Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    TMobile cell spot not having internet

    Scheduled Pinned Locked Moved General pfSense Questions
    11 Posts 3 Posters 923 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cheapie408
      last edited by

      I found a really old threads that resolved this issue by changing the MFS... can anyone show me where to find this setting?

      https://forum.netgate.com/topic/131363/t-mobile-cellspot-not-working

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        Changing the what?

        Those little microcells generally need nothing but a good GPS signal and time to sync with the mothership. They work fine with the default pfSense configuration.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        C 1 Reply Last reply Reply Quote 0
        • C
          cheapie408 @Derelict
          last edited by cheapie408

          @Derelict said in TMobile cell spot not having internet:

          ne with the default pfSense configu

          In that thread, the OP mentioned the fix was to change the MFS Max Frame Size to 1518.

          FWIW, it requires UDP port 500, 4500 and 123

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            Sounds like misinformation.

            Those are outbound ports. All open by default.

            500 and 4500 are IPsec. 123 is NTP.

            The node establishes a connection to the mothership using IPsec. it communicates with them over that.

            Guess it sets the clock using NTP too.

            Nothing should need to be done in the firewall. It's all open by default.

            You can open Diagnostics > States and filter on the inside IP address assigned to the cell and see what you see. Probably a pair of states on 4500. Maybe one on 500 and 123.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • C
              cheapie408
              last edited by

              My DHCP lease shows the cellspot being online but under states, there are 0 traffic found for the IP.

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                well, it's going to need to make outgoing connections to be able to transfer any data.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                C 1 Reply Last reply Reply Quote 0
                • C
                  cheapie408 @Derelict
                  last edited by

                  @Derelict and this is what I'm trying to figure out.... It's been hooked up for 5 hours still blinking internet light

                  1 Reply Last reply Reply Quote 0
                  • DerelictD
                    Derelict LAYER 8 Netgate
                    last edited by

                    No idea. What do they have to say for themselves? "It's your firewall!" ??

                    Have you messed with the firewall rules on the interface it is on at all?

                    Chattanooga, Tennessee, USA
                    A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                    DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                    Do Not Chat For Help! NO_WAN_EGRESS(TM)

                    C 1 Reply Last reply Reply Quote 0
                    • C
                      cheapie408 @Derelict
                      last edited by

                      @Derelict said in TMobile cell spot not having internet:

                      No idea. What do they have to say for themselves? "It's your firewall!" ??

                      Have you messed with the firewall rules on the interface it is on at all?

                      Haven't contact them. Going to change it up and have the cellspot on the internet first then pass to pfsense to see if it works.

                      1 Reply Last reply Reply Quote 0
                      • chpalmerC
                        chpalmer
                        last edited by chpalmer

                        Make port 4500 a static port.

                        Triggering snowflakes one by one..
                        Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                        1 Reply Last reply Reply Quote 0
                        • DerelictD
                          Derelict LAYER 8 Netgate
                          last edited by Derelict

                          If they did that they broke NAT-T and everything NAT-T is supposed to do. Wouldn't surprise me though. If they did that they might as well just use port 500.

                          Chattanooga, Tennessee, USA
                          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                          Do Not Chat For Help! NO_WAN_EGRESS(TM)

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.