Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unable to ping google.com but successfully ping 8.8.8.8

    DHCP and DNS
    4
    18
    2.4k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ?
      A Former User @apal00
      last edited by A Former User

      @apal00 and your gateway?

      firewall rules wan and lan ?

      post screenshot please!

      A 1 Reply Last reply Reply Quote 0
      • A
        apal00 @A Former User
        last edited by

        @silence pfsense252GatewayCapture.PNG pfsense252GatewayLogsCapture.PNG pfsense252firewallruleswan.PNG pfsense252FirewallRuleLanCapture.PNG pfsense252FirewallRuleFloatingCapture.PNG pfsenseFirewallNATOutboundCapture.PNG pfsense252InterfacesWANCapture.PNG pfsense252InterfacesLanCapture.PNG pfsense252GeneralSetupCapture.PNG

        ? 2 Replies Last reply Reply Quote 0
        • V
          viragomann @apal00
          last edited by

          @apal00 said in Unable to ping google.com but successfully ping 8.8.8.8:

          Diagnostics DNS Lookup
          Host "google.com" could not be resolved.
          DNS Lookup
          Hostname
          google.com
          Timings
          Name server Query time
          127.0.0.1 0 msec
          192.168.10.1 No response

          So pfSense gets no response from the stated DNS server 192.168.10.1.

          The reason won't be on pfSesne. Ensure that the server is responding or set another one in System > General Setup.
          If you want to use another, remove the check at "DNS Server Override".

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @viragomann
            last edited by

            @viragomann said in Unable to ping google.com but successfully ping 8.8.8.8:

            set another one in System > General Setup.

            While sure he should get a response from there - out of the box pfsense would resolve, and that server doesnt' matter.

            I would say his wan going offline and not the sendto errors to his pfsense gateway 192.168.10.1 would be more of a clue that his connection isn't even working.

            Its quite possible his upstream router doesn't allow for dns to roots, etc. maybe it is doing dns interception?

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

            V 1 Reply Last reply Reply Quote 0
            • V
              viragomann @johnpoz
              last edited by

              @johnpoz
              Agree. But it's also thinkable that he is running a DNS forwarder, so DNS requests from behind are going to his router.
              I would expect, that he would talking notice if his WAN is going offline.

              johnpozJ 1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator @viragomann
                last edited by johnpoz

                @viragomann said in Unable to ping google.com but successfully ping 8.8.8.8:

                that he would talking notice if his WAN is going offline.

                You would think ;) But he made no mention of it other than posting it.. That was just the latest log interies. Nor did he make any mention of changing the default unbound.

                Ya know something like I changed my unbound to forward, and its not working ;)

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                1 Reply Last reply Reply Quote 0
                • ?
                  A Former User @apal00
                  last edited by A Former User

                  @apal00 change monitor IP TO 8.8.8.8

                  5a4b7617-1026-40ab-866b-f1dbc7a513de-image.png

                  Disable Ipv6

                  7a83ef8e-fe20-4a2c-8448-7cb01d1c0579-image.png

                  Allow_All_IN WAN

                  Add Rules = Allow * * * * *

                  9472aae4-0ba5-43be-b6e7-bc75a03d6440-image.png

                  1 Reply Last reply Reply Quote 0
                  • ?
                    A Former User @apal00
                    last edited by

                    @apal00 IN DNS SERVER = 8.8.8.8

                    0409a68f-98b8-4322-9f0d-4d2b6ac83425-image.png

                    Try Again !

                    A 1 Reply Last reply Reply Quote 0
                    • A
                      apal00 @A Former User
                      last edited by

                      @silence issue remains after those changes.
                      @viragomann - i've unchecked the DNS Server Override with DNS server set as 8.8.8.8 but no success
                      @johnpoz @viragomann - I did notice that error of sendto 65 error and those are right after the installation. Reason I've ignored those is that I am able to ping 8.8.8.8, 1.1.1.1, 192.168.10.1 and other machines on 192.168.10.1 network. All nslookup requests are failing.
                      I've also noticed that the date & time in log files seem to be incorrect. I believe it is because of the DNS resolution issue again. pfsense is not able to synchronize the clock using ntp service in the general setup
                      pfsenseAfterChg02022022DNSLkup8888Capture.PNG pfsenseAfterChgDNSLkupGooglecomCapture.PNG pfsense252AfterchgAfterReboot02022022Dash.PNG pfsense252FirewallFloatingCapture.PNG pfsense252dnsresolverCapture.PNG pfsense252dnsgatewaynslkupCapture.PNG

                      johnpozJ 1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator @apal00
                        last edited by johnpoz

                        @apal00 so your forwarding to your upstream router and googledns. But then you asked for 192.168.10.1

                        Try and resolve something like www.google.com or www.cnn.com etc.

                        if those does not resolve when your forwarding - then you have serious issue upstream, etc.

                        BTW having dnssec enabled while forwarding doesn't make a lot of sense, where you forward either does dnssec or it doesn't having that enabled does really nothing. It shouldn't cause you failure to resolve something like www.google.com, but its not a good setting when forwarding.

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                        A 1 Reply Last reply Reply Quote 0
                        • A
                          apal00 @johnpoz
                          last edited by

                          @johnpoz
                          @viragomann
                          @Silence

                          Thank you so much for your support. I am able to resolve this issue. Root cause seems to be related to Intel i225v Intel 2.5G Nic. It seems there is an issue most likely in FreeBSD version used by pfsense 2.5.2. It is not fully supporting this nic card.

                          Steps to resolve this issue:
                          System-->Advanced -->Networking
                          Network Interfaces
                          Hardware Checksum Offloading - I had to check this box. Checking this is to disable hardware checksum offload.

                          Thank you once again,

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.