Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Restore backup on new hardware - webui inaccessible after saving interface assignment.

    Scheduled Pinned Locked Moved General pfSense Questions
    12 Posts 3 Posters 465 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M Offline
      moosport
      last edited by

      Install pfsense in new hardware (x11sdv). Able to access webui through one of the ports.
      Initial restore from backup file. pfsense prompt to assignment interfaces.

      1. Change both WAN and LAN.
      2. Click save.
      3. webui immediately do not response.
        4.PC connected directly to pfsense lost connectivity

      Tried different method.

      1. Change one of VLAN interface.
      2. Click save
      3. try to change different tab for another VLAN. webui immediately do not response.
        4.PC connected directly to pfsense lost connectivity

      Not sure what is the issue.

      SteveITSS 1 Reply Last reply Reply Quote 0
      • SteveITSS Offline
        SteveITS Rebel Alliance @moosport
        last edited by

        @moosport from which interface are you connecting if you change LAN?

        To upgrade, select your branch in System/Update/Update Settings. When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
        Only install packages for your version of pfSense.
        Upvote ๐Ÿ‘ helpful posts!

        M 1 Reply Last reply Reply Quote 0
        • M Offline
          moosport @SteveITS
          last edited by

          @SteveITS

          WAN - igb0
          LAN - ixl2
          PC connected to igb1.

          If I connect PC to the switch with uplink to pfsense, same problem.

          SteveITSS 1 Reply Last reply Reply Quote 0
          • SteveITSS Offline
            SteveITS Rebel Alliance @moosport
            last edited by

            @moosport You are clicking Save but not Apply?

            I previously found some odd behavior:
            https://redmine.pfsense.org/issues/14591

            To upgrade, select your branch in System/Update/Update Settings. When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
            Only install packages for your version of pfSense.
            Upvote ๐Ÿ‘ helpful posts!

            M 1 Reply Last reply Reply Quote 0
            • M Offline
              moosport @SteveITS
              last edited by

              @SteveITS

              Yes, It happens when saving. When I first attempt the upgrade last week, I clicked on Apply Changes on 1 interface change and lost access immediately.

              I surmise I applied changes for WAN and I was connected to downstream switch. LAN was still pointing to old interface. This time around I made sure to click Save only for WAN, LAN and all VLANs. But same issue happen after the first save.

              SteveITSS 1 Reply Last reply Reply Quote 0
              • SteveITSS Offline
                SteveITS Rebel Alliance @moosport
                last edited by

                @moosport hmm and igb1 still has its own unique subnet? They are not overlapping ?

                What does it show on the console after this happens?

                To upgrade, select your branch in System/Update/Update Settings. When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
                Only install packages for your version of pfSense.
                Upvote ๐Ÿ‘ helpful posts!

                1 Reply Last reply Reply Quote 1
                • stephenw10S Offline
                  stephenw10 Netgate Administrator
                  last edited by

                  Yeah check for a subnet conflict.

                  Is igb1 even assigned in the new config?

                  What does the console show?

                  M 1 Reply Last reply Reply Quote 0
                  • M Offline
                    moosport @stephenw10
                    last edited by

                    @stephenw10 said in Restore backup on new hardware - webui inaccessible after saving interface assignment.:

                    Yeah check for a subnet conflict.

                    Is igb1 even assigned in the new config?

                    What does the console show?

                    There are no conflict. Subnets are the same from restore.

                    Did not get to configuring igb1. Lost access.

                    Console has WAN ip and gateway IP assigned.

                    In DHCP server, gateway static ip is assign per MAC address. Does it needs to be updated before interfaces assignment?

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S Offline
                      stephenw10 Netgate Administrator
                      last edited by

                      So you moved the PC you're doing this from to LAN? Above you said it was connected to igb1.

                      You're passing DHCP leases to known MAC addresses only? That should be fine from pfSense's point of view. Of course the client will see the DHCP server changed MAC address and may reject leases if that's also locked down.

                      Does the client get a lease in the expected subnet?

                      Can you ping out from the console to the client device on LAN? Or to anywhere?

                      M 1 Reply Last reply Reply Quote 0
                      • M Offline
                        moosport @stephenw10
                        last edited by

                        @stephenw10 said in Restore backup on new hardware - webui inaccessible after saving interface assignment.:

                        So you moved the PC you're doing this from to LAN? Above you said it was connected to igb1.

                        You're passing DHCP leases to known MAC addresses only? That should be fine from pfSense's point of view. Of course the client will see the DHCP server changed MAC address and may reject leases if that's also locked down.

                        Does the client get a lease in the expected subnet?

                        Can you ping out from the console to the client device on LAN? Or to anywhere?

                        Not those connected to the switch downstream from pfsense.

                        I did not get to test from console as I run out of time.
                        I was expecting a quick migration with moving the cables over. Run restore from backup. Reboot all switches.

                        1 Reply Last reply Reply Quote 0
                        • stephenw10S Offline
                          stephenw10 Netgate Administrator
                          last edited by

                          If you're using static ARP anywhere it could result in this kind of breakage. Almost always a bad idea to use static ARP for this reason.

                          M 1 Reply Last reply Reply Quote 0
                          • M Offline
                            moosport @stephenw10
                            last edited by

                            @stephenw10 After a few hours, I got new hardware working. This time I pre-edit the backup xml file and rename interfaces for WAN, LAN and VLANs.

                            After restoring the backup config, there are a few setting needed to be fixed. Namely dhcp for vlans had to be re-enabled. ip address ranges for wireguard was transposed with another vlan.

                            Multiple reboots of switches. Only outstanding item is UPS configuration need a quirk added.

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.
                            Privacy Policy · Cookie Policy