Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Dashboard System Information shows firewall IP instead of WebGUI client IP

    Scheduled Pinned Locked Moved General pfSense Questions
    15 Posts 5 Posters 4.6k Views 5 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      Samlink
      last edited by

      Hi,

      I have noticed an unexpected behavior in the Dashboard > System Information widget.

      The "User" field shows the firewall's own LAN IP address instead of the IP address of the client connected to the WebGUI.

      Example:

      • pfSense LAN IP: 192.168.0.1
      • Client PC IP: 192.168.0.193
      • Displayed in the widget: admin@192.168.0.1 (Local Database)

      Am I tripping or in the past this showed the client IP?

      Screenshot 2026-06-30 220203.png

      johnpozJ chpalmerC 2 Replies Last reply Reply Quote 0
      • johnpozJ Offline
        johnpoz LAYER 8 Global Moderator @Samlink
        last edited by

        @Samlink that is odd, I don't normally have that part of the system info widget enable. But I just enabled it and shows my client IP

        userip.jpg

        Are you using some reverse proxy or something to access the gui? Pfsense IP on the lan in my case is 192.168.9.253

        Link seems like a odd name for a firewall btw ;)

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 26.03.1 | Lab VMs 2.8.1, 26.03.1

        S GertjanG 2 Replies Last reply Reply Quote 0
        • S Offline
          Samlink @johnpoz
          last edited by

          @johnpoz no I don't have any reverse proxy configured on my network.
          Later, I'll check the system_information.widget.php file and possibly run a packet capture to see which source address the WebGUI is actually receiving.

          If you have any other troubleshooting ideas I'd be happy to try them.

          The hostname comes from The Legend of Zelda series, which I am a big fan of. When I first started using pfSense, I used it mainly as a router, hence the name โ€œlinkโ€ :)

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ Offline
            johnpoz LAYER 8 Global Moderator @Samlink
            last edited by

            @Samlink Ah ok link from zelda -- thanks for indulging my curiosity..

            Your not maybe using some nat reflection thing with true proxy.. Your actually going to your lan IP right, not your wan?

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 26.03.1 | Lab VMs 2.8.1, 26.03.1

            S 1 Reply Last reply Reply Quote 0
            • stephenw10S Offline
              stephenw10 Netgate Administrator
              last edited by

              Which pfSense version are you seeing that in?

              Mmm, seems like it must be some sort of proxying at play.... ๐Ÿค”

              1 Reply Last reply Reply Quote 0
              • S Offline
                Samlink @johnpoz
                last edited by

                @johnpoz yes I'm connecting directly thru the lan interface.
                @stephenw10 I'm on 2.8.1.

                I recently configured pfblocker and a vpn client to route some specific ip addresses thru it. Can it be something related to these things?๐Ÿค”

                johnpozJ 1 Reply Last reply Reply Quote 0
                • johnpozJ Offline
                  johnpoz LAYER 8 Global Moderator @Samlink
                  last edited by johnpoz

                  @Samlink Hmmm off the top of my head I don't see how routing traffic out a vpn or pfblocker could that. Would seem to me some sort of proxy/redirect thing would be really the only way something like that could show up.

                  Try turning off pfblocker and your vpn, should be easy enough to test if somehow they are the cause.

                  edit: just fired up my 2.8.1 vm, and yeah its showing the client IP.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 26.03.1 | Lab VMs 2.8.1, 26.03.1

                  S 1 Reply Last reply Reply Quote 0
                  • S Offline
                    Samlink @johnpoz
                    last edited by

                    @johnpoz Tried turning off pfblocker and the vpn but nothing changed ๐Ÿซค
                    I'm more curious than annoyed by what's going on ahah

                    johnpozJ 1 Reply Last reply Reply Quote 0
                    • johnpozJ Offline
                      johnpoz LAYER 8 Global Moderator @Samlink
                      last edited by

                      @Samlink yeah very odd, curious myself what is going on. You sure you just don't have your ips mixed up? ;) hahah

                      I would look in your state table..

                      state.jpg

                      See if there is some sort of nat going on, etc. What port you hitting your gui on? 80, 443? I have gui on 8443 for example.

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 26.03.1 | Lab VMs 2.8.1, 26.03.1

                      1 Reply Last reply Reply Quote 1
                      • stephenw10S Offline
                        stephenw10 Netgate Administrator
                        last edited by

                        What IP address are you using to connect to the firewall in the browser?

                        I might imagine some NAT reflection being in play if the browser is resolving the WAN IP for example. The states should show it though.

                        1 Reply Last reply Reply Quote 0
                        • chpalmerC Offline
                          chpalmer @Samlink
                          last edited by

                          I have several sites with a mix of Wireguard and OpenVPN tunnels to here.. They all show my local LAN address of my desktop when I log into them..

                          The only way I can duplicate this is to log into my lab router from the desktop of my primary router over a /30 I have between them..

                          It shows up there as *******@192.168.253.2 (Local Database)

                          It does not matter if I use the lab machines tunnel address or its LAN address.. same result.

                          But my desktop in my case is in a 172.31.125.0/24 subnet. Not quite apples to apples but..

                          Triggering snowflakes one by one..
                          Primary- Intel(R) Pentium(R) CPU G4400 @ 3.30GHz on an M470 WG box. pfSense CE 2.8.1
                          Lab Unit- Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box. pfSense+

                          1 Reply Last reply Reply Quote 0
                          • S Offline
                            Samlink
                            last edited by

                            There is definitely something strange going on:
                            a15a9f27-33b9-45d0-a0c2-16930e275380-immagine.png

                            These are the session states with two PCs connected: my main PC and my work PC.

                            For some reason, my main PC appears to be connecting through the loopback interface, while the work PC is correctly shown as connecting from the LAN.

                            So this appears to not be a pfsense problem.

                            S 1 Reply Last reply Reply Quote 0
                            • S Offline
                              Samlink @Samlink
                              last edited by

                              Found the culprit: Tailscale.

                              Both the pfSense box and my PC are always connected to the tailnet, but I assumed that since they can reach each other directly over the LAN, Tailscale would be bypassed.

                              1 Reply Last reply Reply Quote 2
                              • GertjanG Offline
                                Gertjan @johnpoz
                                last edited by

                                @johnpoz

                                563ac1fe-22b6-41ea-b658-93619879be29-image.png

                                That's also odd ๐Ÿ˜Š but way better looking as the more modern :

                                e1dc577b-9129-42ba-92ff-f9e7299d698f-image.png

                                No "help me" PM's please. Use the forum, the community will thank you.

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S Offline
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  Nice, yup tailscale would do it! ๐Ÿ˜

                                  1 Reply Last reply Reply Quote 0
                                  • First post
                                    Last post
                                  Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.