<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Access webGui via double stack]]></title><description><![CDATA[<p dir="auto">Hello guys,</p>
<p dir="auto">It's possible to access the pfsense webgui via double stack (ipv4 and ipv6)?</p>
]]></description><link>https://forum.netgate.com/topic/100489/access-webgui-via-double-stack</link><generator>RSS for Node</generator><lastBuildDate>Sun, 12 Jul 2026 20:37:50 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/100489.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 25 May 2016 14:18:26 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Access webGui via double stack on Fri, 27 May 2016 20:43:07 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/johnpoz">@<bdi>johnpoz</bdi></a>:</p>
<blockquote>
<p dir="auto">That is a pretty OPEN rule ;)  If your wanting to lock down access to the gui.. And only access it from a specific vlan great.  But that that seems pretty wide if you ask me ;)</p>
<p dir="auto">Glad you got it sorted.</p>
</blockquote>
<p dir="auto">yea..I will configure a rule according to the link below. :D<br />
https://doc.pfsense.org/index.php/Restrict_access_to_management_interface</p>
<p dir="auto">Thanks!!!</p>
]]></description><link>https://forum.netgate.com/post/627850</link><guid isPermaLink="true">https://forum.netgate.com/post/627850</guid><dc:creator><![CDATA[empbilly]]></dc:creator><pubDate>Fri, 27 May 2016 20:43:07 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Fri, 27 May 2016 17:00:29 GMT]]></title><description><![CDATA[<p dir="auto">That is a pretty OPEN rule ;)  If your wanting to lock down access to the gui.. And only access it from a specific vlan great.  But that that seems pretty wide if you ask me ;)</p>
<p dir="auto">Glad you got it sorted.</p>
]]></description><link>https://forum.netgate.com/post/627808</link><guid isPermaLink="true">https://forum.netgate.com/post/627808</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Fri, 27 May 2016 17:00:29 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Fri, 27 May 2016 14:27:03 GMT]]></title><description><![CDATA[<p dir="auto">Guys,</p>
<p dir="auto">My firewall no have access from outside. Only for me. ;D</p>
<p dir="auto">My DNS server have both v4 (A) and v6 (AAAA) entries.</p>
<blockquote>
<p dir="auto">Did you disable the antilock out?  This allows access to pfsense both ipv4 and ipv6</p>
</blockquote>
<p dir="auto">He was disabled. Now, it's working. It needed only a access rule any to vlan300 address.</p>
]]></description><link>https://forum.netgate.com/post/627768</link><guid isPermaLink="true">https://forum.netgate.com/post/627768</guid><dc:creator><![CDATA[empbilly]]></dc:creator><pubDate>Fri, 27 May 2016 14:27:03 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Fri, 27 May 2016 12:25:49 GMT]]></title><description><![CDATA[<p dir="auto">^ very true.  But out of the box all wan inbound be it ipv4 or ipv6 is blocked.  You would of had to allow such access by creating a rule.</p>
]]></description><link>https://forum.netgate.com/post/627748</link><guid isPermaLink="true">https://forum.netgate.com/post/627748</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Fri, 27 May 2016 12:25:49 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Fri, 27 May 2016 04:47:44 GMT]]></title><description><![CDATA[<p dir="auto">Your pfsense IPV6 address is most probably a public address.</p>
<p dir="auto">So, if you have allowed access throught the firewall, it will be accessible via the internet from anywhere in the world and by anyone without any port forwarding required.</p>
<p dir="auto">Keep that in mind.</p>
<p dir="auto">Now that thats out of the way, I access mine like this (the numbers here are replaced but the form is correct)</p>
<p dir="auto">https://[2001:111:e111:1::1]/</p>
]]></description><link>https://forum.netgate.com/post/627683</link><guid isPermaLink="true">https://forum.netgate.com/post/627683</guid><dc:creator><![CDATA[kejianshi]]></dc:creator><pubDate>Fri, 27 May 2016 04:47:44 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Fri, 27 May 2016 03:58:14 GMT]]></title><description><![CDATA[<p dir="auto">What do you mean what firewall config?</p>
<p dir="auto">My lan rules are default any any.. I see no reason to filter MY access.  Now my other networks are very restricted from my lan and other segment.  But there is a antilock out rule anyway.</p>
<p dir="auto">What rules do you have?  Did you disable the antilock out?  This allows access to pfsense both ipv4 and ipv6</p>
<p dir="auto"><img src="/public/_imported_attachments_/1/antilockrule.png" alt="antilockrule.png" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/antilockrule.png_thumb" alt="antilockrule.png_thumb" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/627681</link><guid isPermaLink="true">https://forum.netgate.com/post/627681</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Fri, 27 May 2016 03:58:14 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Fri, 27 May 2016 00:55:41 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/johnpoz">@<bdi>johnpoz</bdi></a>:</p>
<blockquote>
<p dir="auto">Or just go to your ipv6 address directly.</p>
<p dir="auto">Your client does have to have a working ipv6 connection, etc.</p>
<p dir="auto">Or sure names work as well, if you setup a AAAA for pfsense to resolve too.  See 2nd attachment via name and using ipv6.</p>
</blockquote>
<p dir="auto">johnpoz,</p>
<p dir="auto">what firewall configuration you did?</p>
]]></description><link>https://forum.netgate.com/post/627655</link><guid isPermaLink="true">https://forum.netgate.com/post/627655</guid><dc:creator><![CDATA[empbilly]]></dc:creator><pubDate>Fri, 27 May 2016 00:55:41 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Wed, 25 May 2016 21:04:18 GMT]]></title><description><![CDATA[<p dir="auto">Or just go to your ipv6 address directly.</p>
<p dir="auto">Your client does have to have a working ipv6 connection, etc.</p>
<p dir="auto">Or sure names work as well, if you setup a AAAA for pfsense to resolve too.  See 2nd attachment via name and using ipv6.</p>
<p dir="auto"><img src="/public/_imported_attachments_/1/webguiviaipv6.png" alt="webguiviaipv6.png" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/webguiviaipv6.png_thumb" alt="webguiviaipv6.png_thumb" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/vianameipv6.png" alt="vianameipv6.png" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/vianameipv6.png_thumb" alt="vianameipv6.png_thumb" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/627329</link><guid isPermaLink="true">https://forum.netgate.com/post/627329</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Wed, 25 May 2016 21:04:18 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Wed, 25 May 2016 17:27:47 GMT]]></title><description><![CDATA[<p dir="auto">You need to have DNS configured so that it returns both A and AAAA records for the name you have chosen for the firewall, let's say firewall.example.tld. A record(s) for the IPv4 address(es) and AAAA records for the IPv6 address(es). For local access you can do that in the DNS resolver with host overrides, otherwise in the authoritative name server for your domain.</p>
]]></description><link>https://forum.netgate.com/post/627270</link><guid isPermaLink="true">https://forum.netgate.com/post/627270</guid><dc:creator><![CDATA[kpa]]></dc:creator><pubDate>Wed, 25 May 2016 17:27:47 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Wed, 25 May 2016 16:20:59 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/kpa">@<bdi>kpa</bdi></a>:</p>
<blockquote>
<p dir="auto">Why do you think it wouldn't be possible? IPv6 is just addresses and routes just like IPv4 is when it comes to connectivity.</p>
</blockquote>
<p dir="auto">Ok. How I config this?</p>
]]></description><link>https://forum.netgate.com/post/627260</link><guid isPermaLink="true">https://forum.netgate.com/post/627260</guid><dc:creator><![CDATA[empbilly]]></dc:creator><pubDate>Wed, 25 May 2016 16:20:59 GMT</pubDate></item><item><title><![CDATA[Reply to Access webGui via double stack on Wed, 25 May 2016 15:00:12 GMT]]></title><description><![CDATA[<p dir="auto">Why do you think it wouldn't be possible? IPv6 is just addresses and routes just like IPv4 is when it comes to connectivity.</p>
]]></description><link>https://forum.netgate.com/post/627241</link><guid isPermaLink="true">https://forum.netgate.com/post/627241</guid><dc:creator><![CDATA[kpa]]></dc:creator><pubDate>Wed, 25 May 2016 15:00:12 GMT</pubDate></item></channel></rss>