Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    WI-Fi extender without internet

    Scheduled Pinned Locked Moved General pfSense Questions
    19 Posts 6 Posters 2.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GertjanG
      Gertjan
      last edited by

      @xplozia:

      My ping to from WI-FI Extender:
      C:\Users\Cristian>ping 8.8.8.8

      Pinging 8.8.8.8 with 32 bytes of data:
      Request timed out.
      Request timed out.
      Request timed out.

      Ping statistics for 8.8.8.8:
          Packets: Sent = 3, Received = 0, Lost = 3 (100% loss),

      My ping from Wireless router:
      C:\Users\Cristian>ping 8.8.8.8

      Pinging 8.8.8.8 with 32 bytes of data:
      Reply from 8.8.8.8: bytes=32 time=48ms TTL=57
      Reply from 8.8.8.8: bytes=32 time=46ms TTL=57
      Reply from 8.8.8.8: bytes=32 time=46ms TTL=57
      Reply from 8.8.8.8: bytes=32 time=21ms TTL=57

      Ping statistics for 8.8.8.8:
          Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),

      You are using an IP : 8.8.8.8 so resolving does NOT take place.
      I said : www.google.com - not some IP.

      @xplozia:

      The ping in google.com not working on WI-FI Extender but working on Wireless router
      The Wireless router are directly connected to pfSense

      As your already know by now : pfSense is ok, but the setup of one of the other devices isn't.

      Btw, a wireless router should just be an AP and not a router - keeping these devices as router can complicate things. You don't want a "router after router" setup.

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      1 Reply Last reply Reply Quote 0
      • X
        xplozia
        last edited by

        The router are set like a switch. The LAN cable, form pfSense, are insert on LAN port of the wireless router. The WAN port are empty on Wireless router. The DHCP service are disabled on Wireless router.
        I'm sure, is a settings from pfSense, because I configurated the wireless router, for routing WAN connection,  and all is fine with WI-FI Extender.

        1 Reply Last reply Reply Quote 0
        • GertjanG
          Gertjan
          last edited by

          And what about the LAN firewall rules ?

          Consider also packet capturing on pfSense on the LAN.
          Disconnect / remove all device except one on the extender.
          Activate the capturing, see what comes in, and gets out.
          UDP port 68 works, as DHCP works.
          Do you see the ICMP arrive ?
          Other (TCP) ?

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          1 Reply Last reply Reply Quote 0
          • NogBadTheBadN
            NogBadTheBad
            last edited by

            Do you have "Block private networks and loopback addresses" ticked if you do untick it.

            Andy

            1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

            1 Reply Last reply Reply Quote 0
            • X
              xplozia
              last edited by

              @NogBadTheBad:

              Do you have "Block private networks and loopback addresses" ticked if you do untick it.

              Yes, are ticked

              1 Reply Last reply Reply Quote 0
              • X
                xplozia
                last edited by

                @Gertjan:

                And what about the LAN firewall rules ?

                Consider also packet capturing on pfSense on the LAN.
                Disconnect / remove all device except one on the extender.
                Activate the capturing, see what comes in, and gets out.
                UDP port 68 works, as DHCP works.
                Do you see the ICMP arrive ?
                Other (TCP) ?

                Thanks!
                I have set "DHCP Static Mappings" for few devices. I changed, IP for my phone, on pfSense, from192.x.x.102 to 192.x.x.111, and after connected my phone, to the wirelsess router I received 192.x.x.111 IP and the same IP when I connected my phone to WI-FI Extender.
                I captured traffic for my phone and I have, where 192.168.10.1 is my pfSense:
                For wireless router:
                192.168.10.1.53:
                172.217.16.110.80:
                172.217.16.110.80:
                172.217.16.110.80:
                172.217.16.110.80:
                172.217.16.110.80:
                172.217.16.110.80:
                172.217.16.110.80:
                172.217.16.110.80:
                192.168.10.1.53:
                169.60.79.74.5222:
                185.60.218.170.443:
                185.60.218.170.443:
                185.60.218.170.443:
                185.60.218.170.443:

                For Extender:
                192.168.10.1.53:
                192.168.10.1.53:
                157.240.9.170.443:
                192.168.10.1.53:
                192.168.10.1.53:
                192.168.10.1.53:
                192.168.10.1.53:
                157.240.9.170.443:
                157.240.9.170.443:
                192.168.10.1.53:
                192.168.10.1.53:
                192.168.10.1.53:
                192.168.10.1.53:
                192.168.10.1.53:
                192.168.10.1.53:
                157.240.9.170.443:

                In my Wi-FI extender you can see only 53 and 443 ports  :(

                1 Reply Last reply Reply Quote 0
                • NogBadTheBadN
                  NogBadTheBad
                  last edited by

                  @xplozia:

                  @NogBadTheBad:

                  Do you have "Block private networks and loopback addresses" ticked if you do untick it.

                  Yes, are ticked

                  If Block private networks and loopback addresses is ticked and your other device is using  rfc1918 address space pfSense will block it.

                  Untick it, rfc1918 address space is :-

                  10.0.0.0        -  10.255.255.255  (10/8 prefix)
                  172.16.0.0      -  172.31.255.255  (172.16/12 prefix)
                  192.168.0.0    -  192.168.255.255 (192.168/16 prefix)

                  Andy

                  1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                  1 Reply Last reply Reply Quote 0
                  • X
                    xplozia
                    last edited by

                    @NogBadTheBad:

                    @xplozia:

                    @NogBadTheBad:

                    Do you have "Block private networks and loopback addresses" ticked if you do untick it.

                    Yes, are ticked

                    If Block private networks and loopback addresses is ticked and your other device is using  rfc1918 address space pfSense will block it.

                    Untick it, rfc1918 address space is :-

                    10.0.0.0        -  10.255.255.255  (10/8 prefix)
                    172.16.0.0      -  172.31.255.255  (172.16/12 prefix)
                    192.168.0.0    -  192.168.255.255 (192.168/16 prefix)

                    I Untick it, but the problems persist. The extender shoult copy the router settings

                    1 Reply Last reply Reply Quote 0
                    • X
                      xplozia
                      last edited by

                      I'm out of other ideas. :(

                      1 Reply Last reply Reply Quote 0
                      • X
                        xplozia
                        last edited by

                        Problem solved!

                        :D

                        I reinstalled the pfSense an I reconfigurated step by step. The problem was with "Create an ARP Table Static Entry for this MAC & IP Address pair." because I configurated static mapping for few devices. When I have checked on "Create an ARP Table Static Entry for this MAC & IP Address pair."  the connexion with WIFI extender not working. Without this check, all is fine.

                        1 Reply Last reply Reply Quote 1
                        • T
                          thecompyoda
                          last edited by

                          @xplozia That absolutely fixed the exact same problem I was having. Not sure why setting static ARP entries for static DHCP clients would cause the issue, but once I removed that setting from each static DHCP assignment, my repeater is working perfectly again. Nice work!

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            It's because using a wifi repeater the local access point only sees the MAC address of the repeater and not clients. Thus when you have static ARP set replies never reach the clients.
                            Wireless repeaters suck for a number of reasons including that. 😉
                            https://en.wikipedia.org/wiki/Wireless_repeater#Drawbacks

                            Steve

                            JKnottJ 1 Reply Last reply Reply Quote 0
                            • JKnottJ
                              JKnott @stephenw10
                              last edited by

                              @stephenw10 said in WI-Fi extender without internet:

                              It's because using a wifi repeater the local access point only sees the MAC address of the repeater and not clients.

                              You may wish to take a look at a WiFi frame. You'll see the end point MACs are completely separate from the WiFi addresses. There is even a 4th address field for bridges (repeaters). Also, I don't think WiFi repeaters would sell very well, if static ARP was required to make them work. It seems to me the problem may be elsewhere.

                              BTW, these O'Reilly books from Matthew Gast are excellent references. He's an engineer on the IEEE 802.11 committee.

                              PfSense running on Qotom mini PC
                              i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                              UniFi AC-Lite access point

                              I haven't lost my mind. It's around here...somewhere...

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by stephenw10

                                Mmm, I thought that. Seems like it should still be one layer 2...
                                But I'm seeing multiple references showing the opposite. As I'm reading it's setting static ARP that prevents them working correctly, hence mostly they just work.
                                I guess more research needed...

                                Steve

                                1 Reply Last reply Reply Quote 0
                                • First post
                                  Last post
                                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.