Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Port tagging on APU2?

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    56 Posts 5 Posters 12.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • bingo600B
      bingo600 @orangehand
      last edited by bingo600

      @orangehand

      Why do you use Manual nat , and not Hybrid ?

      It seems like you are missing outbound nat for your guest lan : 192.168.34.0/24

      Re: Switches & stuff.
      Since you can ping devices on your Lan , and you get ip addresses on your guest WiFi. I'd say your switch & Vlan works fine.

      The reason you can't go on Inet from WiFi , seems to be that you are not doing outbound nat for that /24. And trying to send an RFC1918 ip to you ISP would not lead to anything good.

      If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

      pfSense+ 23.05.1 (ZFS)

      QOTOM-Q355G4 Quad Lan.
      CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
      LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

      1 Reply Last reply Reply Quote 1
      • Raffi_R
        Raffi_
        last edited by

        @bingo600 said in Port tagging on APU2?:

        Why do you use Manual nat , and not Hybrid ?

        Was wondering this also.

        @bingo600 said in Port tagging on APU2?:

        It seems like you are missing outbound nat for your guest lan : 192.168.34.0/24

        Good catch.

        1 Reply Last reply Reply Quote 0
        • bingo600B
          bingo600 @orangehand
          last edited by bingo600

          @orangehand

          Not that it matters "much" .. nitpicking
          But your 3CX NAT rule at the top, is covered by the 192.168.33.0/24 NAT rule further down.

          @Raffi_
          Thnx 😊

          This was a "tricky one" ..
          I'm 99% sure it's solved after OP makes the missing NAT rule.

          /Bingo

          If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

          pfSense+ 23.05.1 (ZFS)

          QOTOM-Q355G4 Quad Lan.
          CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
          LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

          O 1 Reply Last reply Reply Quote 1
          • O
            orangehand @bingo600
            last edited by

            @bingo600 Thank you all so much - that did the trick in Outbound NAT!
            Screenshot 2020-12-01 at 09.18.21.png

            No idea why it wasn't auto created though

            bingo600B 1 Reply Last reply Reply Quote 0
            • bingo600B
              bingo600 @orangehand
              last edited by

              @orangehand said in Port tagging on APU2?:

              No idea why it wasn't auto created though

              In your outbound NAT settings you have "tick'ed" Manual NAT (the round dots in top)
              That means no automatic nat is done.

              You should use either automatic or hybrid (hybrid let's you get automatic + you can add some your self)

              /Bingo

              If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

              pfSense+ 23.05.1 (ZFS)

              QOTOM-Q355G4 Quad Lan.
              CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
              LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

              O 1 Reply Last reply Reply Quote 0
              • O
                orangehand @bingo600
                last edited by

                @bingo600 That makes sense! It was on manual I think due to some instruction from 3CX. If I put it back to auto or hybrid will anything get changed? Or will it just affect future changes? Thanks

                bingo600B 1 Reply Last reply Reply Quote 0
                • bingo600B
                  bingo600 @orangehand
                  last edited by

                  @orangehand
                  I'm 100% sure

                  I would not expect it to be doing nasty stuff.

                  Do a backup of your config , and try to switch it to hybrid.
                  If anything FSCK's up , you can restore the backup , and you're back.

                  Btw: The 3CX NAT seems redundant , it's covered by the 192.168.33.0/24 nat further down

                  /Bingo

                  If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                  pfSense+ 23.05.1 (ZFS)

                  QOTOM-Q355G4 Quad Lan.
                  CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                  LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                  O 1 Reply Last reply Reply Quote 1
                  • O
                    orangehand @bingo600
                    last edited by

                    @bingo600 OK, nothing nasty happened! Will delete the redundant 3cx rule. Thanks SO much for your help; I'm incredibly grateful.

                    bingo600B 1 Reply Last reply Reply Quote 0
                    • bingo600B
                      bingo600 @orangehand
                      last edited by

                      @orangehand

                      Glad to be of assistance , we have all been in that situation 😊

                      /Bingo

                      If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                      pfSense+ 23.05.1 (ZFS)

                      QOTOM-Q355G4 Quad Lan.
                      CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                      LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                      1 Reply Last reply Reply Quote 1
                      • bingo600B
                        bingo600 @JKnott
                        last edited by

                        @JKnott said in Port tagging on APU2?:

                        @bingo600

                        No, just making sure he's not missing anything.

                        @JKnott
                        You're right.
                        Sorry about the "rant" ..

                        If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                        pfSense+ 23.05.1 (ZFS)

                        QOTOM-Q355G4 Quad Lan.
                        CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                        LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.