Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Cannot get dhclient to get an IP address on WAN
« previous
next »
Print
Pages: [
1
]
2
Author
Topic: Cannot get dhclient to get an IP address on WAN (Read 5422 times)
ipartola
Newbie
Posts: 16
Karma: 0
Cannot get dhclient to get an IP address on WAN
«
on:
April 22, 2021, 03:21:47 am »
I have a simple setup with a dual NIC Intel card on amd64. I know the connection to my ISP works fine because the router I'm replacing can quickly get an external IP. OPNSense struggles. tcpdump on my WAN port (igb0) shows:
01:09:47.918351 IP 0.0.0.0.bootpc > 255.255.255.255.bootps: BOOTP/DHCP, Request from a0:ce:c8:01:05:8b (oui Unknown), length 300
01:09:47.935354 IP 32.217.174.1.bootps > 32.219.252.142.bootpc: BOOTP/DHCP, Reply, length 300
01:09:47.953487 IP 32.217.174.1.bootps > 32.219.252.142.bootpc: BOOTP/DHCP, Reply, length 300
Looks to me like the replies from their DHCP server are coming back fine. However OPNSense logs show:
2021-04-22T01:11:31 dhclient[18640] No DHCPOFFERS received.
2021-04-22T01:11:19 dhclient[18640] DHCPDISCOVER on igb0 to 255.255.255.255 port 67 interval 12
I didn't do anything to the firewall yet, so this is pretty much the default simple install. How can I fix this?
Secondly, why do I sometimes get the internal DHCP server (172.20.20.X) to assign the WAN interface an address in that range? How come the WAN dhclient is even able to listen to that address?
Thanks!
Logged
ipartola
Newbie
Posts: 16
Karma: 0
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #1 on:
April 22, 2021, 03:28:24 am »
I should say that I can either fake a cached lease or just use the previously assigned IP address as a static assignment and that works no problem.
Logged
chemlud
Hero Member
Posts: 2485
Karma: 112
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #2 on:
April 22, 2021, 08:35:39 am »
What is the exact setup, any bridged modems or fiber converters in WAN? Which ISP? CG-NAT?
Logged
kind regards
chemlud
____
"The price of reliability is the pursuit of the utmost simplicity."
C.A.R. Hoare
felix eichhorns premium katzenfutter mit der extraportion energie
A router is not a switch - A router is not a switch - A router is not a switch - A rou....
marjohn56
Hero Member
Posts: 1701
Karma: 179
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #3 on:
April 22, 2021, 11:36:25 am »
Try spoofing the mac that the ISP router uses.
---Edit---
Also check that the ISP is not using some other form of validation.
«
Last Edit: April 22, 2021, 11:38:00 am by marjohn56
»
Logged
OPNsense 24.7
-
Qotom Q355G4
- ISP -
Squirrel 1Gbps
.
Team Rebellion Member
- If we've helped you remember to applaud
ipartola
Newbie
Posts: 16
Karma: 0
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #4 on:
April 22, 2021, 01:05:56 pm »
MAC address was spoofed from the old router. This is Frontier fiber in CT, USA. There are no other pieces of equipment, just the ONT box that translates optical signal to Ethernet and the OPNSense box plugged right into that.
Logged
marjohn56
Hero Member
Posts: 1701
Karma: 179
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #5 on:
April 22, 2021, 01:08:29 pm »
Is there a user forum for that ISP where someone may have posted a similar issue?
Logged
OPNsense 24.7
-
Qotom Q355G4
- ISP -
Squirrel 1Gbps
.
Team Rebellion Member
- If we've helped you remember to applaud
ipartola
Newbie
Posts: 16
Karma: 0
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #6 on:
April 22, 2021, 01:09:07 pm »
Oh and there is no CG-NAT. It’s just a public IP.
Logged
ipartola
Newbie
Posts: 16
Karma: 0
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #7 on:
April 22, 2021, 01:23:43 pm »
There is abs I am asking on there as well, but the issue is clearly happening when I switched to OPNSense. I can plug my old router back in and it gets an address right away.
Logged
marjohn56
Hero Member
Posts: 1701
Karma: 179
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #8 on:
April 22, 2021, 01:26:45 pm »
https://www.reddit.com/r/frontierfios/comments/5yvcy8/question_regarding_dhcp_lease_on_ont_via_ethernet/
Logged
OPNsense 24.7
-
Qotom Q355G4
- ISP -
Squirrel 1Gbps
.
Team Rebellion Member
- If we've helped you remember to applaud
ipartola
Newbie
Posts: 16
Karma: 0
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #9 on:
April 22, 2021, 01:35:02 pm »
Yes already saw that one and talked to their tech support who told me there were no issues. They see everything as fine on their end
Logged
marjohn56
Hero Member
Posts: 1701
Karma: 179
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #10 on:
April 22, 2021, 01:38:14 pm »
There's nothing peculiar or non standard about the dhcp client, it's a bog standard client. Only time I've ever heard of issues is when the ISP has some weird authentication employed; usually mac spoofing is sufficient.
Logged
OPNsense 24.7
-
Qotom Q355G4
- ISP -
Squirrel 1Gbps
.
Team Rebellion Member
- If we've helped you remember to applaud
ipartola
Newbie
Posts: 16
Karma: 0
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #11 on:
April 22, 2021, 02:09:13 pm »
There is clearly something funny going on here. I was able to use tcpdump to capture a DHCPOFFER:
https://hpd.gasmi.net/?data=45C00148D3670000401170D720DBF80120DBFAEE004300440134D671020106004357CA8B001700000000000020DBFAEE0000000020D9AE0180615F082D7A000000000000000000006468637030352E667477792E696E2E66726F6E746965726E65742E6E6574000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000638253633501023604B810069D330400000E100104FFFFF800030420DBF8010F0F66747264686370757365722E6E657406084A284A284A284A29FF0000000000&force=ipv4
I am running dhclient manually to see its output in the terminal and it claims it never got any offers.
Logged
ipartola
Newbie
Posts: 16
Karma: 0
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #12 on:
April 22, 2021, 02:47:40 pm »
OK so digging into it further, what I see as being weird here is that the DHCP server is at 184.16.6.157 while the address it's offering is 32.219.250.238 and the gateway is 32.217.174.1. I believe this is all in a /21. Could the issue be that dhclient is ignoring the DHCPOFFER because it's coming from a different subnet?
Logged
chemlud
Hero Member
Posts: 2485
Karma: 112
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #13 on:
April 22, 2021, 02:51:08 pm »
Not really, I guess. I have one ISP that has his DHCP on a machine with a private IP. Doesn't matter, even as private IPs are blocked on WAN...
The IP resolves to
dhcp05.ftwy.in.frontiernet.net
which makes perfectly sense, I guess.
Logged
kind regards
chemlud
____
"The price of reliability is the pursuit of the utmost simplicity."
C.A.R. Hoare
felix eichhorns premium katzenfutter mit der extraportion energie
A router is not a switch - A router is not a switch - A router is not a switch - A rou....
marjohn56
Hero Member
Posts: 1701
Karma: 179
Re: Cannot get dhclient to get an IP address on WAN
«
Reply #14 on:
April 22, 2021, 02:55:16 pm »
Can I make a suggestion. Turn off the ISP gateway and leave it off for an hour. The lease time is 60 minutes, so let any existing lease expire before re-starting. Sky UK used to have a weirdo where that had to be done.
Logged
OPNsense 24.7
-
Qotom Q355G4
- ISP -
Squirrel 1Gbps
.
Team Rebellion Member
- If we've helped you remember to applaud
Print
Pages: [
1
]
2
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Cannot get dhclient to get an IP address on WAN