Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Frustration

    Scheduled Pinned Locked Moved General pfSense Questions
    10 Posts 5 Posters 4.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      killgannon
      last edited by

      Ok so I've searched and searched and I don't know if I'm just not using the right terms or what is going on, but here's what I'm trying to do.

      I have multiple static ips from my ISP on a single WAN Interface (however not a cidr block), I want to have LAN (subnet is 192.168.0.0/24) go out one ip say x.x.x.101, and then my Wireless (opt1…(192.168.1.0/24) using a dlink wireless router at the moment because i dont have a PCI Wireless card, nor an AP, DHCP is turned off, and the router itself is set to 192.168.1.2) go out another ip say x.x.x.102. I found a couple of things on the forums, I have the VIP setup, i have advanced outbound NAT setup, and I have allowed traffic setup (the filter for wireless matches the one for lan).

      I'm totally confused as to what I may be missing... opt1 gets DHCP and it gets correct ips on the right subnet, however the boxes there can't reach the opt1 interface, nor can it reach the internet at all, I cant even ping opt1

      I'm trying to get this setup so I can put captive portal on the opt1 so that I can cut down on ads and crap on my parents wireless laptop

      Solved it myself (sorta): I added the gw into the firewall rule for outbound traffic on opt1 and now its working like a charm :) howeverr i cannot access pfsense from opt1 at all, nor can i use captive portal on opt1 at all, when i try it just breaks it... is this because im using a wireless router instead of just an AP? should i get an AP or wireless NIC to do my opt1? not sure whats going on at all, i cant even ping opt1 from anything on opt1....

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG
        GruensFroeschli
        last edited by

        Please post screenshots of your AoN-rules and your firewall rules.

        Also could you draw a small diagramm of your complete network? (ascii art?)

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • K
          killgannon
          last edited by

          I'll have to post screenshots later tonight at work right now  :-\

          Diagram Below

          
                                     #(Modem) (has 6 public ips .101 (LAN) .102 (wLAN) [.104 .105 .107 .242]servers)
                                     |
                                     O(pfsense)
                   /                |                       \
               []LAN             []opt1                  []opt2 (servers not configured yet transparent bridging will be here)
             16port Switch    4portWirelessDlink    5port switch
                192.168.0.1          Router                Public IPs
                                        192.168.1.1
          
          
          1 Reply Last reply Reply Quote 0
          • K
            killgannon
            last edited by

            Firewall Rules for Wireless (aka opt1)

            AoN

            edit: If i change the AoN for LAN to be .107, it will go out .107, im completely confused as to why opt1 isnt working -.-… could it be the wireless router? (it should be acting as a switch/WAP... it has before...)

            1 Reply Last reply Reply Quote 0
            • H
              hoba
              last edited by

              Did you by any chance have a gateway configured at interfaces>wireless?

              1 Reply Last reply Reply Quote 0
              • S
                sullrich
                last edited by

                Also, are you missing a WIRELESS AON rule?

                1 Reply Last reply Reply Quote 0
                • K
                  killgannon
                  last edited by

                  @hoba:

                  Did you by any chance have a gateway configured at interfaces>wireless?

                  I'm pretty sure I do…

                  Also, are you missing a WIRELESS AON rule?

                  does this mean i need another AoN rule? 192.168.1.0/24 is the wireless and i have an AoN rule for that

                  1 Reply Last reply Reply Quote 0
                  • H
                    hoba
                    last edited by

                    @killgannon:

                    @hoba:

                    Did you by any chance have a gateway configured at interfaces>wireless?

                    I'm pretty sure I do…

                    Unless this is an additional wan you don't want to have that.

                    1 Reply Last reply Reply Quote 0
                    • K
                      killgannon
                      last edited by

                      @hoba:

                      @killgannon:

                      @hoba:

                      Did you by any chance have a gateway configured at interfaces>wireless?

                      I'm pretty sure I do…

                      Unless this is an additional wan you don't want to have that.

                      I lied, I dont have a gateway there (i was at work i couldnt check)

                      1 Reply Last reply Reply Quote 0
                      • jahonixJ
                        jahonix
                        last edited by

                        @killgannon:

                        … i cant even ping opt1 from anything on opt1....

                        Are you sure you got the alias definition for 'Wireless net' right? You use it for the access rule on the wireless tab.
                        If you can't even ping OPT1 from within OPT1 then the traffic gets blocked at the interface for some reason. Try to find out why.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.