OPNsense Forum

Archive => 19.1 Legacy Series => Topic started by: Smack2k on June 08, 2019, 01:24:22 am

Title: OpnSense LAN / DHCP Assistance
Post by: Smack2k on June 08, 2019, 01:24:22 am
Looking for some assistance as I am noob with the OpnSense Router..

I have 3 NICs in my Router....1 WAN / 2 LANs

LAN1 has 4 VLAN Interfaces created using it as the parent interface with each one set with a Static IP for the address of the Interface (xxx.xxx.xxx.1).  Each one of the VLANs has a DHCP Server and Range Created.  THe actual LAN1 interface I have set with no IPv4 Address as the VLAN sub interface IPs act as the Gateway IPs for each VLAN / SUbnet.

LAN2 has a static IP Address created on it (192.168.10.1) and a DHCP Server / Range set for it as well.

I cant get an address on any computer I try to connect to any of the VLANs on LAN1 or the LAN2 Interface.

I have firewalls rules setup to allow all out of the interfaces.

The WAN is set to get DHCP.

I see good link lights on the NICs on the Router, so I am guessing the Interface IPs are fine and my issue is with DHCP or something else...I even setup the Router off the network as a stand alone with a computer connected directly to the LAN2 interface and I have also connected a stand alone computer to a switch that has access to one of the VLANs with a trunk port for the switch going to LAN1 of the OpnSense Router....

If I set LAN1 and LAN2 to DHCP they both get an address from my current router as well so I know the NICs are good...

Any help is greatly appreciated!
Title: Re: OpnSense LAN / DHCP Assistance
Post by: Smack2k on June 08, 2019, 03:30:05 pm
OK, so I sorted out the DHCP issues and clients get an IP on each VLAN now...

But I am still unable to ping between VLANs.  When I try to ping the gateway of another VLAN, it comes up destination unreachable.

All VLANs have the same firewall rules as the screenshot here.  Still unable to ping gateways of the other VLANs

Title: Re: OpnSense LAN / DHCP Assistance
Post by: weust on June 08, 2019, 03:43:39 pm
You have a destination VLAN2 Address, shouldn't that be network?
Title: Re: OpnSense LAN / DHCP Assistance
Post by: Smack2k on June 08, 2019, 04:27:09 pm
Changed them to network and still cannot ping the gateway of another VLAN.

I am on VLAN2 (10.20.2.1) and cannot ping gateway of VLAN (172.20.3.1) for example

Screenshot shows VLAN2 rules, VLAN3 is identical.

Just trying to get interVLAN communication working before I then start to segment parts I want out...

NOt sure if this is correct or not, but I have the Main LAN1 Interface IP Config type set to None since the VLAN interfaces that come from LAN1 are all setup with static IPs


EDIT - After hours of messing around trying to figure out what was wrong, it ended up that my laptop I was testing with somehow had a gateway statically setup and greyed out as the laptop was on DHCP to get an address.  But that gateway that got in there was apparently messing everything up....Once I found that everything worked as it should!