Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
New to Opnsense; 100% Packet loss
« previous
next »
Print
Pages: [
1
]
Author
Topic: New to Opnsense; 100% Packet loss (Read 1230 times)
Selectbq
Newbie
Posts: 2
Karma: 0
New to Opnsense; 100% Packet loss
«
on:
May 18, 2022, 12:54:04 am »
Hey all, we've just setup OPNsense today but are struggling massively with the firewall.
Overview:
We are running a VMWare network on subnet 192.168.25.0/24
Gateway is 192.168.25.2
Opnsense is on 192.168.25.131 configured to use the gateway above
Other machines are on 192.168.25.125 to 192.168.25.130
Issue being: Other machines cannot connect to squid or DNS if the source and destination is set to LAN nor can opsense connect to the gateway (no packets go through, even if ICMP is allowed)
Log:
But the rules explicitly allow LAN connections
Setting all rules to ANY works however opnsense itself does not have any connection to the gateway cannot ping the gateway nor any other ip address
What am I doing wrong?
Logged
Selectbq
Newbie
Posts: 2
Karma: 0
Re: New to Opnsense; 100% Packet loss
«
Reply #1 on:
May 18, 2022, 01:02:48 am »
I should also mention that "Block private networks" and "Block bogon networks" are turned off
Logged
lfirewall1243
Hero Member
Posts: 1386
Karma: 45
Re: New to Opnsense; 100% Packet loss
«
Reply #2 on:
May 18, 2022, 11:57:04 am »
I think asymetric routing is your problem.
Clients send the packets to your OPNsense and OPNsense to the Gateway.
But the answer packets are going from the Gateway directly to the Client, but the Client isn't listening for that.
Search for asymetric routing, there are many threads about it
Logged
(Unoffial Community) OPNsense Telegram Group:
https://t.me/joinchat/0o9JuLUXRFpiNmJk
PM for paid support
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
New to Opnsense; 100% Packet loss