Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    1. Home
    2. Tags
    3. vlan
    Log in to post
    • All categories
    • noahajacN

      CARP IP is in backup state however it is still answering queries on other VLANs

      Watching Ignoring Scheduled Pinned Locked Moved HA/CARP/VIPs carp vlan vip
      1
      0 Votes
      1 Posts
      490 Views
      No one has replied
    • lifeboyL

      Hybrid routed and NAT'ed network

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN public ips routing vlan
      2
      0 Votes
      2 Posts
      542 Views
      lifeboyL

      I have now added a VLAN to the LAN port in proxmox and created a bridge from that. This I have added to pfSense with the first address of the ip subnet which will act as gateway for the /29 addresses from the guests/hosts on the network.

      So far so good.

    • Y

      VLAN Routing with UniFi APs

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs netgear unifi vlan
      12
      0 Votes
      12 Posts
      2k Views
      bingo600B

      @johnpoz

      Luckily i'm in a controlled environment where only PC's and Desktop Phones approved by (me) are allowed to have access via WiFi.

      No phones or personal devices are allowed on that segment.

      /Bingo

    • sololegendsS

      unbound notice: sendto failed: Invalid argument

      Watching Ignoring Scheduled Pinned Locked Moved DHCP and DNS unbound dns vlan dns vlan sendto failed
      1
      0 Votes
      1 Posts
      1k Views
      No one has replied
    • charles_moodyC

      Trunk/LAGG problem / pfSense UniFi 24-250W PoE Switch and VLANs

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan vlan interface trunk lagg unifi
      2
      0 Votes
      2 Posts
      759 Views
      johnpozJ

      @charles_moody said in Trunk/LAGG problem / pfSense UniFi 24-250W PoE Switch and VLANs:

      Can anyone tell me how to get the switch to adopt

      So this is crux of your issue?

      That has nothing to do with pfsense.. Your controller and switch need to be on the same L2 network for adoption... Or you need to use L3 adoption.. This has everything to do with unifi, and not related to pfsense at all.

      https://help.ui.com/hc/en-us/articles/204909754-UniFi-Device-Adoption-Methods-for-Remote-UniFi-Controllers

      behind that about 10 smart-managed Netgear switches

      This seems nuts - are they all in closets somewhere.. How big is this house? If you were running cable - why would all your cables not just home run back to your core switching area? Curious where exactly all these switches are?

      want LAN just for troubleshooting and because it’s often stated that LAN will strip of the VLAN tags from the traffic

      Huh? You can run vlans on lan just like any other interface.. So not sure what your thinking with this statement... Sure you can use lan interface as your management interface.. But it can run vlans on it as well if you want.

    • VivoAzzurroV

      Help me configure my first VLAN?

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan vlan to lan switch switchports
      5
      0 Votes
      5 Posts
      977 Views
      VivoAzzurroV

      @JKnott

      I tend to heir on the side of caution when it comes to using terminology I'm not 100% familiar with, but I have the basics down that's for sure.

      Regardless, after some extensive troubleshooting I got rid of the Aruba switch and swapped it out with a Ubiquiti.
      Had my network infrastructure team troubleshoot the Aruba... nobody could get it working. They let me know about how others have not been able to use Aruba equipment in the past, so i chalked it up to the switch.

    • J

      VLAN connectivity Issue

      Watching Ignoring Scheduled Pinned Locked Moved Firewalling vlan cisco switch
      4
      0 Votes
      4 Posts
      703 Views
      johnpozJ

      While captive portal could be blocking.. You clearly have issue there with only allowing tcp.. Unless your client is doing doh or dot there is now way he could get any dns.. DNS runs on UDP 53..

      You can see right there in your block 53 to 8.8.8.8 was blocked.

    • J

      Apply pfBlockerNG DNSBL to one VLAN but not the LAN (or other VLAN)?

      Watching Ignoring Scheduled Pinned Locked Moved pfBlockerNG dnsbl vlan dns resolver
      7
      1 Votes
      7 Posts
      3k Views
      G

      @The-Party-of-Hell-No
      Listo amigo ya quedo, lo que pasa es que tenia dns asignados a la vlan dejando el nativo se soluciono

    • M

      SMB/NFS/iSCSI between VLAN<->LAN only works with synproxy enabled

      Watching Ignoring Scheduled Pinned Locked Moved Firewalling vlan firewall rules
      1
      0 Votes
      1 Posts
      864 Views
      No one has replied
    • C

      Trying to setup Guest VLAN but not working

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan vlan interface dhcp vlan to lan
      12
      0 Votes
      12 Posts
      2k Views
      JKnottJ

      @CalTommo

      I don't know how, if you've set up DHCP. It just works. Configuring DHCP on a VLAN is no different than on an Ethernet port. Do you have a computer you can configure for VLAN 80? If so, just plug it into the LAN side of the pfSense box and see what happens.

    • X

      VLAN question for noob moving from Cisco ASA

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan interfaces gateway cisco
      21
      0 Votes
      21 Posts
      4k Views
      GrimetonG

      @xyzzyz said in VLAN question for noob moving from Cisco ASA:

      My question: On my pfSense replacement for the ASA, is there any advantage to setting up a VLAN for the WAN port?

      No.

    • R

      Setting up VLAN with Quad NIC & Netgear GSS116E

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlans netgear vlan dhcp wan on vlan
      5
      0 Votes
      5 Posts
      1k Views
      NogBadTheBadN

      Trunk your VLANs on a single pfSense interface.

      The Netgear docs suck big time.

      https://community.netgear.com/t5/Smart-Plus-Click-Switches/Port-trunking-on-GSS108E/td-p/1353948

    • J

      ADSL Orange - Pas de TV à travers Pfsense

      Watching Ignoring Scheduled Pinned Locked Moved Français orange igmp livebox proxmox vlan
      3
      0 Votes
      3 Posts
      2k Views
      PARNP

      Bonjour,

      Alors moi aussi je suis en train de faire ce setup avec comme but de garder Livebox , TV et phone de coté.
      Donc je regarde cette doc :
      https://wiki.csnu.org/index.php/Fibre_orange_en_DHCP_avec_routeur_pfsense
      J'ai acheté un switch microtik 260gs, parce que je suis un geek et que c'est bien foutu ces switch pour pas chère :)

      Bref en attendant d'avancer sur ce setup j'ai ma solution intermédiaire pour la partie TV
      Sur un switch qui supporte les vlan je créé un vlan spécial ou je branche et j'isole du reste de mon réseau la livebox et la box tv. Bien entendu j'ai du tirer un câble de mes serveurs vers ma tv mais je suis bien content du résultat.
      Après je n'ai rien inventé j'ai suivi l'idée de la doc ci dessus :
      "Enfin, dans le cas ou vous ne pourriez pas brancher directement le port LAN de la livebox à votre décodeur, il est possible (à condition que le switch gérant votre lan soit manageable et supporte les VLANs) de brancher le port LAN de la livebox directement à votre switch de LAN et d'y taguer les paquets sur un VLAN (666 dans cet exemple). Cela impose d'avoir un second switch sur votre lan, qui sera, lui, directement connecté au décodeur et qui doit être lui aussi manageable afin de détaguer du VLAN 666 les paquets pour le décodeur. "

      Tous ça pour dire que je pense que virtualiser pfsense dans proxmox peut ajouter plus de complication que de solution. Mais c'est intéressant de monter ce setup

      Quand j’aurais le temps d’avancer sur ce setup j'ajouterais des infos.

      @+

    • O

      Non local gateway IPv6

      Watching Ignoring Scheduled Pinned Locked Moved IPv6 ovh ipv6 vlan gateway
      25
      0 Votes
      25 Posts
      5k Views
      JKnottJ

      @Overclock said in Non local gateway IPv6:

      I let you inform about OVH response.

      Ask them how SLAAC is supposed to work with a /56. You may be able to get a single /64 to work, but the other 255 will be unusable.

    • J

      Problem Vlan with Vmware

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vmware vlan
      1
      0 Votes
      1 Posts
      513 Views
      No one has replied
    • N

      LAN, use opt as lan interface

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions lan side interfaces bridge vlan
      16
      1 Votes
      16 Posts
      4k Views
      johnpozJ

      Dick? Really? Calling you out on calling yourself a ccie when clearly everyone knows that is not even close to true is not being a dick... That is just calling someone out on their BS!

      So what was the problem, only tcp for the rule? Wrong source?
      Maybe you had policy route on the rule? But that wouldn't of stopped ping to pfsense IP? Only ping to other lan.. That is another common mistake.

    • S

      Trouble setting up SG-1100 for Google Fiber

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions sg-1100 google fiber vlan
      4
      0 Votes
      4 Posts
      1k Views
      stephenw10S

      No, no reboot required.

    • P

      NAT VLAN through VPN Troubles

      Watching Ignoring Scheduled Pinned Locked Moved NAT nat vlan vpn headers
      5
      0 Votes
      5 Posts
      838 Views
      P

      @Pippin Thank you for the reply. I went into VPN -> OpenVPN -> Clients and edited my client's configuration. Under Advanced Configuration I put into the custom options "ns-cert-type server; persist-tun; persist-key; mssfix 1400" and then saved. I then reloaded the VPN by going to Status -> OpenVPN. I did the usual ping/nmap verification checks to confirm connectivity. However this does not seem to have done anything. Below is a picture of the wireshark output (with the TCP stream from the browser being currently selected) and below that is the capture file.

      Untitled.png

      mssfix1400_full_cap.pcapng

    • K

      PFSENSE 2.4 and Cisco 3560 Multiple VLANs Routing

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN routing cisco vlan nat
      1
      0 Votes
      1 Posts
      492 Views
      No one has replied
    • ?

      PHP Fatal error: Uncaught Error: Cannot use string offset as an array

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions vlan php error crash
      6
      0 Votes
      6 Posts
      2k Views
      jimpJ

      I have not been able to reproduce the problem here, but I can see how it might happen. I opened https://redmine.pfsense.org/issues/9582 to track it and committed a fix: https://github.com/pfsense/pfsense/commit/45f95753963e497b5ce14493f9cca05336d75c7b

      You can install the System Patches package and then create an entry for 45f95753963e497b5ce14493f9cca05336d75c7b to apply the fix.

      Alternately, you can use viconfig to edit the config and remove that <vlans></vlans> line, or download a backup, edit it out, then restore.