Chinese website not opening
this is my first post so far.
I am having an issue to open some chinese website in my company and looks like it happened after i have upgraded pfsense to the version 2.4.4-RELEASE-p3 (amd64).
I have checked with our ISP and from their side there are no issue.
I have no proxy enabled on the users VLAN and no particular restrictions.
I have tried to ping the website from pfsense but nothing. Error is;
The connection has timed out
Hmm. We’re having trouble finding that site.
Thanks in advance.
Does the site resolve from the pfSense GUi in Diag > DNS Lookup?
Does it resolve from a client behind pfSense?
Does it ping from pfSense itself in Diag > Ping?
my first post so fa
thanks for your response.
I have tried but it says Host "https://www.youzu.com" did not respond or could not be resolved. For the other website the same.
I didn't try behind pfsense because i need to disconnect the only cable coming from the router to the firewall and in working hours is a bit difficult.
Any other suggestion :).
are you using any other packages, ips, pfblocker?
If your saying when you ping it times out - I take it resolved to an IP? since that error is different than host not found, etc.
Please give a fqdn example of a site you can not get to, and what IP you are resolving it too.
edit: ok does that site resolve?
yes i have tried as well.
you do understand not all sites ping right. So that is not always a valid test
Also for all we know your using that IP range internally, etc ;) have seen that way more than anyone would think. Pick your specific wan interface..
Do a traceroute to that IP... Does get to past your isp gateway?
emilianomanfrin last edited by emilianomanfrin
looks like nope.
Well i can ping the site from home, from another office, but not from here :(
Gertjan last edited by
but not from there
Time to contact the people that represent 'here'.
Just explain them that "https://www.youzu.com" is important for the company.
to contact the people that represent 'he
Well, the only thing we did is contacting the ISP and looks like there is any issue from their side.
I can ping that IP too, was just pointing out that not all IPs will respond - so unless your are SURE it will and should, its not always a valid test..
So your traceroute is sending traffic for that IP out to your isp and internet.
Do a sniff on your wan and validate you send out the syn on 80 to get to their site, or ping etc.. If that is the case then its not pfsense issue at all and something on your isp, the internet between your isp and that site, or the site themselves blocking your IP..
How many other sites can you not get to- are they all in the same netblock?