately I just noticed the issue re-occuring so I think I may have spoken too soon!

                      I did see entries like that now you mention it. I have not touched NAT on the virtual router so it is running pretty much as default (except FW rules etc) but I had set my home network pfsense to Manual Outbound NAT but have nothing configured in there for the LAN interface. Any pointers for things to check on?

                      Cheers.

                      t.

                      1 Reply Last reply Reply Quote 0
                      • T
                        timthetortoise
                        last edited by

                        By default you will be NATting anything going from internal to WAN. Turn on manual outbound NAT on your 10.0.0.0/24 pfSense box, and delete the rules. You will likely need to add static routes on your physical LAN side, but this sounds like a NAT issue to me.

                        1 Reply Last reply Reply Quote 0
                        • T
                          tomwaller
                          last edited by

                          NAT is configured as described but still the problem persists :(

                          Any more suggestions?

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.