Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Opt1 wireless guest no connectivity

    Scheduled Pinned Locked Moved Firewalling
    9 Posts 3 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      ahmy
      last edited by

      Hello there,

      i have added an interface and assigned an IP address for it, Sat DHCP server for Opt1 secondly i`ve created a firewall rule to allow traffic coming from my opt1 to the internet, connected my AP to opt1 interface no internet connectivity, though i can ping under Diagnostics on my Pfsense.

      Clients can get IP addresses from the pools iv specified but they cant browse the web

      FW rule snapshot

      1 Reply Last reply Reply Quote 0
      • D
        doktornotor Banned
        last edited by

        You need ! (NOT) LAN net. You did the exact opposite.

        1 Reply Last reply Reply Quote 0
        • A
          ahmy
          last edited by

          @doktornotor:

          You need ! (NOT) LAN net. You did the exact opposite.

          Hello doktor,

          whats the exact rule im confused in here iv tried different rules iv also set * to source and destination with no hope.

          1 Reply Last reply Reply Quote 0
          • D
            doktornotor Banned
            last edited by

            Well, the exact rule is what I already described above. Not sure what trouble are you having with seeing that you did set up exactly the opposite of your goal or what is the trouble with checking the NOT checkbox under destination.

            1 Reply Last reply Reply Quote 0
            • A
              ahmy
              last edited by

              I did as you instructed iv even allowed everything to pass but i still cant browse the internet through my opt1 interface.

              1 Reply Last reply Reply Quote 0
              • D
                doktornotor Banned
                last edited by

                Kindly post a screenshot of what you have done.

                1 Reply Last reply Reply Quote 0
                • A
                  ahmy
                  last edited by

                  Thank you for your input Dok,

                  1 Reply Last reply Reply Quote 0
                  • D
                    doktornotor Banned
                    last edited by

                    Yeah, that is totally wrong. The destination should be set as NOT LAN net for the purpose of what you are stating in the description. Please, spend couple of minutes looking at what you are setting up.

                    Other than that, that rule allows any outbound IPv4 traffic from WIFIGUEST. Start looking somewhere else regarding your "cannot browse" trouble.

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator
                      last edited by

                      While I hear ya dok, I think the OP problem is that they can't get internet access.  While that rule he has currently on wifiguest would not stop him from talking to lan net, it should allow them internet access which I believe is what the OP is having a problem with.

                      This is really so freaking drop dead simple – I am always amazed at the number of people that have issues..  OP did you put a gateway on your opt1 interface?

                      This is really click click simple.. Can your clients on wifi guest ping the pfsense ip on the wifiguest interface?

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.