Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Need Help with getting my clients to communicate over LAN (Plex, RDP, etc.)

    Scheduled Pinned Locked Moved Routing and Multi WAN
    27 Posts 3 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      fragged
      last edited by

      Buy a 5 USD switch instead of bridging ports on pfSense.

      1 Reply Last reply Reply Quote 0
      • O
        Omuyasha
        last edited by

        Why do that? Is there something wrong with bridging on PFsense?

        1 Reply Last reply Reply Quote 0
        • F
          fragged
          last edited by

          @Omuyasha:

          Why do that? Is there something wrong with bridging on PFsense?

          Your using CPU to push traffic around that should be done on a switch by a dedicated switch chip. Cons of doing this is: high CPU usage, increased latency and reduced throughput.

          1 Reply Last reply Reply Quote 0
          • O
            Omuyasha
            last edited by

            I have a i7 6700T in there (I know… complete overkill, but it was collecting dust ever since I upgraded my small form factor gaming rig with a 7700T lol). Even with a CPU like that, is it still bad?

            1 Reply Last reply Reply Quote 0
            • K
              kejianshi
              last edited by

              Computers used to build pfsense are general purpose devices.  For tasks like switching, better to use a switch than a bridge.

              I'd get a managed switch with as many ports as you need.  You will get better performance I'm sure.

              1 Reply Last reply Reply Quote 0
              • O
                Omuyasha
                last edited by

                alright thanks, also I'm using my router (Asus AC3200) that is in AP mode, should I use the switch on that or do you still recommend using a switch? If you do recommend a switch, can you recommend me one with at least 5-6 ports or will any kind be better then my router?

                1 Reply Last reply Reply Quote 0
                • K
                  kejianshi
                  last edited by

                  How many items do you have that need to be plugged in to it?

                  1 Reply Last reply Reply Quote 0
                  • O
                    Omuyasha
                    last edited by

                    @kejianshi:

                    How many items do you have that need to be plugged in to it?

                    Well, I have a Gaming PC, Plex server on a NUC pc, PS4, Nvidia Shield, and my cousin occasionally comes to visit and brings his gaming rig to play (he doesnt have a wireless card), and I want at least 1 or two extra in case I might add more devices later down the road (i.e. new server or gaming device).

                    1 Reply Last reply Reply Quote 0
                    • K
                      kejianshi
                      last edited by

                      For your rig, since it has lots of power, I can recommend this switch:

                      https://www.newegg.com/Product/Product.aspx?Item=9SIA91N4D32331

                      1 Reply Last reply Reply Quote 0
                      • K
                        kejianshi
                        last edited by

                        Kidding…

                        Something like this is probably nice.

                        If you wanted to get very overkill you could get bigger.

                        https://www.newegg.com/Product/Product.aspx?Item=N82E16833127450

                        1 Reply Last reply Reply Quote 0
                        • O
                          Omuyasha
                          last edited by

                          @kejianshi:

                          For your rig, since it has lots of power, I can recommend this switch:

                          https://www.newegg.com/Product/Product.aspx?Item=9SIA91N4D32331

                          thanks for the help, I really needed to know for sure cause I do want to get the most out of my pfsense router in performance. The only thing that sucks is that i just blew all that money on this mobo for the extra etho ports because I wanted it to be a all-in-one as much as possible.

                          1 Reply Last reply Reply Quote 0
                          • O
                            Omuyasha
                            last edited by

                            damn i think i locked myself out of my router xC gonna try to RDP my server pc and see if i can connect to the GUI through it.

                            1 Reply Last reply Reply Quote 0
                            • K
                              kejianshi
                              last edited by

                              Well - About the ports…  Probably just needed 2 if gigabit is fast enough for you.  I'd probably stack a couple of 8 port switches for $30 each and be done with it.

                              However if bridging the ports works for you and you don't see lost bandwidth, go for it.  Its nice and neat, thats for sure.

                              1 Reply Last reply Reply Quote 0
                              • K
                                kejianshi
                                last edited by

                                If your password doesn't work, I can let you try mine…

                                1 Reply Last reply Reply Quote 0
                                • O
                                  Omuyasha
                                  last edited by

                                  @kejianshi:

                                  If your password doesn't work, I can let you try mine…

                                  i mean that I can't access the GUI period but I found out the issue tho. I made a grave mistake…. Im not 100% sure this is the actual cause but evidence points to it. When i was applying firewall rules for all the OPT ports, I forgot to put all the IPv4 rules on top of the IPv6 rules for each OPT. The main reason I believe this to be the culprit is two reasons. One: The firewall reads the rules from first to last and Two: I can only access the IPv6 internet, I did a test and noticed that only IPv6 protocol was only being used and IPv4 isn't working. It just works for the LAN, but access to IPv4 on the internet has been disabled for some reason. :(

                                  1 Reply Last reply Reply Quote 0
                                  • K
                                    kejianshi
                                    last edited by

                                    You do have your default anti-lockout rules in place…  Right?

                                    1 Reply Last reply Reply Quote 0
                                    • O
                                      Omuyasha
                                      last edited by

                                      @kejianshi:

                                      You do have your default anti-lockout rules in place…  Right?

                                      just for the LAN port, but not the other OPT ports, why? is there a way to get in even though the 192.168.1.1 isn't accessible?

                                      1 Reply Last reply Reply Quote 0
                                      • K
                                        kejianshi
                                        last edited by

                                        Yes - pull up the console
                                        Go to shell
                                        type pfctl - d
                                        Then log in via the web
                                        Fix your rules

                                        1 Reply Last reply Reply Quote 0
                                        • O
                                          Omuyasha
                                          last edited by

                                          @kejianshi:

                                          Yes - pull up the console
                                          Go to shell
                                          type pfctl - d
                                          Then log in via the web
                                          Fix your rules

                                          There's just one problem… my keyboard isn't correctly being identified by pfsense, only "A" key works and it only works as "Enter". :( I just reinstalled it to make things easier but I just locked myself out again after setting up the bridge, it keeps locking out IPv4 access and only IPv6. I don't think I'm setting up the bridge right :/. I'm doing exactly what I explained in my so called "fix". Do you see anything out of the ordinary with those configs? Any help would be greatly appreciated.

                                          1 Reply Last reply Reply Quote 0
                                          • O
                                            Omuyasha
                                            last edited by

                                            @Omuyasha:

                                            @kejianshi:

                                            For your rig, since it has lots of power, I can recommend this switch:

                                            https://www.newegg.com/Product/Product.aspx?Item=9SIA91N4D32331

                                            thanks for the help, I really needed to know for sure cause I do want to get the most out of my pfsense router in performance. The only thing that sucks is that i just blew all that money on this mobo for the extra etho ports because I wanted it to be a all-in-one as much as possible.

                                            I fuuuq, i just noticed what was in that link, couldn't see it earlier due to IP config issues, btw I finally got everything working now. :)

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.