Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Access internal devices from pfsense

    Scheduled Pinned Locked Moved Firewalling
    8 Posts 5 Posters 500 Views 5 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E Offline
      emad4
      last edited by

      Hello everyone
      How to access Cisco devices from pfsense , I can access pfsense remotely via http (portforwading) but after accessing it , I want to access the next device which a Cisco router from pfsense but I cannot.
      Before I replace Cisco router (edge router) with pfsense , I could do that easily but now I can access pfsense router remotle as mentioned above but to access the next devices , I failed .
      Also , could anyone show me the steps to make telnet or ssh from pfsense using the web guide.
      Any assistance please

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ Offline
        JKnott @emad4
        last edited by

        @emad4

        There are 2 things to consider, routing and rules. You say you want to access the Cisco router. Do you mean just the WAN interface? Or a LAN behind it?

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        E 1 Reply Last reply Reply Quote 0
        • E Offline
          emad4 @JKnott
          last edited by

          @JKnott
          Thank you for reply
          Yes I mean the lan behind it , I can access the Wan interface of pfsense remotely but after this step , I want to access other Cisco router and switch behind it
          Note : I am using the command prompt from diagnostic (I don't know if that is right or not)

          JKnottJ S 2 Replies Last reply Reply Quote 0
          • JKnottJ Offline
            JKnott @emad4
            last edited by

            @emad4

            Since pfSense doesn't know what's behind that Cisco router, you have to provide a route.

            I use ssh to reach pfSense and use the command line there. Works much better than using the diagnostic one. PfSense supports ssh out of the box. However, you also need a ssh client. Linux has one built in, but you need to install something like putty on Windows.

            I just use the command ssh root@firewall to connect to pfSense. Firewall is the host name for my pfSense system. I am then asked for the password.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            johnpozJ 1 Reply Last reply Reply Quote 0
            • S Offline
              SteveITS Rebel Alliance @emad4
              last edited by

              @emad4 see example https://docs.netgate.com/pfsense/en/latest/routing/static.html#example-static-route

              Just above that on the page is how to add routes in the web GUI.

              Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
              Upvote 👍 helpful posts!

              1 Reply Last reply Reply Quote 0
              • johnpozJ Offline
                johnpoz LAYER 8 Global Moderator @JKnott
                last edited by johnpoz

                @JKnott said in Access internal devices from pfsense:

                install something like putty on Windows

                Windows has built in ssh now.. Before you had to enable it, but I think like back in 2018 they enabled it by default. I personally don't use it - I use securecrt, or just the openvpn version from mls

                https://www.mls-software.com/opensshd.html

                But there is an official ssh client from windows now.

                https://learn.microsoft.com/en-us/windows/terminal/tutorials/ssh

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 25.07.1 | Lab VMs 2.8, 25.07.1

                R 1 Reply Last reply Reply Quote 0
                • R Offline
                  rcoleman-netgate Netgate @johnpoz
                  last edited by rcoleman-netgate

                  @johnpoz said in Access internal devices from pfsense:

                  install something like putty on Windows

                  Windows has built in ssh now.. Before you had to enable it, but I think like back in 2018 they enabled it by default. I personally don't use it - I use securecrt, or just the openvpn version from mls

                  Just because it is there doesn't mean it's quality.

                  Ryan
                  Repeat, after me: MESH IS THE DEVIL! MESH IS THE DEVIL!
                  Requesting firmware for your Netgate device? https://go.netgate.com
                  Switching: Mikrotik, Netgear, Extreme
                  Wireless: Aruba, Ubiquiti

                  johnpozJ 1 Reply Last reply Reply Quote 0
                  • johnpozJ Offline
                    johnpoz LAYER 8 Global Moderator @rcoleman-netgate
                    last edited by

                    @rcoleman-netgate said in Access internal devices from pfsense:

                    Just because it is there doesn't mean it's quality.

                    hahah - it is based off openssh, I have used it, it works - just use to securecrt.. But that statement is quite often very true ;)

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 25.07.1 | Lab VMs 2.8, 25.07.1

                    1 Reply Last reply Reply Quote 1
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.