• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

[Solved] DHCP Denied

Scheduled Pinned Locked Moved General pfSense Questions
dhcp
10 Posts 4 Posters 1.2k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A
    AndyRH
    last edited by AndyRH Nov 13, 2021, 2:34 AM Nov 12, 2021, 2:06 AM

    I am not sure what would cause 1 system to have this error and another one on the same port to work. I cannot find any differences between the DHCP settings on the other VLAN that it works on. It does link and the client is an Intel 2.5Gb NIC, but it is successfully linking at 1 Gb.
    The FW is an XG-7100 running 21.05.1-RELEASE (amd64)

    Any ideas where to look?

    Backstory, this NIC does not like my switch and frequently will not link so I moved it to an unused port on the FW to see if it would work better there. I may have been wrong...

    dhcp Denied.JPG

    o||||o
    7100-1u

    J 1 Reply Last reply Nov 12, 2021, 2:57 AM Reply Quote 0
    • J
      johnpoz LAYER 8 Global Moderator @AndyRH
      last edited by Nov 12, 2021, 2:57 AM

      @andyrh if you have dhcp enable - there is hidden rule to allow dhcp.. Such a block by default deny should not be possible. Unless dhcp is not enabled on that interface.

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

      1 Reply Last reply Reply Quote 0
      • A
        AndyRH
        last edited by Nov 12, 2021, 2:17 PM

        DHCP is enabled and does work for another system. There is not a switch connected to that FW port, but I do not see that causing the problem.
        Normally there are no clients using the port.

        There are few rules on the port.
        Kind of a head scratcher.

        LANDHCP.JPG

        lanrules.JPG

        o||||o
        7100-1u

        S 1 Reply Last reply Nov 12, 2021, 3:38 PM Reply Quote 0
        • S
          SteveITS Galactic Empire @AndyRH
          last edited by Nov 12, 2021, 3:38 PM

          @andyrh Your post shows DHCP on LAN but your OP shows lagg0.4091?

          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
          Upvote 👍 helpful posts!

          J 1 Reply Last reply Nov 12, 2021, 3:41 PM Reply Quote 0
          • J
            johnpoz LAYER 8 Global Moderator @SteveITS
            last edited by Nov 12, 2021, 3:41 PM

            @steveits yup good catch - prob has vlan setup with tags, and non tagged traffic hitting the bare interface.. Which yeah would be blocked by default rule because the dhcp rules would be added to the lan, with tag? etc..

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

            1 Reply Last reply Reply Quote 0
            • A
              AndyRH
              last edited by Nov 12, 2021, 3:49 PM

              I am not understanding what you are telling me.
              The client is untagged. The interface is the default LAN interface.
              Where am I missing what you have found?

              o||||o
              7100-1u

              S 1 Reply Last reply Nov 12, 2021, 3:55 PM Reply Quote 0
              • S
                SteveITS Galactic Empire @AndyRH
                last edited by Nov 12, 2021, 3:55 PM

                @andyrh This is not the LAN interface:
                3975812b-bd41-48ac-af82-bef35b586745-image.png

                Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                Upvote 👍 helpful posts!

                1 Reply Last reply Reply Quote 0
                • A
                  AndyRH
                  last edited by Nov 12, 2021, 4:31 PM

                  Ok, I think I fixed it. I cannot test right now. Does this look right?

                  Switch vlans.JPG

                  o||||o
                  7100-1u

                  1 Reply Last reply Reply Quote 0
                  • S
                    stephenw10 Netgate Administrator
                    last edited by Nov 12, 2021, 5:30 PM

                    Yes, if the LAN is assigned as lagg0.129.

                    Steve

                    1 Reply Last reply Reply Quote 0
                    • A
                      AndyRH
                      last edited by Nov 13, 2021, 2:33 AM

                      That was most of the problem. I also had to change the VID of each port on the switch and it worked after that.

                      Thank you for the help.

                      o||||o
                      7100-1u

                      1 Reply Last reply Reply Quote 1
                      10 out of 10
                      • First post
                        10/10
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                        This community forum collects and processes your personal information.
                        consent.not_received