Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    No ping and internet access on OPT1

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 1.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P Offline
      pfsense-newbie
      last edited by

      Hi all,

      I'm new to pfsense. Please apologize for incomplete or unclear information or posting in the wrong section (I assume it's a firewall issue?).
      Searching the web and the forum didn't solve my problem. Hope, I didn't overlook an important posting. Hopefully you can help.

      My setup (pfsense 2.2.2) is
      WAN - static IP - 192.168.11.11 - NAT enabled - standard gw is 192.168.11.10
      LAN - static IP - 192.168.14.10
      OPT1 - static IP - 192.168.15.10
      OPT2 - static IP - 192.168.16.10 - at the moment unused

      Firewall rules for OPT1 are similar to the LAN interface: IPv4 TCP  OPT1 net * * * * none

      NAT: automatic rules
      WAN  127.0.0.0/8 192.168.14.0/24 192.168.15.0/24 192.168.16.0/24 * * 500 WAN address * YES
      WAN  127.0.0.0/8 192.168.14.0/24 192.168.15.0/24 192.168.16.0/24 * * * WAN address * NO

      My intention is to configure and use OPT1 like LAN: full access to the internet, free communication between LAN and OPT1 (NAT just for outbound traffic via WAN Interface)

      Services: DNS forwarder is NOT enabled
      Services: DNS Resolver is enabled for all interfaces with DNSSEC Support

      LAN is working fine. Ping and internet access are working fast and fine.
      However, ping from any client in the OPT1 network to 192.168.15.10 failed. Name resolution and internet access also failed.

      What is wrong or missing? Is it a firewall issue?
      What can I do?

      Thanx a million for your advice.

      1 Reply Last reply Reply Quote 0
      • E Offline
        EMWEE
        last edited by

        Thats because you only allow TCP.

        Ping uses ICMP
        DNS uses UDP port 53

        1 Reply Last reply Reply Quote 0
        • P Offline
          pfsense-newbie
          last edited by

          Hi EMWEE,

          thanks a million. The obvious - and I didn't have it in mind - shame on me.

          Thanks again!

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.