Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfSense drops Internet ?

    Scheduled Pinned Locked Moved General pfSense Questions
    27 Posts 11 Posters 3.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      wangel
      last edited by wangel

      So this has happened 3 or 4 times now ... and it's driving me batty because I can't find any rhythm or reason to why or what is causing it.

      Everything will be fine. Internet will be working, no issues ... then it drops off. In the past it's happened at night, but today it was in the middle of the day, so I decided to try and diagnose it.

      My cable modem had not dropped .. it was still synced. I could still access pfsense, so I ssh'ed in. I tried to ping 8.8.8.8 and could not. Ping would return "Permission Denied". As shown in the follwing screen shot

      So I tried to power cycle the modem, figured why not. It synced back up with no issues, but I had no WAN ip. I tried to release/renew the interface, still could not get a WAN ip. In the past, I had tried to disable and re-enable the WAN interface, but that doesn't work either.

      I was forced to reboot. Reboot always seems to fix it.

      I hate rebooting =( ... I'd like to figure out what is causing it ... but I don't know where to start. It's also random. It could go a month or more now and be fine --- it could go a day or so. I don't know.

      Below is my NIC info;

      em0: <Intel(R) PRO/1000 Network Connection 7.6.1-k> port 0xe020-0xe03f mem 0xfea80000-0xfea9ffff,0xfea60000-0xfea7ffff irq 24 at device 0.0 on pci1
      em0: Using an MSI interrupt
      em0: Ethernet address: 00:15:17:f1:72:f0
      em0: netmap queues/slots: TX 1/1024, RX 1/1024
      em1: <Intel(R) PRO/1000 Network Connection 7.6.1-k> port 0xe000-0xe01f mem 0xfea20000-0xfea3ffff,0xfea00000-0xfea1ffff irq 25 at device 0.1 on pci1
      em1: Using an MSI interrupt
      em1: Ethernet address: 00:15:17:f1:72:f1
      em1: netmap queues/slots: TX 1/1024, RX 1/1024
      

      I'm wondering if it's a tweakable or something I need to adjust in the advanced settings? Some table or memory that is running out ??

      This is running on an hp thinclient, 8gb of RAM ...

      Thanks for the help,
      wangel

      dragoangelD 1 Reply Last reply Reply Quote 0
      • dragoangelD
        dragoangel
        last edited by

        Ping would return "Permission Denied"
        I know how help you. Lol

        Latest stable pfSense on 2x XG-7100 and 1x Intel Xeon Server, running mutiWAN, he.net IPv6, pfBlockerNG-devel, HAProxy-devel, Syslog-ng, Zabbix-agent, OpenVPN, IPsec site-to-site, DNS-over-TLS...
        Unifi AP-AC-LR with EAP RADIUS, US-24

        1 Reply Last reply Reply Quote 0
        • dragoangelD
          dragoangel @wangel
          last edited by dragoangel

          @wangel Answer simplest question:
          Did you use 8.8.8..8 as monitoring IP for WAN?
          If answer is: "YES", then: change it. Google ban icmp from time to time. I have such experience before. You can use 1.1.1.1, at least I don't have issue until with it. If you use tunnel broker you can ping your tunnel endpoint (good practice too)

          Latest stable pfSense on 2x XG-7100 and 1x Intel Xeon Server, running mutiWAN, he.net IPv6, pfBlockerNG-devel, HAProxy-devel, Syslog-ng, Zabbix-agent, OpenVPN, IPsec site-to-site, DNS-over-TLS...
          Unifi AP-AC-LR with EAP RADIUS, US-24

          W 1 Reply Last reply Reply Quote 0
          • W
            wangel @dragoangel
            last edited by

            @dragoangel
            Thanks for that info ... but I tried pinging other ips too. I tried 1 I know I can always ping, 192.107.41.3.

            I also tried 8.8.4.4.

            The entire Internet drops out --- not just pinging google =(

            Thanks,
            wangel

            dragoangelD 1 Reply Last reply Reply Quote 0
            • dragoangelD
              dragoangel @wangel
              last edited by dragoangel

              @wangel Really strange that only reboot help. You tried reboot modem and not pfsense?

              Latest stable pfSense on 2x XG-7100 and 1x Intel Xeon Server, running mutiWAN, he.net IPv6, pfBlockerNG-devel, HAProxy-devel, Syslog-ng, Zabbix-agent, OpenVPN, IPsec site-to-site, DNS-over-TLS...
              Unifi AP-AC-LR with EAP RADIUS, US-24

              W 1 Reply Last reply Reply Quote 0
              • W
                wangel @dragoangel
                last edited by

                @dragoangel
                Yes sir --- rebooting the modem does no good, I can't get a DHCP address =(

                dragoangelD 1 Reply Last reply Reply Quote 0
                • dragoangelD
                  dragoangel @wangel
                  last edited by dragoangel

                  @wangel said in pfSense drops Internet ?:

                  @dragoangel
                  Yes sir --- rebooting the modem does no good, I can't get a DHCP address =(

                  If you connect pc straight to modem this not reproduce?
                  P.s. hate modems))

                  Latest stable pfSense on 2x XG-7100 and 1x Intel Xeon Server, running mutiWAN, he.net IPv6, pfBlockerNG-devel, HAProxy-devel, Syslog-ng, Zabbix-agent, OpenVPN, IPsec site-to-site, DNS-over-TLS...
                  Unifi AP-AC-LR with EAP RADIUS, US-24

                  W 1 Reply Last reply Reply Quote 0
                  • W
                    wangel @dragoangel
                    last edited by

                    @dragoangel
                    Correct, if I connect PC straight to modem it works.

                    B 1 Reply Last reply Reply Quote 0
                    • B
                      biggsy @wangel
                      last edited by biggsy

                      @wangel said in pfSense drops Internet ?:

                      Correct, if I connect PC straight to modem it works.

                      Have you tried spoofing the MAC address of your PC under Interfaces > WAN > General > MAC Address?

                      W 1 Reply Last reply Reply Quote 0
                      • RicoR
                        Rico LAYER 8 Rebel Alliance
                        last edited by

                        What is your ISP and modem?

                        -Rico

                        W 1 Reply Last reply Reply Quote 0
                        • kiokomanK
                          kiokoman LAYER 8
                          last edited by

                          and if i can ask.. do you have suricata/snort running inline mode?

                          ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
                          Please do not use chat/PM to ask for help
                          we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
                          Don't forget to Upvote with the 👍 button for any post you find to be helpful.

                          W 1 Reply Last reply Reply Quote 0
                          • W
                            wangel @kiokoman
                            last edited by

                            @kiokoman Suricata is running, but it is running in Legacy mode.

                            I thought it might have something to do with Suricata also.... but I didn't see anything in the logs showing that....

                            1 Reply Last reply Reply Quote 0
                            • W
                              wangel @Rico
                              last edited by

                              @Rico ISP is Spectrum ... modem is a Surfboard 6183 or 6180, I forget which. But it's a Surfboard.

                              1 Reply Last reply Reply Quote 0
                              • W
                                wangel @biggsy
                                last edited by

                                @biggsy
                                No, I have not tried that. I can just to see what would happen tho, heh.

                                1 Reply Last reply Reply Quote 0
                                • chpalmerC
                                  chpalmer
                                  last edited by chpalmer

                                  @wangel said in pfSense drops Internet ?:

                                  Can you please show a screenshot of this page- SystemRoutingGatewaysEdit

                                  Triggering snowflakes one by one..
                                  Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                                  W 1 Reply Last reply Reply Quote 0
                                  • W
                                    wangel @chpalmer
                                    last edited by

                                    @chpalmer GW1.PNG

                                    gw2.PNG

                                    gw3.PNG

                                    1 Reply Last reply Reply Quote 0
                                    • chpalmerC
                                      chpalmer
                                      last edited by

                                      Try clicking the "Disable Gateway Monitoring Action" box and see if it reoccurs. Re-enable the gateway monitoring.

                                      You should let the monitoring happen so you can look and see later if your ISP is dropping out or not by watching the logging graphs. StatusMonitoring

                                      Triggering snowflakes one by one..
                                      Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                                      W 1 Reply Last reply Reply Quote 0
                                      • W
                                        wangel @chpalmer
                                        last edited by

                                        @chpalmer Done.

                                        Will monitor/report back if it happens anymore. Thank you sir!

                                        1 Reply Last reply Reply Quote 0
                                        • A
                                          ady2
                                          last edited by

                                          I have similar issue (Internet stop working on all interfaces) described here: https://forum.netgate.com/topic/143661/one-interface-loses-internet-access-and-i-could-get-it-back-only-after-reboot-the-pfsense
                                          but still no solution found

                                          GertjanG 1 Reply Last reply Reply Quote 0
                                          • GertjanG
                                            Gertjan @ady2
                                            last edited by Gertjan

                                            @ady2 said in pfSense drops Internet ?:

                                            I have similar issue

                                            Probably not.
                                            @wangel didn't post back, so, fingers crossed : case closed.
                                            The other thread is also a case closed.

                                            Btw : problems described might match, and if so the answers in these threads contain the solutions.
                                            If your problem is identical, the proposed solutions would also work for you.
                                            So, what is it : the problem looks identical, but you did not apply proposed solution ? Why not ?

                                            No "help me" PM's please. Use the forum, the community will thank you.
                                            Edit : and where are the logs ??

                                            kiokomanK 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.