Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    WAN LAN and OPT1 set up

    Scheduled Pinned Locked Moved Firewalling
    9 Posts 3 Posters 821 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D Offline
      deividuska
      last edited by

      Hi please help i am the complete noob
      So I need help to set up WAN LAN and OPT1.

      My set up From Virgin media (in modem mode) connected to WAN. Lan connected to Asus ac3200 router in access mode.OPT1 connected to TP-link switch.

      Wan and LAN working thine I have internet. I just can't get OPT1 working no interne connection for devices on TP-link switch.

      https://ibb.co/n241ic
      https://ibb.co/khd59H
      https://ibb.co/b2e1ic

      1 Reply Last reply Reply Quote 0
      • pttP Offline
        ptt Rebel Alliance
        last edited by

        Check:  https://doc.pfsense.org/index.php/Connectivity_Troubleshooting

        Do you have the needed FW rules on OPT1 ? (attach screenshot)

        Do you have DHCP server enabled on OPT1 ? (attach screenshot)

        Please note that you can attach/post the screenshots to your post/reply using the " + Attachments and other options " (not need to use external services/sites)

        1 Reply Last reply Reply Quote 0
        • D Offline
          deividuska
          last edited by

          Hi
          My OPT1 settings check the screenshot, please.
          No DHCP is not enabled on OPT1.I don't have any FW rules for OPT1.

          Do I have to enable DHCP server enabled on OPT1?

          ![Interfaces OPT1 (1).png](/public/imported_attachments/1/Interfaces OPT1 (1).png)
          ![Interfaces OPT1 (1).png_thumb](/public/imported_attachments/1/Interfaces OPT1 (1).png_thumb)

          1 Reply Last reply Reply Quote 0
          • pttP Offline
            ptt Rebel Alliance
            last edited by

            Same as with LAN, in OPT1, you need an IP, FW rules & eventually a DHCP Server (unless you will use static IP on the OPT1 network devices)

            1 Reply Last reply Reply Quote 0
            • D Offline
              deividuska
              last edited by

              Hi
              Added FW rule same as LAN please check screenshot is it correct?

              I not sure what to put in OPT1 interface  IPv4 Configuration Type DHCP?

              ![Firewall Rule Edit.png](/public/imported_attachments/1/Firewall Rule Edit.png)
              ![Firewall Rule Edit.png_thumb](/public/imported_attachments/1/Firewall Rule Edit.png_thumb)

              1 Reply Last reply Reply Quote 0
              • pttP Offline
                ptt Rebel Alliance
                last edited by

                https://doc.pfsense.org/index.php/Interface_Settings

                https://doc.pfsense.org/index.php/Firewall_Rule_Basics

                https://doc.pfsense.org/index.php/Firewall_Rule_Processing_Order

                https://doc.pfsense.org/index.php/Firewall_Rule_Troubleshooting

                https://doc.pfsense.org/index.php/DHCP_Server

                1 Reply Last reply Reply Quote 0
                • D Offline
                  deividuska
                  last edited by

                  Hi
                  Thank for the info.But still, don't make a lot of sense for me.

                  What would be best set up for One WAN and Two LAN Interfaces? Because i dont have connection on OPT1.

                  1 Reply Last reply Reply Quote 0
                  • pttP Offline
                    ptt Rebel Alliance
                    last edited by

                    Please explain/describe clearly what you want to achieve, include a network diagram.

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ Offline
                      johnpoz LAYER 8 Global Moderator
                      last edited by

                      No those firewall rules are not correct… Why would lan net be the source on your new opt1 network..

                      Your source on your firewall rules would be opt1 net..

                      The simple thing to do is enable dhcp on this new interface you create.  If you can not understand what the source is not lan net on the firewall rules.  Your never going to get figure out how to step up static IPs on some client..

                      What network did you create on the opt1 interface?  Its going to default to be a /32 mask which not going to work....

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 26.03.1 | Lab VMs 2.8.1, 26.03.1

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.