Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to access wifi router/AP connected to LAN1/2 admin page from LAN

    Scheduled Pinned Locked Moved Off-Topic & Non-Support Discussion
    8 Posts 3 Posters 847 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      kvamsi.k143
      last edited by

      Hi all,

      I have a pfsense box with 1+3 WAN+LAN ports. I have separated all the wifi traffic to OPT2/LAN2. I am unable to access the router's (connected on OPT2/LAN2) administration page from LAN.

      Firewall rule on both LAN and LAN2 is set allow from any to any. Any suggestion in this regard will be helpful.

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        Does the AP you are trying to connect to have any concept of a management network or a default gateway for traffic to/from its management web page?

        My guess is not so you probably need to put an outbound NAT rule on OPT2 so traffic from LAN appears to be coming from the pfSense OPT2 address from the AP's perspective.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • K
          kvamsi.k143
          last edited by kvamsi.k143

          Yes, I am using Asus RT-AC1200G+ in access point mode with a IP reservation on the DHCP server.

          I have also set the gateway as the IP address of LAN2.

          Can you emphasize on the Outbound NAT rule pls. Currently set to Automatic.

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            If your AP has the concept of a default gateway for management traffic you don't need the outbound NAT.

            You might want to post some screenshots of it's management interface configuration.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • K
              kvamsi.k143
              last edited by

              my bad.. router do not have management interface. It is a home router that can act as a default gateway.

              I am able to manage the router when connected to the network on OPT2, but not from LAN.

              NogBadTheBadN 1 Reply Last reply Reply Quote 0
              • NogBadTheBadN
                NogBadTheBad @kvamsi.k143
                last edited by

                @kvamsi-k143

                Have you got a default route on it for any subnet that isn't local?

                Andy

                1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                1 Reply Last reply Reply Quote 0
                • DerelictD
                  Derelict LAYER 8 Netgate
                  last edited by Derelict

                  Firewall > NAT, Outbound

                  Set mode to Hybrid and save.

                  Add a new rule:

                  Interface: LAN2
                  Source: any
                  Destination: Network, IP address of router, /32
                  Translation Address: LAN2 Address

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  K 1 Reply Last reply Reply Quote 1
                  • K
                    kvamsi.k143 @Derelict
                    last edited by

                    @derelict
                    Thanks for the solution. This worked.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.