Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Gateway Offline, packetloss

    Scheduled Pinned Locked Moved Routing and Multi WAN
    8 Posts 3 Posters 948 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nikim
      last edited by

      Hi,

      I got a secondary pfSense which is showing gateway, offline packetloss. If I try and ping from this fw to internet f.ex 8.8.8.8 I do got a response. I have upgraded the cluster recently and since that it started to show this. Anyone any idea why this might be happening?

      BR

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @nikim
        last edited by

        @nikim
        The gateway monitoring (dpinger) is pinging either the gateway IP or the monitoring IP, which you state in the gateway settings.
        System > Routing > Gateways

        Probably this IP is not replying for whatever reason.

        Do you use the same monitoring IP as on the primary?

        N 1 Reply Last reply Reply Quote 0
        • N
          nikim @viragomann
          last edited by

          @viragomann actually if I try to ping the gateway I do get a reply. It just on the gui that shows offline and packetloss. I am starting to think that it might be a bug or something!?

          P 1 Reply Last reply Reply Quote 0
          • P
            ptyork @nikim
            last edited by

            @nikim Not 100% same for me, but I'm getting packet loss on only one of my 2 WAN connections. Might be different and I'll post a separate Q if so, but by chance is your ISP Xfinity?

            If not, I'm wondering whether it has something to do with the automatic static routing setup. Very odd since it works fine for the other ISP (WOW), but no matter what IP I attempt to monitor on the Xfinity gateway, it eventually reports 100% packet loss.

            N 1 Reply Last reply Reply Quote 0
            • N
              nikim @ptyork
              last edited by

              @ptyork No it is not Xfinity, it is another ISP. I dont think my problem is related to ISP. I have very little experience with pfSense and I dont know if this is something normal. I have two pfSense in a HA cluster and they have the same gateway. It only shows on the secondary that the gateway is offline and 100% packetloss but when I ping that same gateway from the secondary via Diagnostics -> Ping, I do get a reply from the gateway.

              V 1 Reply Last reply Reply Quote 0
              • V
                viragomann @nikim
                last edited by

                @nikim
                Again, the "Gateway offline" status is simply determine by pinging the gateway or the stated monitoring IP.
                So presumably you don't get a response from it for whatever reason. I cannot investigate this for you.

                But if another public IP is responding to pings from the secondary, simply set it as monitoring IP in the gateway settings as mentioned above already.

                N 1 Reply Last reply Reply Quote 0
                • N
                  nikim @viragomann
                  last edited by nikim

                  @viragomann thanks for the answer.

                  These two picture below are from the same pfSense:

                  a38f8d0c-ca05-40bd-9513-2654f625b0e0-image.png

                  2f813d8d-6b42-4e86-9ac1-e86f0bf272f8-image.png

                  This is what is making me confused! To ping the gateway from the fw is not a problem but the firewall is showing anyway that this is a problem. I just need to know if pinging from the device is different than the gateway showing as offline or is it the same operation?

                  V 1 Reply Last reply Reply Quote 0
                  • V
                    viragomann @nikim
                    last edited by

                    @nikim
                    Did you by any change nat the outbound of pfSense to the CARP VIP?
                    Show the outbound NAT rules please, if unsure.

                    Did you state an alternative monitoring IP?

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.