• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Apple devices intermittently drop connection and cannot find DHCP server.

Scheduled Pinned Locked Moved DHCP and DNS
applemaciosdhcp not found
12 Posts 7 Posters 1.9k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A
    Alex 5
    last edited by Jul 30, 2021, 7:26 AM

    Hello everyone

    I have recently installed a Netgate Sg3100 firewall into my network.
    I have 10 Ruckus R650 APs and 2x Ruckus icx1750 switches.
    There are no VLANS on the network.
    DNS Servers are:
    127.0.0.1
    208.67.222.222
    8.8.8.8
    and DNS server override is unchecked.

    The behaviour:
    Macbooks, Iphones and iPads intermittently drop connection, and show that they cannot find the DHCP server (have a self assigned 169.254.x.x address). Turning the wifi on and off again fixes the issue and the device immediately get an IP in the lease range.
    Only on wireless devices, have not seen this happen on wired IMAC

    What I have done so far:
    I have statically assigned IPs for some offending devices, has not helped
    I have disabled IPV6 on some offending MacBooks, has not helped

    Other comments:
    I have noticed in the general system logs that this has been coming up almost constantly;
    arpresolve: can't allocate llinfo for <IP> on mvneta2

    I changed the WAN DHCP advanced timing settings from Saved CFG to FreeBSD , which seems to have stopped this log coming up. Not sure if this is related to the issue of devices dropping off as described above.

    I can also see in the DHCP logs that pf sense is creating a new resolv.conf file and RENEW approximately every 2 minutes.

    I also live in Australia and have an Optus NBN Hybrid Fibre Coaxial connection, which may need a PPOE config, I have done some research and I am still unsure if this is the case. Given that our internet access has been fine I would think that it is not required, but may be wrong.

    I have looked through many forums and have not found a definitive answer to the issue, so any input is appreciated.

    G S J 3 Replies Last reply Jul 30, 2021, 7:46 AM Reply Quote 0
    • G
      Gertjan @Alex 5
      last edited by Jul 30, 2021, 7:46 AM

      With this phrase :

      @alex-5 said in Apple devices intermittently drop connection and cannot find DHCP server.:

      I have statically assigned IPs for some offending devices, has not helped

      you have some what eliminated a DHCP issue.

      There is a second way to check that DHCP isn't the issue :
      Connect a wired device to pfSense, login, an look at the DHCP logs.

      Now, connect a wireless device.
      Do you see DHCP requests coming in from that device ? You shiuld see it's MAC address, and some DHCP negotiation.

      If it isn't there : you have a solid proof the traffic from that device doesn't reach pfSense.

      So, change cables, switches and/or access points.

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      A 1 Reply Last reply Jul 30, 2021, 10:08 AM Reply Quote 0
      • A
        Alex 5 @Gertjan
        last edited by Jul 30, 2021, 10:08 AM

        @gertjan Yes, I can see a request and a packet sent to devices on both Wired and wireless connection.

        If there is some kind of interference, I presume that that could cause the device to lose connection, (not actually disconnect from the AP / wifi) and then may be unable to communicate to the DHCP server.

        Is that you you think is likely happening? Are there any settings on my Ruckus devices that I could change to mitigate this?

        M 1 Reply Last reply Jul 30, 2021, 11:38 AM Reply Quote 0
        • M
          mr.rosh @Alex 5
          last edited by Jul 30, 2021, 11:38 AM

          is fast roaming enabled on AP's

          A 1 Reply Last reply Jul 30, 2021, 11:54 PM Reply Quote 0
          • B
            bcruze
            last edited by Jul 30, 2021, 12:19 PM

            if you can't ping the gateway address (which is what it is trying to find)

            i don't see how this is a Pfsense or firewall issue. this sounds like a configuration issue with the wireless access points

            1 Reply Last reply Reply Quote 1
            • S
              SteveITS Galactic Empire @Alex 5
              last edited by Jul 30, 2021, 3:29 PM

              @alex-5 What wireless APs are you using? This sounds similar to what I ran into with my eero system at home after iOS 14.5. If WPA3 is enabled in the eero settings, the iOS devices can't connect when they would switch APs. eero says it has to do with how iOS is handling private MACs. Disabling WPA3 fixes it, otherwise the workaround I found was to toggle the private MAC setting on the device (either to off or on). IOW it seems like the eero blocks the MAC for a bit and switching MACs fixes it for a while.

              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
              Upvote 👍 helpful posts!

              A 1 Reply Last reply Jul 30, 2021, 11:57 PM Reply Quote 0
              • J
                JKnott @Alex 5
                last edited by Jul 30, 2021, 4:24 PM

                @alex-5 said in Apple devices intermittently drop connection and cannot find DHCP server.:

                127.0.0.1

                That implies there's a DNS server on whatever device that is. Is there?

                PfSense running on Qotom mini PC
                i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                UniFi AC-Lite access point

                I haven't lost my mind. It's around here...somewhere...

                1 Reply Last reply Reply Quote 0
                • A
                  Alex 5 @mr.rosh
                  last edited by Jul 30, 2021, 11:54 PM

                  @mr-rosh No, I disabled 802.11.r FT roaming and 11.k neighbour list report as some devices could not join with those enabled.

                  1 Reply Last reply Reply Quote 0
                  • A
                    Alex 5 @SteveITS
                    last edited by Jul 30, 2021, 11:57 PM

                    @steveits I am running Ruckus R650s, and unfortunately am using WPA2. I have turned off private Mac address on my iPhone, so will see if this makes any improvement. Thanks you @SteveITS

                    A 1 Reply Last reply Mar 15, 2023, 11:24 AM Reply Quote 0
                    • A
                      alexm2019 @Alex 5
                      last edited by Mar 15, 2023, 11:24 AM

                      @alex-5
                      Apologies for the old thread revival. What you describe matches my issue almost exactly. Did you ever find a good solution?

                      A 1 Reply Last reply Mar 15, 2023, 10:05 PM Reply Quote 0
                      • A
                        Alex 5 @alexm2019
                        last edited by Mar 15, 2023, 10:05 PM

                        @alexm2019
                        Hi
                        In the end it was because my switch was not delivering enough power to the APs, even though it was technically possible.
                        The R650s draw a lot of power, so I ended up installing dedicated poe injectors. Disabling the 5 Ghz radio also works, but obviously not ideal.

                        A 1 Reply Last reply Mar 15, 2023, 10:59 PM Reply Quote 0
                        • A
                          alexm2019 @Alex 5
                          last edited by Mar 15, 2023, 10:59 PM

                          @alex-5
                          Thanks. That’s got to be the only thing I haven’t tried yet. Separate poe unit ordered and on the way.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                            This community forum collects and processes your personal information.
                            consent.not_received