<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Can&#x27;t access internet on vlan connection (Think its a dns issue)]]></title><description><![CDATA[<p dir="auto">Hello everyone, I am new to pfsense and I am having an issue connecting to the internet via a vlan.  I’m  sure this has been asked a thousand times but please bear with me.  I set up my vlan using a tutorial by Lawrence Systems (<a href="https://youtu.be/5ohLAFHnOHg" target="_blank" rel="noopener noreferrer nofollow ugc">link text</a>) because my switch is a tplink and has the same ui.  I think it is a dns problem because when I am connected to the vlan through a straight ethernet cable, I am able to ping 8.8.8.8 but not www.google.com.  I can ping www.google.com in the diagnostic/ping in pfsense using the vlan interface but not when I am connected to the vlan through my laptop.</p>
<p dir="auto">I googled around a searched these forums for a little bit but no help so far.  I decided to post for help while I continue to search.</p>
<p dir="auto">•	Tried setting DNS manually under DHCP server but nothing<br />
•	Tried tips from this site, besides the packet capture and nothing <a href="https://www.virtualizationhowto.com/2023/04/pfsense-vlan-cannot-access-internet-a-troubleshooting-guide/#h-understanding-vlans-and-pfsense" target="_blank" rel="noopener noreferrer nofollow ugc">link text</a><br />
•	I tried disabling pfngblocker because I thought it was that but nothing</p>
<p dir="auto">Here is a screenshot of my firewall rules and a break down of my network.  I left everything open in my rules for now to see if I can get everything working.  In my switch, I have port 16 as tagged since that is connected to pfsense box, port 4 untagged I have hard wired to my laptop, and ports 6 and 8 are tagged cause that is where my to access points are connected to.</p>
<p dir="auto"><img src="/assets/uploads/files/1686187013633-homevlan.png" alt="homevlan.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1686187044698-9.png" alt="9.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1686187057303-10.png" alt="10.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1686187069947-network-diagram.jpg" alt="Network Diagram.jpg" class=" img-fluid img-markdown" /></p>
<p dir="auto">Thanks for the help and any tips on my vlan setup will be appreciated</p>
]]></description><link>https://forum.netgate.com/topic/180697/can-t-access-internet-on-vlan-connection-think-its-a-dns-issue</link><generator>RSS for Node</generator><lastBuildDate>Sun, 14 Jun 2026 19:13:37 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/180697.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 08 Jun 2023 01:18:38 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Can&#x27;t access internet on vlan connection (Think its a dns issue) on Thu, 08 Jun 2023 17:59:13 GMT]]></title><description><![CDATA[<p dir="auto">I disabled the ipv6 rules below and I was still able to connect online.  Enabled vlan on my APs and was able to connect online.  At first while wired, I couldn't ping www.google.com while connected to vlan, but I could ping it when connected wifi on the vlan.  After connecting back to wired and on vlan, I can now ping www.google.com.  Wierd but I'm not complaining, it is working.  Not sure what happened but something happened.</p>
<p dir="auto">Again I want to say thanks for the help Steve</p>
]]></description><link>https://forum.netgate.com/post/1109627</link><guid isPermaLink="true">https://forum.netgate.com/post/1109627</guid><dc:creator><![CDATA[swalker23]]></dc:creator><pubDate>Thu, 08 Jun 2023 17:59:13 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t access internet on vlan connection (Think its a dns issue) on Thu, 08 Jun 2023 16:51:02 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/steveits">@<bdi>SteveITS</bdi></a><br />
I do remember seeing ipv6 addresses being blocked when I was testing the pings while watching the firewall logs.  I add some ipv6 rules and tried pinging and nslookup with the same results.  Can ping 8.8.8.8 but can't ping www.google.com.  Strange enough, I forgot to switch back to my main lan and refresh/renew my ip, and saw that I was able to search the web in my browser.  Go figure.  I'm not %100 sure if adding the ipv6 rules solved the issue but I'll check that and see if my access points will let me surf web a little later after lunch.  The relief of frustration made me hungry.  I'll mark solved after final testing.  How do I mark solve on this forum, just add it to the title manually?</p>
<p dir="auto">Thanks for the help</p>
<p dir="auto">Image of added ipv6 rules<br />
<img src="/assets/uploads/files/1686242867371-vlanrules.png" alt="vlanrules.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/1109611</link><guid isPermaLink="true">https://forum.netgate.com/post/1109611</guid><dc:creator><![CDATA[swalker23]]></dc:creator><pubDate>Thu, 08 Jun 2023 16:51:02 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t access internet on vlan connection (Think its a dns issue) on Thu, 08 Jun 2023 16:16:06 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/swalker23">@<bdi>swalker23</bdi></a> Per the second screen cap DNS is working on the VLAN since you got an answer.  The "server: unknown" is trying to look up the IP of the server, x.10.1 and failing.  That's not a problem in terms of DNS working.  Not sure offhand but pfSense is probably just not matching up that IP with its name for some reason.</p>
<p dir="auto">Your second rule on HOMEVLAN allows all IPv4 traffic but at the time of the screen cap has 0 bytes so hasn't been used.  Any chance you're trying to connect out using IPv6?</p>
]]></description><link>https://forum.netgate.com/post/1109605</link><guid isPermaLink="true">https://forum.netgate.com/post/1109605</guid><dc:creator><![CDATA[SteveITS]]></dc:creator><pubDate>Thu, 08 Jun 2023 16:16:06 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t access internet on vlan connection (Think its a dns issue) on Thu, 08 Jun 2023 15:04:04 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/steveits">@<bdi>SteveITS</bdi></a></p>
<p dir="auto">Thanks for the reply<br />
DNS is set to all.  I will attach a photo to make sure we are on the same page with that.  I tried checking the box DNS Query Forwarding, since I remember saying that was a solution for them but they were using DNS forwarding but checking the box didnt work.  Tried nslook with and without vlan and it shows that with the vlan I have no dns server but without being connected to vlan, I get that my pfsense.home.arpa is my dns as shown in screenshots below.</p>
<p dir="auto"><img src="/assets/uploads/files/1686236382832-dnsresolver.png" alt="dnsresolver.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">Without vlan<br />
<img src="/assets/uploads/files/1686236408740-nslookup.main.png" alt="nslookup.main.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">With vlan<br />
<img src="/assets/uploads/files/1686236422484-nslookup.vlan.png" alt="nslookup.vlan.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/1109577</link><guid isPermaLink="true">https://forum.netgate.com/post/1109577</guid><dc:creator><![CDATA[swalker23]]></dc:creator><pubDate>Thu, 08 Jun 2023 15:04:04 GMT</pubDate></item><item><title><![CDATA[Reply to Can&#x27;t access internet on vlan connection (Think its a dns issue) on Thu, 08 Jun 2023 02:09:10 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/swalker23">@<bdi>swalker23</bdi></a> Your firewall rule shows 45 KiB so is matching packets. Is DNS set to listen on All interfaces?  Try:</p>
<p dir="auto">nslookup google.com HOMEVLAN_address</p>
<p dir="auto">…from the computer.</p>
]]></description><link>https://forum.netgate.com/post/1109483</link><guid isPermaLink="true">https://forum.netgate.com/post/1109483</guid><dc:creator><![CDATA[SteveITS]]></dc:creator><pubDate>Thu, 08 Jun 2023 02:09:10 GMT</pubDate></item></channel></rss>