Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    No traffic from LAN to WAN

    Firewalling
    3
    13
    1.0k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      seyico
      last edited by

      Thank you! Hosts in my LAN can now communicate with WAN. But there is no internet access to both WAN and LAN. What rule/port to i need to allow on the Firewall to have access to the internet.

      Thanks for your help!

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @seyico
        last edited by

        @seyico said in No traffic from LAN to WAN:

        What rule/port to i need to allow on the Firewall to have access to the internet.

        There is no rule that you would have to add.. Out of the box the lan has an any any rule.. Which would allow access to internet. Since really the internet could be any IP or any port..

        defaultlan.png

        When you say no internet - you mean you can not resolve say www.google.com to an IP? Or you can not ping say 8.8.8.8?

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        S 1 Reply Last reply Reply Quote 0
        • S
          seyico @johnpoz
          last edited by

          @johnpoz I Can't do either of the two. I can't ping 8.8.8.8 and google.com isnt reachable.

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @seyico
            last edited by johnpoz

            @seyico

            From pfsense - not your client?

            See my ping before. If you can not ping 8.8.8.8 from pfsense.. Then something upstream is broken..Pfsense is not connected to the internet.. You say your gateway shows up and you can ping your gateway?

            This is a VM right? If so that is broken.. Your vm network..

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

            S 1 Reply Last reply Reply Quote 0
            • S
              seyico @johnpoz
              last edited by

              @johnpoz Nope! I can't ping 8.8.8.8 from pfsense. And Yes! It is a vm. I have been on this for days, trying to figure out the problem, but couldn't.

              johnpozJ 1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator @seyico
                last edited by

                Well if pfsense can not even ping 8.8.8.8 from its wan - then it doesn't have internet. Unless whatever you have in front of pfsense is blocking 8.8.8.8?

                Again - does your pfsense have a public IP on its wan? You say you bridged your modem.. And you say pfsense is able to ping its gateway?

                Is this a cable modem? So you rebooted your modem after you changed the device connected to it?

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                S 1 Reply Last reply Reply Quote 0
                • S
                  seyico @johnpoz
                  last edited by

                  @johnpoz My pfsense has a private IP on its WAN since i connected it to my home network. Yes! pfsense is able to ping its gateway; gateway is online. Its a cable modem. I connected to the host system hosting the virtual lab to the home network via usb wifi (I dont think that should be an issue).

                  I remember reading one of your posts on this forum saying since pfsense, out of the box config blocks incoming traffic to WAN and allows all outgoing traffic from LAN, a rule needs to be added in order to allow communication to the internet. Is this correct

                  johnpozJ 1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator @seyico
                    last edited by johnpoz

                    NO RULE is needed to be added or adjusted to allow internet out of the box!

                    If your pfsense has a private IP on its wan.. And you can not get to the internet - then look upstream.. Cable Modems don't do nat! You mean you have a cable gateway?

                    Is pfsense wan IP in the 192.168.100 range? This is IP range cable modems hand out, when they don't have internet..

                    You don't have the same network on pfsense wan as you do lan do you..

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                    S 2 Replies Last reply Reply Quote 0
                    • S
                      seyico @johnpoz
                      last edited by

                      @johnpoz Okay, i'll check that when i get home. The wan IP is in the 192.168.*.
                      Pfsense and my lan are on different network. Devices on my home network lan can access internet without issues.

                      The only issue is to have pfsense get to the internet, with that done, my lab environment will have internet.

                      Thanks

                      1 Reply Last reply Reply Quote 0
                      • S
                        seyico @johnpoz
                        last edited by

                        @johnpoz Thank you, issue resolved. It had to do with my VMware setup. Its all good now.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.