Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense 2.5 ATT bypass dumb switch

    Scheduled Pinned Locked Moved General pfSense Questions
    12 Posts 4 Posters 1.3k Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GertjanG Offline
      Gertjan @rve52001
      last edited by

      What do you mean by :

      @rve52001 said in Pfsense 2.5 ATT bypass dumb switch:

      tried the dumb switch bypass

      @rve52001 said in Pfsense 2.5 ATT bypass dumb switch:

      the Imac a good couple of minutes to pull an IP

      You could also say : it took a while for the ISP to accept the MAC of your iMac, and hand over an IP.
      Now, with pfSense, you see the same thing.
      Pretty sure that you will see the same thing with some other device.

      pfSense can't force the ISP ....
      What about contacting them ? They make you wait. They could be faster ?
      How would the ISP know that you're using another device if the MAC's used are all the same ?

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      1 Reply Last reply Reply Quote 0
      • stephenw10S Offline
        stephenw10 Netgate Administrator
        last edited by

        More detail needed. What are you bypassing? The AT&T router? By just replacing it with a switch?

        AT&T often requires elaborate workarounds to remove their device.

        Are you sure the iMac pulled a valid DHCP lease?

        Steve

        R 2 Replies Last reply Reply Quote 0
        • R Offline
          rve52001 @stephenw10
          last edited by rve52001

          Ok, I am taking a netgear unmanaged switch. Then I am hooking up the cat5e cable from the ONT and putting in one port. Then I plug in the ATT's RG, BGW210, into another port and powering it up. Then after it gets connected and everything is initiated, I am disconnecting it from the switch. I copy the MAC address of the BGW210 and paste it onto the WAN config of the Pfsense firewall, before shutting down to get ready. Then hook up the Pfsense firewall to the switch and power it up. I've tried waiting a while for Pfsense to get an IP, but it will not get one. If I do the same to my Imac it will pull a valid IP from their DHCP server. So yes I am essentially trying to bypass the ATT router.

          1 Reply Last reply Reply Quote 0
          • R Offline
            rve52001 @stephenw10
            last edited by

            I figured others might have had success in the forum spoofing the MAC address and might have some insight on something I might can do different.

            1 Reply Last reply Reply Quote 0
            • stephenw10S Offline
              stephenw10 Netgate Administrator
              last edited by

              Yup. Not as easy as that. See: https://github.com/MonkWho/pfatt

              R 1 Reply Last reply Reply Quote 0
              • R Offline
                rve52001 @stephenw10
                last edited by

                That's why I said dumb switch method, because some have had success the way I am trying without having to do pfatt. Now granted, if the power goes out I would have to plug up the RG back up to reinitiate a connection with the ONT.

                stephenw10S 1 Reply Last reply Reply Quote 0
                • stephenw10S Offline
                  stephenw10 Netgate Administrator @rve52001
                  last edited by

                  Ah, OK. Well if the Mac really is pulling a valid lease it should be possible for pfSense to do the same. Check the dhclient logs. Run a pcap on both and compare.

                  Steve

                  S 1 Reply Last reply Reply Quote 0
                  • S Offline
                    SteveITS Rebel Alliance @stephenw10
                    last edited by

                    Does your AT&T router not have a passthrough option so the pfSense gets a public IP?

                    Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                    When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
                    Upvote ๐Ÿ‘ helpful posts!

                    R 1 Reply Last reply Reply Quote 0
                    • R Offline
                      rve52001 @SteveITS
                      last edited by

                      @teamits
                      It does, just trying to getting away from the double NAT.

                      1 Reply Last reply Reply Quote 0
                      • R Offline
                        rve52001
                        last edited by

                        Please forgive me, but do not know linux that well. I am in ssh and it keeps telling me access denied when I try to type /bin.
                        [2.5.0-DEVELOPMENT][root@pfSense.localdomain]/root: /bin
                        /bin: Permission denied.

                        Is there a reason why I do not have permission? I'm thinking of trying the pfatt.sh route for running ATT bypass.

                        S 1 Reply Last reply Reply Quote 0
                        • S Offline
                          SteveITS Rebel Alliance @rve52001
                          last edited by

                          /bin is a directory, try "cd /bin"

                          Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                          When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
                          Upvote ๐Ÿ‘ helpful posts!

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.