Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Understanding Virtual IPs
« previous
next »
Print
Pages: [
1
]
Author
Topic: Understanding Virtual IPs (Read 4030 times)
hushcoden
Hero Member
Posts: 544
Karma: 23
Understanding Virtual IPs
«
on:
October 21, 2023, 10:11:16 pm »
I've created a VIP (see picture) on a different subnet than my LAN net (192.168.0.1/24), and I can't understand how to make that IP visible (the modem I need to reach is on 192.168.2.1) e.g. pingable from a device within my LAN: could someone please guide me?
I believe I have to create an NAT outbound rule, what exactly?
Tia.
«
Last Edit: October 21, 2023, 10:14:20 pm by hushcoden
»
Logged
cookiemonster
Hero Member
Posts: 1823
Karma: 95
Re: Understanding Virtual IPs
«
Reply #1 on:
October 21, 2023, 10:18:21 pm »
Needs to be on the internal interface, not WAN as it appears on the screenshot.
Logged
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #2 on:
October 21, 2023, 10:26:54 pm »
Ah I see, and then I just need a firewall rule on LAN interface with source LAN net and destination 192.168.2.1/24 and that's it, no NAT outbound rule ?
I need to access the modem GUI through the WAN cable between the OPNsense device and the modem itself.
«
Last Edit: October 21, 2023, 10:32:47 pm by hushcoden
»
Logged
cookiemonster
Hero Member
Posts: 1823
Karma: 95
Re: Understanding Virtual IPs
«
Reply #3 on:
October 21, 2023, 10:40:30 pm »
The only one I have I've put in the same subnet so didn't need any rules but your guess is what I would expect to have to do.
Logged
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #4 on:
October 21, 2023, 10:45:01 pm »
The point is that I don't know how to do that, how my LAN device can see the modem ??
Logged
cookiemonster
Hero Member
Posts: 1823
Karma: 95
Re: Understanding Virtual IPs
«
Reply #5 on:
October 21, 2023, 11:12:32 pm »
Oh wait, WAN might have been correct. Modem is on the WAN side, right? That is, the modem is on 192.168.2.1 and your LAN is 192.168.0.1/24. Had to re-read your first post, sorry.
Are you able to follow this
https://forum.opnsense.org/index.php?topic=33497.msg162897#msg162897
Logged
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #6 on:
October 21, 2023, 11:44:31 pm »
Yes, modem is on the WAN and thanks for the link, I'm going to check that.
Logged
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #7 on:
October 24, 2023, 07:22:53 pm »
So, I managaed to make it working following that guide, but in Firewall: Log Files: Live View I see lots of requests coming from 0.0.0.0 - what does it mean?
Tia.
Logged
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #8 on:
October 25, 2023, 10:26:14 am »
Could someone guide me on how to troubleshoot this?
Tia.
Logged
Monviech (Cedrik)
Global Moderator
Hero Member
Posts: 1601
Karma: 176
Re: Understanding Virtual IPs
«
Reply #9 on:
October 25, 2023, 10:36:52 am »
Source: 0.0.0.0
Destination: 255.255.255.255
Port: 4944
Protocol: UDP
The modem tries to tell the router the status of its DSL Line via Broadcast message. That can safely be ignored or you turn off that your modem does this.
Reference:
https://en.wikipedia.org/wiki/List_of_TCP_and_UDP_port_numbers
4944 No Unofficial DrayTek DSL Status Monitoring[221]
Logged
Hardware:
DEC740
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #10 on:
October 25, 2023, 11:20:38 am »
@Monviech A big, fat THANK YOU!
Logged
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #11 on:
October 25, 2023, 11:45:33 am »
And another question: I'm experiencing an annoying issue, i.e. after enabling the Modem_GUI interface I have no Internet connection at all, why on earth is this ?
I've attached the configuration.
«
Last Edit: October 25, 2023, 12:16:24 pm by hushcoden
»
Logged
Monviech (Cedrik)
Global Moderator
Hero Member
Posts: 1601
Karma: 176
Re: Understanding Virtual IPs
«
Reply #12 on:
October 25, 2023, 12:47:21 pm »
Maybe you have a rogue gateway that gets enabled when you enable the interface? Try to check your gateways and give your upstream ones a higher priority (for example 240).
Logged
Hardware:
DEC740
hushcoden
Hero Member
Posts: 544
Karma: 23
Re: Understanding Virtual IPs
«
Reply #13 on:
October 25, 2023, 01:06:40 pm »
I've attached the gateways - my understanding is that the first one has been created as in the Moded_GUI interface I've checked the option
Dynamic gateway policy
but I don't know if I should checked it or not ?
And if so, should I change the MODEM GUI gateway priority from 254 to 240 ?
Besides, as for the NAT Outbound rule, should I select the option 'Static Port' ??
Thanks.
«
Last Edit: October 25, 2023, 01:18:57 pm by hushcoden
»
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Understanding Virtual IPs