1
22.7 Legacy Series / Re: Intermittent high ping only to gateway (opnsense)
« on: December 20, 2022, 03:30:05 pm »
Update, I seem to have discovered what was going on, I had a wifi extender device (TP-Link RE605X) I was using to bridge an ethernet-only device into the wifi network, but it seems to have some crazy behavior of announcing as owning the IPs of basically every other device on the wifi network, including the gateway... for example:
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.1.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.102.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.0.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.3.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.4.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.10.1
etc...
Not sure why it's trying to proxy arp for the entire world, feeling like it's some sort of bug but not sure, I've posted in their forums but no reply yet. I have a RE600X configured in exactly the same way but it doesn't do this. In any event, what would happen is that when I thought I was pinging the gateway, I was actually going through this extender... and so was the rest of the entire network, probably. Then I suppose the gateway would garp again and I'd be good for a while, rinse/repeat.
Suppose this type of this might be a reason why an arpwatch module for opnsense would be nice. Seems like there is one for pfsense, anyone know of an effort to do the same in opnsense?
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.1.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.102.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.0.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.3.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.4.1
12/18/2022 10:17:37 AM Flip flop A6-A2-F4-97-F2-4A takes other's IP: 10.0.10.1
etc...
Not sure why it's trying to proxy arp for the entire world, feeling like it's some sort of bug but not sure, I've posted in their forums but no reply yet. I have a RE600X configured in exactly the same way but it doesn't do this. In any event, what would happen is that when I thought I was pinging the gateway, I was actually going through this extender... and so was the rest of the entire network, probably. Then I suppose the gateway would garp again and I'd be good for a while, rinse/repeat.
Suppose this type of this might be a reason why an arpwatch module for opnsense would be nice. Seems like there is one for pfsense, anyone know of an effort to do the same in opnsense?