Vlan client not able to ping gateway nor access the internet



  • Hello,
    I'm new to pfSense and use a physical box with two NICs.
    One is dedicated for WAN
    the second has 2 vlans
    vlan 10 for LAN
    vlan 20 for OPT1

    I can manage pfSense on vlan10
    Clients on vlan 10 can ping the LAN gateway and access the internet

    Clients on vlan 20 cannot ping the OPT1 gateway and cannot access the internet.

    I then setup DHCP server on the OPT1 network.

    My client gets an IP from pfSense and pfsense can ping the client.
    But still the client cannot ping pfSense nor access the internet.

    I added the rule allowing all trafic from OPT1 to any network.

    I'm stuck here and don't really know where to look at.
    Any clue much appreciated.

    I'm using the latest pfSense 2.3.2-RELEASE-p1

    something more schematic

    | WAN on re0
      |
      | re0
      –----- pfsense
      | re1
      |
      | LAN VLAN10 on re1 192.168.10.254/24
      | OPT2 VLAN20 on re1 192.168.20.254/24
      |
      |
      ------- ESXi (directly connected to re1)
      |
      ----- vswitch VLAN20
      |
      |
      VM - DHCP client gets 1st IP of DHCP pool 192.168.20.1



  • well, I have simplified my layout to the maximum

    I removes trunks and vlans.

    | WAN on re0
      |
      | re0
      –---------------------------------------------------------------------- pfsense
      | re1                                                  | ue0
      |                                                      |
      | LAN  on re1 192.168.10.254/24                        | OPT2 on ue0 192.168.20.254/24
      |                                                      |
      |                                                      |
      ------------------------------------------------------------------------- ESXi (directly connected to re1)
      |                                                      |
      ----- vswitch1                                          ----- vswitch2 
      |                                                      |
      |                                                      |
      | VM1 can ping 192.168.10.254        | VM - DHCP client gets 1st IP of DHCP pool 192.168.20.1 cannot ping 192.168.20.254 no internet
                and access internet

    But I still have the same issue, Is there something to do on the OPT1 port configuration which is diffrent from the LAN one to make it work ?
    I added firewall rules to allow any any.



  • Just found my mistake in the logs.
    My firewall rule was only on UDP not TCP.