Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Mystery ping problem - blacklisted IP?

    Scheduled Pinned Locked Moved General pfSense Questions
    3 Posts 2 Posters 661 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A Offline
      amal
      last edited by

      Ok this one has me pulling hair. I have a WAN, LAN, and DMZ. I have a device in the DMZ with IP 192.168.1.50 and a workstation in the LAN with IP 10.0.3.40.

      Any workstation or device in the LAN that I set up with IP 10.0.3.40 cannot talk to or ping 192.168.1.50… but if I change the workstation IP to 10.0.3.41 or any other IP in the subnet, it can ping 192.168.1.50. I've set up 3 different devices with IP 10.0.3.40 and none of them can ping through pfSense to 192.168.1.50.

      So, I went to the usual checks... checked the firewall rules, checked NAT tables, checked ARP tables, checked pretty much everything I can think of and nothing is making any sense.

      A couple days ago we did have a spanning tree issue where two links were causing redundant packets that sent the network into a tizzy... so i started to think if there was something in pfSense that was doing anything like IDS or something that might shut down certain routes or anything for "misbehaving" IPs that I should check?

      1 Reply Last reply Reply Quote 0
      • A Offline
        amal
        last edited by

        Well ok… that's annoying, and a bit scary. A reboot of pfSense solved the issue. I'm rusty on my Microsoft training - step 1) reboot. I thought pfSense was a bit more robust than?

        1 Reply Last reply Reply Quote 0
        • johnpozJ Offline
          johnpoz LAYER 8 Global Moderator
          last edited by

          Well you should not be natting between 2 lan segments.. So you checked the arp table and pfsense arp table showed correct for the machine you were putting the .40 address on?  Could the .40 ping pfsense interface?

          I have never had to reboot pfsense because something wasn't working, I have had to clear states for a specific connection sometimes when trying to block something when there was a state already.  Only time had to reboot pfsense was when updating it.

          So your connections to pfsense from this .40 box is just to switch and then pfsense interface on same switch.  Your just doing dumb switch or do you have vlans setup, etc. etc.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.