Recover from HW reset
-
i did a hw reset and now i cannot access the web gui of pfsense, i remove the cf card and mount cf in my VM fbsd 8.1 , but not sure which config file should i edit for it revert, because i cannot access the default GW 192.168.1.1.
I did also fire up my USB to serial cable using putty on COM7, but when i power it. It doesnt do anything it just black screen, can anyone advise?
HW: Alix 2D3 ( purchased from netgate)
-
So you're seeing nothing on the console? You should be seeing the BIOS at least even with no CF card. Are you sure the console cable connection is correct?
Steve
-
Yes, nothing. I got connected on the COM port but no display. Im using a USB to Serial and and a DB9 F/F adapter. If i pull out the cf card and mount it on VM running FBSD, is there any config should i edit to reset it so i log back to the web gui?
-
The easiest way to reset it would probably be to reflash the CF card with a new image if you have removed it.
You could try just removing or renaming the config.xml file, that would usually trigger the default setting and ask you to setup the interfaces etc. However if you aren't seeing any bootup messages at all perhaps you have a hardware fault.
Have you used that serial console cable before?Steve
-
i just bought this USB to Serial, i sent an email to netgate for the recommended USB to serial, they said their engineers advise to use USB FTDI cable, i guess they meant with ftdi chipset, im not sure if im using one. I just bought this on our local store here.
-
Ah OK. Well before doing anything you need to verify you serial connection setup is good somehow. Do you have anything else with a serial console? It's easy to use a null modem cable that's not wired correctly. I'm not sure if this applies to the Alix or not but see this: https://doc.pfsense.org/index.php/PfSense_on_Watchguard_Firebox#Not_All_Null_Modem_Cables_are_Created_Equal.21
Steve
-
Hi Stephen,
See below snapshot of my serial console
-
Your snapshot seems to have disappeared but I did look at it briefly yesterday.
I'm not sure what you were showing me, it looked at though that was from the host machine? :-\Steve
-
Yeah, the screenshot is from a Linux machine, so presumably it's the client that you're trying to connect to your device from?
-
im connecting from a backtrack linux VM, and run minicom -b 9600. I guess might need another USB to serial with ftdi chipset
-
Support for your USB-Serial converter is obviously dependant on the client OS but even if it is supported you still need the correct null modem cable. Seeing nothing at all on the serial port is often a sign that the cable is wrong.
First thing you should try is connect at 38,400 because that is the default setting on the Alix for the BIOS. You won't see anything at 9600 unless pfSense is at least partially booting.
Steve
-
Stephen i have a serial null modem , one end is serial and the other end is a parallel male printer. Can i use a female to USB parallel cable, so i can plug it on my pc?
-
Hmm. You say it has a 'parallel male printer' connector, I assume you mean a db25 connector?
Most null modem cables do not use 25pin connectors, are you sure it's a null modem?Steve
-
Hi Stephen,
I have just bought from ebay a female to female serial null modem cable, but when i tried to fire up serial console i cant see nothing, please see screenshot below
-
ttyS0 appears to be a standard serial port, though here it's virtualised.
I'm confused as to your setup. You are running Backtrack as a vm in vmware? The host OS is Windows 7? You have a usb-serial converter connected to the host machine? The Alix is connected to that via a null modem cable?
Please confirm each of those.To make that work you will have to somehow route the host machines com port to the vm com port. It seems way too complex. :-\
Steve
-
yes, because when i try putty, it wont work. Thats why i setup a VM, im not sure how can i route the com port, this is the null modem i purchased in ebay and my usb converter is using prolific chipset.
http://www.ebay.com/itm/390248186240?ssPageName=STRK:MEWNX:IT&_trksid=p3984.m1439.l2649
-
Hi Stephen i also tried downloading hyperterminal, set baud to 9600 and 38400 still same, nothing happens.
-
Hmm, ok. Well I would definitely try to get it working in windows, using a vm inside vmware introduces way too many new possible problems. Plenty of others have made this work.
What com port are you choosing in putty or hyperterminal? If your usb-serial adapter is correctly installed I expect it to appear as, say, com5.Steve
-
well its random, sometimes com 6, 7, 8 or 9. It really puzzle me why its still not working, even if i already the stuffs needed to run this, specially the null modem cable
-
Do you have anything else you can use to test the serial connection?
In newer versions of windows you need to run putty as admin.
Rather than running backtrack as a vm you could try running it as a live cd.You should also be able to just re-write a new image to the cf card. There are default settings for the Alix so it will come up with a web interface.
Steve
-
I have re-write the new image using dd in backtrack, when i power Alix i think its working because the three leads is blinking simultaneously just like before, i tested the serial cable on my windows 7 ultimate and it was detected and hyperterminal also detects it.
Do i i need to change something on the cf card image? -
Hi Stephen,
I did what you advise, I bootup BT 5 on a thumdrive, my USB to serial got detected, i use /dev/TTYUSB0 for the port, please see below. But still cant see anything on the screen, like bootup from Alix
-
The Alix bootup messages will be at 38400bps unless you've changed the BIOS setting.
Do you have a link to exact null modem cable you bought?Steve
-
I did set it already to 38400 but same issue , no bootup on the screee. Below is the link where i bought my null modem cable
http://www.ebay.com/itm/390248186240?ssPageName=STRK:MEWNX:IT&_trksid=p3984.m1439.l2649
-
Hmm, that listing does not appear to state that the cable is wired as a null modem. I think you're going to have to test it to make sure. If its wired correctly pin 2 at one end should be connected to pin 3 at the other end.
See: http://en.wikipedia.org/wiki/Null_modemSteve
-
Hmm, that listing does not appear to state that the cable is wired as a null modem. I think you're going to have to test it to make sure. If its wired correctly pin 2 at one end should be connected to pin 3 at the other end.
See: http://en.wikipedia.org/wiki/Null_modemSteve
Sorry for late reply, so thats why it still did not work. I thought i bought a null modem cable.
-
It isn't necessarily the wrong cable, I would expect a female-female serial cable to be wired as a null modem. However you need to be sure since if it's wrong you'll never see anything on the terminal.
Steve
-
Hi Stephen,
Thaks for the response, here is how i connect it and the actual look of my female to female serial modem, connected to USB to serial
-
It looks like the right cable but I have no way to tell how it's wired. If it is wired as a null modem I would expect it to be advertised as such. The fact that it isn't makes me suspect it. Like I said if it isn't a null modem cable that would explain all the problems you've been having.
You can easily test it if you have access to a multimeter and a paperclip. Any self respecting geek should have a multimeter! ;)
Steve
-
Hey Stephen you were right! The cable i bought was not a null modem cable, so i ordered again sometime like 3 weeks ago it just came earlier and tested the new null modem cable , it worked. Im now setting up pfsense webgui. Below is my config my current adsl modem/router is setup as DHCP, and i configure pfsense WAN to DHCP, when i test for internet it didnt connnect internet, do i have to disable dhcp on my modem/router, and enable only dhpc on pfsense WAN as DHCP ?
adsl modem/router : setup DHCP
pfsense
WAN: DHCP
LAN: 192.168.1.1 /24 -
Ok, so are you connecting the pfSense box behind the adsl modem/router?
How did you test for internet on the pfSense box?There is a good chance that your adsl router is also using the 192.168.1.1 subnet for its LAN. This will break routing, you can't have the same subnet on two of pfSenses interfaces. If that is the case try changing the pfSense LAN subnet.
Steve
-
ok so i will change the subnet, also do i have to disable the dhcp in my adsl router / modem? and only enable dhcp in pfsense ( alix 2D3 ) instead?
-
Ideally you would place the modem/router in bridge mode in which case dhcp would be disabled.
However initially if you're setting up pfSense behind the router just leave the router in its working configuration. Switch to bridge config later once you're up and running.Steve
-
Hi Stephen i did the following changes, but i still cant get into the internet.
ADSL router / modem setup
-
set it to bridge
-
disable dhcp
-
LAN IP is 192.168.1.1
PFSENSE CONFIG
-
set LAN IP 192.168.1.2
-
dhcp server subnet 192.168.1.10 - 192.168.1.245
-
DNS i use google 8.8.4.4; 8.8.8.8
-
set gateway 192.168.1.2
Screenshots
>> this config is in my adsl /mode router
>> pfsense config
>> pfsense config
-
-
192.168.1.1/24 is still in the same subnet as 192.168.1.2/24.
Try changing the pfSense LAN to 192.168.2.1/24.Steve
-
Hi Steve,
I set pfsense LAN IP 192.168.2.1
default GW : 192.168.2.1I was able to nslookup outside but cant ping outside, i checked dhcp on WAN is releasing public ip, is my default GW correct? or it should be the LAN IP of adsl / modem router?
adsl/modem
LAN 192.168.1.1
DHCP: DISABLED
TYPE: bridge -
Ok. You should not have a gateway on the LAN interface,
Go to Interfaces: LAN: and remove it. Then goto System: Routing: and make sure your WAN gateway is the only one there and is set as default.It looks like you successfully set the router in bridge mode and it has passed your public IP to the pfSense WAN interface so you're all good there. :)
Steve
-
thanks steve, so WAN gateway would be 192.168.2.1 ?
-
Nope the WAN gateway is assigned by your ISP.
It's your clients on the LAN network that should be using 192.168.2.1 as their gateway. That is handed to them from pfSense via dhcp. The only place that should be entered in pfSense in the the dhcp server setup for the LAN.
Steve
-
hey Steve it Worked! thanks to your help and patience!! Enjoy your Holidays!