<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Old, stable pfSense install - LAN port goes offline]]></title><description><![CDATA[<p dir="auto">I have a stable pfSense install, active and dependable for years. I recently started hosting a Nextcloud AIO server (v.30.0.2). Now, when I start the nextcloud client, the firewall LAN port stops responding. I have to reboot (not just reroot) the firewall before the LAN port starts responding again. I'm fairly experienced and skilled, but haven't seen something like this. I'm seeking advice on how to troubleshoot.</p>
<p dir="auto">pfSense 2.7.2<br />
Running on an older sff pc (ECS Computing Liva Z / celeron N3350 2 core / 8 GB RAM / dual realtek RTL8168 Gigabit LAN</p>
<p dir="auto">Starting the Nextcloud client reliably disrupts communications within ~10s. After comms are disrupted, only a full reboot restores comms (vs. connecting a lone Ubuntu machine directly to the LAN port, reroot). The MAC properly reports LINK UP, but no traffic flows - no DHCP address assignment.</p>
]]></description><link>https://forum.netgate.com/topic/195903/old-stable-pfsense-install-lan-port-goes-offline</link><generator>RSS for Node</generator><lastBuildDate>Wed, 13 May 2026 16:23:21 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/195903.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 08 Jan 2025 14:52:06 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Mon, 20 Jan 2025 23:27:52 GMT]]></title><description><![CDATA[<p dir="auto">I'm returning to this thread with an update.</p>
<p dir="auto">New hardware is in place. The backup - restore - reassign interfaces process was completely flawless and painless.</p>
<p dir="auto">The new Broadcom-based ports are behaving where the previous hardware's Realtek ports were not.</p>
<p dir="auto">The problem was solved with $200 in hardware. For those reading after 2025-01-20, the price from China may be higher.</p>
]]></description><link>https://forum.netgate.com/post/1203360</link><guid isPermaLink="true">https://forum.netgate.com/post/1203360</guid><dc:creator><![CDATA[NickyDoes]]></dc:creator><pubDate>Mon, 20 Jan 2025 23:27:52 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Sat, 11 Jan 2025 09:31:17 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/stephenw10">@<bdi>stephenw10</bdi></a> said in <a href="/post/1202156">Old, stable pfSense install - LAN port goes offline</a>:</p>
<blockquote>
<p dir="auto">Hmm, I'd assumed HAProxy or Reverse Squid if it's hitting that on the firewall. But I could be wrong. <img src="https://forum.netgate.com/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=d00e50224fa" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title=":wink:" alt="😉" /></p>
</blockquote>
<p dir="auto">Clearly the correct assumption! I guess I was stuck in my thinking from when I set up NextCloud and all the instructions using Nginx. Which kind of makes sense since it's independent of what firewall is being used...</p>
]]></description><link>https://forum.netgate.com/post/1202346</link><guid isPermaLink="true">https://forum.netgate.com/post/1202346</guid><dc:creator><![CDATA[Gblenn]]></dc:creator><pubDate>Sat, 11 Jan 2025 09:31:17 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 20:57:30 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nickydoes">@<bdi>NickyDoes</bdi></a> said in <a href="/post/1202178">Old, stable pfSense install - LAN port goes offline</a>:</p>
<blockquote>
<p dir="auto">Yeah, yeah. Hating on Realtek ;-)</p>
</blockquote>
<p dir="auto">Mmm pretty much. <img src="https://forum.netgate.com/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=d00e50224fa" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title=":wink:" alt="😉" /></p>
<p dir="auto">They do seems to be improving though. Their 100M NIC was truly terrible. The 1G chips can be OK, but sometimes not so much! I've yet to see a confirmed issue with their 2.5G NIC.</p>
]]></description><link>https://forum.netgate.com/post/1202186</link><guid isPermaLink="true">https://forum.netgate.com/post/1202186</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Thu, 09 Jan 2025 20:57:30 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 20:25:23 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/stephenw10">@<bdi>stephenw10</bdi></a> Yeah, yeah. Hating on Realtek ;-)</p>
<p dir="auto">Actually, I ordered replacement hardware the same day this started to happen. I'll endeavor to come back to this thread when I find what happened through the logs, and when I change the hardware platform.</p>
]]></description><link>https://forum.netgate.com/post/1202178</link><guid isPermaLink="true">https://forum.netgate.com/post/1202178</guid><dc:creator><![CDATA[NickyDoes]]></dc:creator><pubDate>Thu, 09 Jan 2025 20:25:23 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 18:45:23 GMT]]></title><description><![CDATA[<p dir="auto">OK then check in the package and system logs for any errors when it goes offline.</p>
<p dir="auto">But still with Realtek NICs in the system they are my prime suspect!</p>
]]></description><link>https://forum.netgate.com/post/1202165</link><guid isPermaLink="true">https://forum.netgate.com/post/1202165</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Thu, 09 Jan 2025 18:45:23 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 18:37:05 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/stephenw10">@<bdi>stephenw10</bdi></a> I'm using pfsense's package haproxy.</p>
]]></description><link>https://forum.netgate.com/post/1202163</link><guid isPermaLink="true">https://forum.netgate.com/post/1202163</guid><dc:creator><![CDATA[NickyDoes]]></dc:creator><pubDate>Thu, 09 Jan 2025 18:37:05 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 18:24:43 GMT]]></title><description><![CDATA[<p dir="auto">Hmm, I'd assumed HAProxy or Reverse Squid if it's hitting that on the firewall. But I could be wrong. <img src="https://forum.netgate.com/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=d00e50224fa" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title=":wink:" alt="😉" /></p>
]]></description><link>https://forum.netgate.com/post/1202156</link><guid isPermaLink="true">https://forum.netgate.com/post/1202156</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Thu, 09 Jan 2025 18:24:43 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 16:58:51 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/stephenw10">@<bdi>stephenw10</bdi></a> said in <a href="/post/1202142">Old, stable pfSense install - LAN port goes offline</a>:</p>
<blockquote>
<p dir="auto">Which proxy are you using? Is anything logged there?</p>
</blockquote>
<p dir="auto">I'm guessing Nginx Proxy Manager in which case logs are under /some mountpoint/data/logs/. And there are logs per Proxy Host numbered in the order they appear in the UI.<br />
Perhaps the error log cold uncover something, if there is anything misconfigured on the NC server for example.</p>
]]></description><link>https://forum.netgate.com/post/1202146</link><guid isPermaLink="true">https://forum.netgate.com/post/1202146</guid><dc:creator><![CDATA[Gblenn]]></dc:creator><pubDate>Thu, 09 Jan 2025 16:58:51 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 16:31:13 GMT]]></title><description><![CDATA[<p dir="auto">Which proxy are you using? Is anything logged there?</p>
<p dir="auto">Importantly with Realtek NICs check for watchdog timeout errors in the system log.</p>
]]></description><link>https://forum.netgate.com/post/1202142</link><guid isPermaLink="true">https://forum.netgate.com/post/1202142</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Thu, 09 Jan 2025 16:31:13 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 15:25:08 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nickydoes">@<bdi>NickyDoes</bdi></a> Ok yes in that case you do in fact route the traffic via pfsense, and e.g. Nginx in fact.</p>
<p dir="auto">You could try split DNS to see if that makes any difference. I just tested it myself and it seems to work with NextCloud...<br />
Go into Services / DNS Resolver (or forwarder if that's what you use) and almost at the bottom you add a new Host override. Enter the fqdn you use to access NextCloud (e.g. nextcloud.dns.org) split up into nextcloud and dns.org on rows 1 and 2. And then the IP for NextCloud <strong>without the port</strong> (which apparently isn't needed when doing it this way).<br />
[EDIT] I guess since in the NC setup you have specified that it should listen to port 80/443 and it expects e.g. nextcloud.dns.org as host header or whatever it's called.<br />
You will also get a certificate warning that you have to accept since it's no longer going through your proxy.</p>
<p dir="auto">But you also need to test with an external client so that it doesn't lock up if you are accessing from the internet. You could run a VPN client on the PC that you are testing from to simulate that..</p>
]]></description><link>https://forum.netgate.com/post/1202134</link><guid isPermaLink="true">https://forum.netgate.com/post/1202134</guid><dc:creator><![CDATA[Gblenn]]></dc:creator><pubDate>Thu, 09 Jan 2025 15:25:08 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Thu, 09 Jan 2025 14:39:19 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/gblenn">@<bdi>Gblenn</bdi></a> Correct - the NC server is running at all times. It locks when the client connects.</p>
<p dir="auto">The IP and MAC are unique on the network.</p>
<p dir="auto">As for checking logs, capturing packets, and analyzing the results, I have not yet explored those rooms of the pfSense mansion.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/stephenw10">@<bdi>stephenw10</bdi></a>, I believe the traffic is traversing the firewall because I'm using the public URL - the server is reverse proxied.</p>
]]></description><link>https://forum.netgate.com/post/1202126</link><guid isPermaLink="true">https://forum.netgate.com/post/1202126</guid><dc:creator><![CDATA[NickyDoes]]></dc:creator><pubDate>Thu, 09 Jan 2025 14:39:19 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Wed, 08 Jan 2025 17:06:45 GMT]]></title><description><![CDATA[<p dir="auto">Yes is this only happening when a client connects to the server and starts moving files?</p>
<p dir="auto">Is that traffic going through pfSense?</p>
<p dir="auto">Is anything logged in pfSense when that happens?</p>
]]></description><link>https://forum.netgate.com/post/1202031</link><guid isPermaLink="true">https://forum.netgate.com/post/1202031</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Wed, 08 Jan 2025 17:06:45 GMT</pubDate></item><item><title><![CDATA[Reply to Old, stable pfSense install - LAN port goes offline on Wed, 08 Jan 2025 15:40:53 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nickydoes">@<bdi>NickyDoes</bdi></a> Sounds a bit like Flooding / Broadcast storm... I have read about the Realtek NIC being known to have some problems and can lock up... Are you saying that there are no problems just running the NC server, it's when the client connects that you get these problems?<br />
Can you throttle the client, in the switch that it attaches to? And do some packet capture to see what happens?</p>
<p dir="auto">Also check IP and MAC just to make sure there is no conflict...<br />
Check the logs in pfsense of course.. state table overflow?</p>
]]></description><link>https://forum.netgate.com/post/1202011</link><guid isPermaLink="true">https://forum.netgate.com/post/1202011</guid><dc:creator><![CDATA[Gblenn]]></dc:creator><pubDate>Wed, 08 Jan 2025 15:40:53 GMT</pubDate></item></channel></rss>