Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Virtual private networks
»
Cannot access specific sites
« previous
next »
Print
Pages: [
1
]
Author
Topic: Cannot access specific sites (Read 987 times)
mtw86
Newbie
Posts: 2
Karma: 0
Cannot access specific sites
«
on:
July 18, 2023, 11:21:12 am »
Hey all, greetings,
I'm new to custom firewalls and to this forum so if this is the wrong place, please let me know.
I managed to set up everything like port forwarding and other stuff.
I would also like to point out that I assigned a LAN interface as a bridge, I know this is not ideal but I do not see a lot of traffic.
Everything seems to be working fine except a few specific websites which are not reachable, one of which is the ISP website.
I am guessing that it's DNS related but I might be wrong.
Does anyone have an idea of what the issue might be? Any help is appreciated.
Logged
CJ
Hero Member
Posts: 832
Karma: 29
Re: Cannot access specific sites
«
Reply #1 on:
July 18, 2023, 01:50:58 pm »
What do you mean by port forwarding and other stuff?
How did you configure the bridge?
Did the sites work before you made any changes?
Logged
Have Answer, Will Blog
mtw86
Newbie
Posts: 2
Karma: 0
Re: Cannot access specific sites
«
Reply #2 on:
July 18, 2023, 09:49:41 pm »
I have a NAS behind the firewall, and I connect to the NAS through VPN, so I had to port forward it in the WAN interface.
In the bridge setup I selected all the interfaces as members except the WAN interface.
In the LAN (bridge) interface I selected
Track interface
as IPv6 Configuration Type and
Static IPv4
as IPv4 Configuration Type.
For IPv6 Interface I selected WAN from the dropdown.
I can access the sites only when connected through VPN.
I hope this helps.
«
Last Edit: July 18, 2023, 09:51:49 pm by mtw86
»
Logged
meyergru
Hero Member
Posts: 1660
Karma: 164
IT Aficionado
Re: Cannot access specific sites
«
Reply #3 on:
July 19, 2023, 12:31:21 am »
What WAN technology do you use? PPPoE? VLANs? Probably you did not fix the MTU/MSS or do not use MSS clamping. That may result in some sites not being available because they use large MTUs but PMTU discovery does not work.
You can check if DNS is O.K. and ping the affected sites. If that works, but HTTP(S) does not, this is likely to be the problem.
Logged
Intel N100, 4 x I226-V, 16 GByte, 256 GByte NVME, ZTE F6005
1100 down / 440 up
,
Bufferbloat A+
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Virtual private networks
»
Cannot access specific sites