Welcome, Guest. Please login or register.
Did you miss your activation email?
+  pfSense Forum
|-+  pfSense English Support» Installation and Upgrades» New Install, routing issues
Username:
Password:
 
 

Pages: [1]   Go Down
  Print  
Author Topic: New Install, routing issues  (Read 780 times)
0 Members and 1 Guest are viewing this topic.
caleb
Newbie
*
Offline Offline

Posts: 5


View Profile
« on: April 06, 2012, 10:13:26 pm »

Since it's a new install, I'm putting this in here rather than in the routing forum since it could be more than a routing issue...it could be a config issue.

So I'm attempting to replace my firewall device with a pfsense box to see if I get better performance.  On my firewall device I have multiple vans.  So when I was setting up pfsense, I setup the WAN (interface em0) then I setup the LAN (em1) then I setup all my vlans off of my lag as optional interfaces.  I named them all as they are in my firewall device, set gateways for each one, etc.  I can ping outside hosts (external DNS, etc) from my pfsense box, but my hosts inside my network can't ping out and they can't ping other hosts on my network and from outside in I can't ping anything.  Any suggestions on where to start looking? (unfortunately my pfsense box is at my data center and I have customers currently there so it's tough to bring down the network for too long at a time.)

If only there was a Cisco to pfsense config converter Cheesy
Logged
wallabybob
Hero Member
*****
Online Online

Posts: 4802


View Profile
« Reply #1 on: April 06, 2012, 10:46:30 pm »

I can ping outside hosts (external DNS, etc) from my pfsense box, but my hosts inside my network can't ping out and they can't ping other hosts on my network
Have you setup firewall rules on the OPTx interfaces to allow these accesses?

and from outside in I can't ping anything. 
Have you setup firewall rules on the WAN interface to allow these accesses?

Default firewall rule on LAN interface is to allow any access from LAN. Default firewall rule on all other interfaces is to block all accesses. Default is deemed to fit the most common requirements.

Logged
caleb
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #2 on: April 06, 2012, 11:27:22 pm »

Thanks, I have not setup any rules.  I will start with that.
Logged
caleb
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #3 on: April 07, 2012, 04:08:30 am »

I ended up figuring it out.  It was a combination of a lot of things (rules, gateways, ips in general, etc) Cheesy
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

 

Page created in 0.028 seconds with 20 queries.