Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to get 2 separate networks to talk to each other?

    Scheduled Pinned Locked Moved Routing and Multi WAN
    74 Posts 3 Posters 11.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator
      last edited by

      Well sniff on pfsense server interface when you ping - looks like you have just plain connectivity problem..

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      1 Reply Last reply Reply Quote 0
      • kiokomanK
        kiokoman LAYER 8
        last edited by kiokoman

        the nas is out of the dhcp range, it must have a static entry, please check if you inadvertently enabled

        ARP Table Static Entry Create an ARP Table Static Entry for this MAC & IP Address pair.

        if so disable / untick it

        or if you have set a wrong gateway (should be empty)

        ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
        Please do not use chat/PM to ask for help
        we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
        Don't forget to Upvote with the 👍 button for any post you find to be helpful.

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by

          look in pfsense arp table - what does it show for this 70.2 IP

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          I 1 Reply Last reply Reply Quote 0
          • I
            ilovechickennuggets @johnpoz
            last edited by ilovechickennuggets

            @johnpoz

            @kiokoman
            I did make a static entry under DHCP static mapping for SERVER interface as 192.168.70.2.

            kiokomanK 1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator
              last edited by johnpoz

              And your sure that is correct? there for your 70.2 address.

              Sniff when your pinging from pfsense server interface... Do you see the traffic go out to the correct mac, if so if no answer its on the client or the connection to the client..

              If pfsense can not talk to it from its own interface in the network, then its never going to work from a different network.

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              I 1 Reply Last reply Reply Quote 0
              • I
                ilovechickennuggets @johnpoz
                last edited by ilovechickennuggets

                @johnpoz
                Yup, I just checked the MAC address, it matches.
                How do I sniff while pinging? Where do I find this in pfsense?

                1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator
                  last edited by

                  diag menu, packet capture...

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  I 1 Reply Last reply Reply Quote 0
                  • kiokomanK
                    kiokoman LAYER 8 @ilovechickennuggets
                    last edited by

                    @ilovechickennuggets
                    but you did not answer my question, put a screenshot of that static entry pls

                    ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
                    Please do not use chat/PM to ask for help
                    we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
                    Don't forget to Upvote with the 👍 button for any post you find to be helpful.

                    I 1 Reply Last reply Reply Quote 0
                    • I
                      ilovechickennuggets @johnpoz
                      last edited by

                      @johnpoz
                      setup15.PNG
                      setup17.PNG
                      setup16.PNG

                      I just want to let you you I appreciate and thank you for your patience. I am not too good with this area stuff. Here's what I got from the packet capture, hopefully with the right settings.

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by johnpoz

                        Well there are no pings in there..

                        So up the level of output so you can see the mac.. I think your mac is wrong to be honest. Since you set a static.

                        And when you did the sniff you did it at the same time as you were pinging?

                        Not seeing any response for dns in there either..

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        I 1 Reply Last reply Reply Quote 0
                        • I
                          ilovechickennuggets @kiokoman
                          last edited by ilovechickennuggets

                          @kiokoman @johnpoz
                          setup18.PNG

                          These are the current static mapping settings of the entry. The first shows pfsense. The second shows the MAC of the nas. So to make sure I was getting the right IP and MAC, I restarted my NAS. Somehow it gave me a new IP from dhcp. I did something wrong.

                          P.S. kiokoman, thank you for your help too!

                          1 Reply Last reply Reply Quote 0
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator
                            last edited by

                            And can you ping this IP?

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.8, 24.11

                            1 Reply Last reply Reply Quote 0
                            • I
                              ilovechickennuggets @johnpoz
                              last edited by

                              @johnpoz
                              Yes the sniff happened at the same time as the ping.

                              After I restarted my NAS just now, it gave me new IP of 192.168.70.10 - which is the start of my DHCP range.

                              1 Reply Last reply Reply Quote 0
                              • johnpozJ
                                johnpoz LAYER 8 Global Moderator
                                last edited by johnpoz

                                and can you ping that?

                                Can your nas ping pfsense 70.1 address?

                                An intelligent man is sometimes forced to be drunk to spend time with his fools
                                If you get confused: Listen to the Music Play
                                Please don't Chat/PM me for help, unless mod related
                                SG-4860 24.11 | Lab VMs 2.8, 24.11

                                I 1 Reply Last reply Reply Quote 0
                                • I
                                  ilovechickennuggets @johnpoz
                                  last edited by

                                  @johnpoz
                                  setup20.PNG
                                  setup19.PNG

                                  Packet capture is not picking up anything during the ping

                                  1 Reply Last reply Reply Quote 0
                                  • johnpozJ
                                    johnpoz LAYER 8 Global Moderator
                                    last edited by johnpoz

                                    Well then no nothing is going to work... Can the server ping pfsense IP? Does internet work? You have it directly plugged into an interface on pfsense - there are no switches.

                                    I am not sure that your doing the sniff correctly to be honest.. do a tcpdump on pfsense while you ping..

                                    Open up 2 ssh windows to pfsense and do it this way... start a tcpdump for icmp on the interface this server network is on..

                                    Then in the other windows ping... Then also ping from the server to 70.1 address while your sniff is running

                                    example
                                    ping.jpg

                                    This sever is physical right - its not some VM running on something?

                                    Lets try this - install the package arping... Lets try that..

                                    example
                                    arping.jpg

                                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                                    If you get confused: Listen to the Music Play
                                    Please don't Chat/PM me for help, unless mod related
                                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                                    I 1 Reply Last reply Reply Quote 0
                                    • kiokomanK
                                      kiokoman LAYER 8
                                      last edited by

                                      now i'm curious to see where the hell we are hitting the head

                                      ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
                                      Please do not use chat/PM to ask for help
                                      we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
                                      Don't forget to Upvote with the 👍 button for any post you find to be helpful.

                                      1 Reply Last reply Reply Quote 0
                                      • I
                                        ilovechickennuggets @johnpoz
                                        last edited by

                                        @johnpoz @kiokoman
                                        The server is a physical machine directly connected to pfsense interface with no switches in between this connection. Unfortunately, I am out of time for now and will come back to this later to try this.

                                        1 Reply Last reply Reply Quote 0
                                        • johnpozJ
                                          johnpoz LAYER 8 Global Moderator
                                          last edited by johnpoz

                                          see my edit.. about using arping package as well.

                                          Clearly you would use server as the interface and ip of your nas..

                                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                                          If you get confused: Listen to the Music Play
                                          Please don't Chat/PM me for help, unless mod related
                                          SG-4860 24.11 | Lab VMs 2.8, 24.11

                                          I 1 Reply Last reply Reply Quote 0
                                          • I
                                            ilovechickennuggets @johnpoz
                                            last edited by

                                            @johnpoz @kiokoman
                                            Ok I did a complete shut down and reboot. The NAS is now getting the correct static IP. In Pfsense, under Status/ DHCP Leases -showing as online
                                            setup23.PNG

                                            I installed ARPing and ran it with following settings
                                            setup21.PNG
                                            setup22.PNG

                                            As for SSH and tcpdump, I am going to need to educate myself on this because I'm treading onto something completely new to me. I'll be back try your advice after I go through some documentations and tutorials. I don't have SSH set up and it looks like I need to generate a key.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.