Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Need Help with getting my clients to communicate over LAN (Plex, RDP, etc.)

    Scheduled Pinned Locked Moved Routing and Multi WAN
    27 Posts 3 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • O
      Omuyasha
      last edited by

      Why do that? Is there something wrong with bridging on PFsense?

      1 Reply Last reply Reply Quote 0
      • F
        fragged
        last edited by

        @Omuyasha:

        Why do that? Is there something wrong with bridging on PFsense?

        Your using CPU to push traffic around that should be done on a switch by a dedicated switch chip. Cons of doing this is: high CPU usage, increased latency and reduced throughput.

        1 Reply Last reply Reply Quote 0
        • O
          Omuyasha
          last edited by

          I have a i7 6700T in there (I know… complete overkill, but it was collecting dust ever since I upgraded my small form factor gaming rig with a 7700T lol). Even with a CPU like that, is it still bad?

          1 Reply Last reply Reply Quote 0
          • K
            kejianshi
            last edited by

            Computers used to build pfsense are general purpose devices.  For tasks like switching, better to use a switch than a bridge.

            I'd get a managed switch with as many ports as you need.  You will get better performance I'm sure.

            1 Reply Last reply Reply Quote 0
            • O
              Omuyasha
              last edited by

              alright thanks, also I'm using my router (Asus AC3200) that is in AP mode, should I use the switch on that or do you still recommend using a switch? If you do recommend a switch, can you recommend me one with at least 5-6 ports or will any kind be better then my router?

              1 Reply Last reply Reply Quote 0
              • K
                kejianshi
                last edited by

                How many items do you have that need to be plugged in to it?

                1 Reply Last reply Reply Quote 0
                • O
                  Omuyasha
                  last edited by

                  @kejianshi:

                  How many items do you have that need to be plugged in to it?

                  Well, I have a Gaming PC, Plex server on a NUC pc, PS4, Nvidia Shield, and my cousin occasionally comes to visit and brings his gaming rig to play (he doesnt have a wireless card), and I want at least 1 or two extra in case I might add more devices later down the road (i.e. new server or gaming device).

                  1 Reply Last reply Reply Quote 0
                  • K
                    kejianshi
                    last edited by

                    For your rig, since it has lots of power, I can recommend this switch:

                    https://www.newegg.com/Product/Product.aspx?Item=9SIA91N4D32331

                    1 Reply Last reply Reply Quote 0
                    • K
                      kejianshi
                      last edited by

                      Kidding…

                      Something like this is probably nice.

                      If you wanted to get very overkill you could get bigger.

                      https://www.newegg.com/Product/Product.aspx?Item=N82E16833127450

                      1 Reply Last reply Reply Quote 0
                      • O
                        Omuyasha
                        last edited by

                        @kejianshi:

                        For your rig, since it has lots of power, I can recommend this switch:

                        https://www.newegg.com/Product/Product.aspx?Item=9SIA91N4D32331

                        thanks for the help, I really needed to know for sure cause I do want to get the most out of my pfsense router in performance. The only thing that sucks is that i just blew all that money on this mobo for the extra etho ports because I wanted it to be a all-in-one as much as possible.

                        1 Reply Last reply Reply Quote 0
                        • O
                          Omuyasha
                          last edited by

                          damn i think i locked myself out of my router xC gonna try to RDP my server pc and see if i can connect to the GUI through it.

                          1 Reply Last reply Reply Quote 0
                          • K
                            kejianshi
                            last edited by

                            Well - About the ports…  Probably just needed 2 if gigabit is fast enough for you.  I'd probably stack a couple of 8 port switches for $30 each and be done with it.

                            However if bridging the ports works for you and you don't see lost bandwidth, go for it.  Its nice and neat, thats for sure.

                            1 Reply Last reply Reply Quote 0
                            • K
                              kejianshi
                              last edited by

                              If your password doesn't work, I can let you try mine…

                              1 Reply Last reply Reply Quote 0
                              • O
                                Omuyasha
                                last edited by

                                @kejianshi:

                                If your password doesn't work, I can let you try mine…

                                i mean that I can't access the GUI period but I found out the issue tho. I made a grave mistake…. Im not 100% sure this is the actual cause but evidence points to it. When i was applying firewall rules for all the OPT ports, I forgot to put all the IPv4 rules on top of the IPv6 rules for each OPT. The main reason I believe this to be the culprit is two reasons. One: The firewall reads the rules from first to last and Two: I can only access the IPv6 internet, I did a test and noticed that only IPv6 protocol was only being used and IPv4 isn't working. It just works for the LAN, but access to IPv4 on the internet has been disabled for some reason. :(

                                1 Reply Last reply Reply Quote 0
                                • K
                                  kejianshi
                                  last edited by

                                  You do have your default anti-lockout rules in place…  Right?

                                  1 Reply Last reply Reply Quote 0
                                  • O
                                    Omuyasha
                                    last edited by

                                    @kejianshi:

                                    You do have your default anti-lockout rules in place…  Right?

                                    just for the LAN port, but not the other OPT ports, why? is there a way to get in even though the 192.168.1.1 isn't accessible?

                                    1 Reply Last reply Reply Quote 0
                                    • K
                                      kejianshi
                                      last edited by

                                      Yes - pull up the console
                                      Go to shell
                                      type pfctl - d
                                      Then log in via the web
                                      Fix your rules

                                      1 Reply Last reply Reply Quote 0
                                      • O
                                        Omuyasha
                                        last edited by

                                        @kejianshi:

                                        Yes - pull up the console
                                        Go to shell
                                        type pfctl - d
                                        Then log in via the web
                                        Fix your rules

                                        There's just one problem… my keyboard isn't correctly being identified by pfsense, only "A" key works and it only works as "Enter". :( I just reinstalled it to make things easier but I just locked myself out again after setting up the bridge, it keeps locking out IPv4 access and only IPv6. I don't think I'm setting up the bridge right :/. I'm doing exactly what I explained in my so called "fix". Do you see anything out of the ordinary with those configs? Any help would be greatly appreciated.

                                        1 Reply Last reply Reply Quote 0
                                        • O
                                          Omuyasha
                                          last edited by

                                          @Omuyasha:

                                          @kejianshi:

                                          For your rig, since it has lots of power, I can recommend this switch:

                                          https://www.newegg.com/Product/Product.aspx?Item=9SIA91N4D32331

                                          thanks for the help, I really needed to know for sure cause I do want to get the most out of my pfsense router in performance. The only thing that sucks is that i just blew all that money on this mobo for the extra etho ports because I wanted it to be a all-in-one as much as possible.

                                          I fuuuq, i just noticed what was in that link, couldn't see it earlier due to IP config issues, btw I finally got everything working now. :)

                                          1 Reply Last reply Reply Quote 0
                                          • K
                                            kejianshi
                                            last edited by

                                            You are better off without the bridge.

                                            What kind of CPU, RAM and HDD did you put in.  Sizes please.  Specs.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.