Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Multiple LAN's

    Scheduled Pinned Locked Moved General pfSense Questions
    18 Posts 6 Posters 7.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      MikeyB
      last edited by

      Hey guys,

      I need a little help getting my second LAN to work, im new to this :)
      I have been looking around the forums for hours now and can't find anything.

      this is my set up.

      DSL –>  pfSense --> LAN 192.168.1.X --> Switch --> Servers, Desktops.
                      |
                      |------> WLAN
                      |
                      |------> LAN2 192.168.2.X

      But anything on LAN2 cant access pfSense or the internet.

      I have a manual outbound NAT rule set up, and firewall rule on LAN2 for any > any.

      Thanks in advanced

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG
        GruensFroeschli
        last edited by

        Did you create a AoN rule that NAT's your second subnet?

        Could you show screenshots of your rules?

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • M
          MikeyB
          last edited by

          Yeah i did, i believe its correct, i saw it in someone elses thread about this topic.

          LAN2.jpg_thumb
          LAN2.jpg
          NAT.jpg
          NAT.jpg_thumb
          Port_Forward.jpg
          Port_Forward.jpg_thumb
          WAN.jpg
          WAN.jpg_thumb

          1 Reply Last reply Reply Quote 0
          • M
            MikeyB
            last edited by

            Also if i plug a computer in to the second LAN interface (LAN2) i get a DHCP IP but i cant ping the default gateway (192.168.2.1) nor the pfSense box…

            1 Reply Last reply Reply Quote 0
            • GruensFroeschliG
              GruensFroeschli
              last edited by

              The rules look good.

              If you connect a client, can you ping it from the pfSense diagnostic-menu-ping?

              We do what we must, because we can.

              Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

              1 Reply Last reply Reply Quote 0
              • M
                MikeyB
                last edited by

                @GruensFroeschli:

                The rules look good.

                If you connect a client, can you ping it from the pfSense diagnostic-menu-ping?

                No i cant, i can ping the interface (192.168.2.1) but not the computer connected to the interface

                this is what i have from ipconfig… i dont know why i have a default gateway of 0.0.0.0 and 192.168.2.1

                ipconfig.jpg
                ipconfig.jpg_thumb

                1 Reply Last reply Reply Quote 0
                • GruensFroeschliG
                  GruensFroeschli
                  last edited by

                  Have you tried another computer?

                  We do what we must, because we can.

                  Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

                  1 Reply Last reply Reply Quote 0
                  • M
                    MikeyB
                    last edited by

                    I will now.

                    I tried a desktop i have, it got an IP fine, got a default gateway fine… but it couldnt ping the gateway or pfSense.

                    Do you have an idea of whats wrong?

                    1 Reply Last reply Reply Quote 0
                    • C
                      cmb
                      last edited by

                      There is no reason to use AON in this configuration, NAT rules are automatically generated for all your internal networks, the auto generated rules are identical to what you have configured. That shouldn't cause any problems though, the NAT setup looks to be identical to what would be automatically configured.

                      Rules appear to be setup fine too.

                      What is assigning the IPs on this network? You sure this OPT interface is functional and plugged in correctly?

                      1 Reply Last reply Reply Quote 0
                      • M
                        MikeyB
                        last edited by

                        pfSense does DHCP.

                        If it wasnt working i wouldnt get an IP from it would i?

                        thanks for all your help guys, im stumped on this one

                        1 Reply Last reply Reply Quote 0
                        • D
                          Delex
                          last edited by

                          To me the gateway (0.0.0.0) seems strange, I would suggest to check the DHCP settings on lan2 again.

                          Further whenever I was working with mutiple LANs and tested it I with 1 computer I always en up with connectivity problems because of the ARP table. Make sure to flush it or to reset the pfsense box when ever you move your computer between the LANs.

                          1 Reply Last reply Reply Quote 0
                          • M
                            MikeyB
                            last edited by

                            I have reset it and tired but it didnt work.

                            DHCP settings on LAN2 are correct i beleive

                            1 Reply Last reply Reply Quote 0
                            • C
                              cmb
                              last edited by

                              Yeah if you're getting DHCP leases from it, it's obviously online…  no clue what you might be seeing.

                              1 Reply Last reply Reply Quote 0
                              • D
                                Delex
                                last edited by

                                Does it work if you disable DHCP on LAN2 and use a fixed IP address and gateway on your PC?

                                1 Reply Last reply Reply Quote 0
                                • M
                                  MikeyB
                                  last edited by

                                  ^ Just tried that now, didn't help  >:(

                                  1 Reply Last reply Reply Quote 0
                                  • M
                                    MikeyB
                                    last edited by

                                    bump

                                    still cant get this to work :(

                                    1 Reply Last reply Reply Quote 0
                                    • P
                                      Perry
                                      last edited by

                                      Try booting from a livecd and assign the nic's in console then follow my screen dumps.

                                      htpc1.JPG
                                      htpc1.JPG_thumb
                                      htpc2.JPG
                                      htpc2.JPG_thumb
                                      htpc3.JPG
                                      htpc3.JPG_thumb

                                      /Perry
                                      doc.pfsense.org

                                      1 Reply Last reply Reply Quote 0
                                      • D
                                        djamp42
                                        last edited by

                                        Do you have a IPSEC VPN Tunnel terminating to the 2nd LAN??

                                        For some reason, i can not ping anything on my 2nd lan from pfSense when a IPSEC Tunnel is running.. If i turn it off, i can ping all day long..

                                        1 Reply Last reply Reply Quote 0
                                        • First post
                                          Last post
                                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.