OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • [SOLVED] Unable to access WebGUI via WAN interface
« previous next »
  • Print
Pages: [1]

Author Topic: [SOLVED] Unable to access WebGUI via WAN interface  (Read 21486 times)

Andrew Crane

  • Newbie
  • *
  • Posts: 2
  • Karma: 1
    • View Profile
[SOLVED] Unable to access WebGUI via WAN interface
« on: June 04, 2018, 08:36:28 pm »
I have a fresh 18.1 install that I'm testing. It's currently on my private network with an RFC1918 DHCP-assigned WAN address.
Problem is, despite enabling access from WAN Net, and removed the Interface's restriction on RFC1918 sourced addresses, I cannot access the installation's WebGUI via the WAN interface. Even if I enable very permissive pass rules, I still seeing Default Deny rule hits from WAN Net addresses in the firewall log. I see the WAN's MAC address in other hosts' ARP tables, but I'm not getting echo replies, or access via the WebGUI on TCP:443.

I can ping out from the interface with no problem.

Ideas welcome! Many thanks.
« Last Edit: June 12, 2018, 09:39:12 am by franco »
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17703
  • Karma: 1615
    • View Profile
Re: Unable to access WebGUI via WAN interface
« Reply #1 on: June 05, 2018, 10:01:25 pm »
Hi,

Two candidates, could be one or the other or both:

1. You need to disable reply-to globally for your test setup (Firewall: Settings: Advanced)

2. If you have a LAN, WAN is not permitted to receive web GUI connections by default. Add a pass rule under Firewall: Rules: [WAN].


Cheers,
Franco

Logged

Andrew Crane

  • Newbie
  • *
  • Posts: 2
  • Karma: 1
    • View Profile
Re: Unable to access WebGUI via WAN interface
« Reply #2 on: June 06, 2018, 09:12:54 pm »
Thank you so much.
Disabling reply-to on WAN rules did the trick.
 :)
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 17703
  • Karma: 1615
    • View Profile
Re: Unable to access WebGUI via WAN interface
« Reply #3 on: June 12, 2018, 09:39:03 am »
Yay, happy to help!  8)


Cheers,
Franco
Logged

kp74508

  • Newbie
  • *
  • Posts: 2
  • Karma: 0
    • View Profile
Re: [SOLVED] Unable to access WebGUI via WAN interface
« Reply #4 on: August 29, 2018, 09:07:38 pm »
Hi Franco,

I had the same issue and your very helpful advice of Disabling reply-to at the firewall setting solved my problem. However, I am a bit confused.

Now when I create a new rule, that field is unchecked on the rule. It seems like the firewall setting is overriding the option selected on the rule. If this is the case, I would expect the option the on the rule to be greyed out. If the firewall setting does not override the rule, I would expect the option on the rule to default to the firewall setting. What do you think?

Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • [SOLVED] Unable to access WebGUI via WAN interface
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2