Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    How to add interfactes to DCHP server

    Scheduled Pinned Locked Moved DHCP and DNS
    8 Posts 3 Posters 490 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C Offline
      CyberMinion
      last edited by

      Hi,

      I'm either doing something dumb, or have a strange issue. My DHCP server does not give me options for a newly enabled physical interface.

      I'm trying to enable an additional interface on pfSense which I have not used before. I've given it an ID (opt6) and set it to enabled. I set it as a DHCP interface, and gave it an address.

      075709d7-69e9-462d-b077-0b16b00aef5d-image.png

      After saving, applying, (and even rebooting), I don't see this interface as an option under the DHCP server. Do I need to enroll the interface, somehow?
      Screenshot 2025-12-15 161402.png

      Or does having these OpenVPN interfaces in the list, somehow break something?
      ee9a614c-b9af-47ef-887c-98b89af30021-image.png

      Thank you!

      S 1 Reply Last reply Reply Quote 0
      • S Offline
        SteveITS Rebel Alliance @CyberMinion
        last edited by

        @CyberMinion Set IPv4 configuration type on OPT6 to static...you can't enable DHCP client and be a DHCP server on the same interface.

        Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
        Upvote ๐Ÿ‘ helpful posts!

        C 1 Reply Last reply Reply Quote 1
        • C Offline
          CyberMinion @SteveITS
          last edited by

          @SteveITS Ah yes, that's a mistake for sure. Fixed it (Saved, Applied, and failing that, rebooted). However, the interface still isn't showing in DHCP server settings. Am I still missing something?

          17a44dd8-b6dc-4dda-ba13-fca1bfb51fa4-image.png

          78ddacf1-7275-4d72-bc19-f5f7cb1d2a59-image.png

          Thank you!

          S 1 Reply Last reply Reply Quote 0
          • S Offline
            SteveITS Rebel Alliance @CyberMinion
            last edited by

            @CyberMinion It's a /32 mask above, try a /24. /32 is the default on pfSense.

            Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
            Upvote ๐Ÿ‘ helpful posts!

            C 1 Reply Last reply Reply Quote 1
            • C Offline
              CyberMinion @SteveITS
              last edited by

              @SteveITS Oh. I mistakenly thought that was only a reference to the gateway, based on the description, and the default /32. Alright, that did it. With that set to a /24 subnet, the DHCP server now allows me to set config for this interface.

              Thank you for your fast and helpful input! I'll go be embarrassed somewhere else, now...

              johnpozJ 1 Reply Last reply Reply Quote 0
              • johnpozJ Offline
                johnpoz LAYER 8 Global Moderator @CyberMinion
                last edited by

                @CyberMinion this actually comes up more than one would think to be honest. The default of /32 forces the admin to know what mask they are setting when setting up a new interface.. Been a few threads about changing it to default to /24, etc.

                I could see a /24 helping remove this sort of post - but then again the person setting up a new interface on their firewall should really understand what IP they want the interface to have and what network it should be /24, /25, /28 or say a /22 etc. etc.

                But don't be embarrassed ;) you for sure are not the first to run into this, nor will you be the last..

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 25.11 | Lab VMs 2.8.1, 25.11

                S 1 Reply Last reply Reply Quote 0
                • S Offline
                  SteveITS Rebel Alliance @johnpoz
                  last edited by

                  @johnpoz It would be "friendlier" if the mask was /24 for internal interfaces but I expect the issue is that pfSense has no idea if this is a second WAN or an internal interface unless a gateway is set, and then one could probably debate whether setting a gateway should automatically change the mask...perhaps a popup. At which point someone will be annoyed they have to change the mask again.

                  Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                  When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
                  Upvote ๐Ÿ‘ helpful posts!

                  johnpozJ 1 Reply Last reply Reply Quote 0
                  • johnpozJ Offline
                    johnpoz LAYER 8 Global Moderator @SteveITS
                    last edited by

                    @SteveITS yeah you could prob look up the old threads - this has been discussed multiple times in the past ;)

                    I concur that /24 might be a friendly more common default - but when it comes down too it, the admin of the firewall should know and set this to what they want to use. What it defaults to becomes irrelevant.

                    You could complain that windows when setting IP that starts with 10 - defaults to 255.0.0.0 ;)

                    windows.jpg

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 25.11 | Lab VMs 2.8.1, 25.11

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.