Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    TFTP for PXE - answer from TFTP Server is blocked

    Scheduled Pinned Locked Moved Firewalling
    1 Posts 1 Posters 140 Views 1 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R Offline
      Rooney
      last edited by

      Hi,
      here is a short explanation of my setup. I am booting a set of machines within a LAN with PXE. PXE uses TFTP to fetch the OS.
      The machines and the Server are seperated by a pfSense firewall:
      [Machine 1...n] <----> FIREWALL <----> Server

      The Server is responsible for DHCP and is also the TFTP Server for PXE (https://fogproject.org/).
      There is no NAT in between. The Firewall is configured to be a Bridge.

      What works:
      DHCP. The Machines are getting IP addresses from the DHCP Server.
      TFTP Request from Client to Server.

      What does not work:
      TFTP Response from server is blocked by Firewall.

      Firewall Rules:
      DHCP Ports are opened.
      TFTP (69) is opened on the Machines side.

      For my understanding, the pfSense is a stateful firewall. So it should see the TFTP requests from the machines and automatically allow the response from the Server.
      Why is the response from the server blocked by the default deny rule?

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.