Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
24.1 Legacy Series
»
no route to internet from downstream gateway
« previous
next »
Print
Pages: [
1
]
Author
Topic: no route to internet from downstream gateway (Read 565 times)
cambrbr
Newbie
Posts: 9
Karma: 0
no route to internet from downstream gateway
«
on:
July 23, 2024, 01:29:09 pm »
I have a few VLANs in my homelab that need to be able to reach the internet (diagram is in the attachment)
My test "server" VLAN is sitting behind a router that is NOT my opnsense box. I created a transit vlan between that router and my opnsense firewall. I put in the correct route back to the 192.168.130.0 network through the 172.16.0.2 gateway in the transit network (otherwise no ping reply) and I have opened up the firewall to allow this traffic to go anywhere when originating from the transit network.
When I put a network client into my 192.168.130.0 subnet, I can ping the default gateway in that subnet (192.168.130.1), and I can ping the firewall interface of the transit subnet I created (172.16.0.1).
However, a host in 192.168.130.0/25 cannot reach (not even ping) the internet. The firewall log shows traffic is allowed to pass, but I don't get a ping reply.
Any other network I created that is "'directly" attached to the OPnsense FW works flawlessy (e.g. the services network).
Am I missing a route or default gateway somewhere ? Is it because the 192.168.130.0 network is not "known" to OPnsense ?
(PS: I'm not a routing specialist, I'm a hobbyist so do bear with me when I ask something stupid).
Logged
Seimus
Hero Member
Posts: 607
Karma: 59
Re: no route to internet from downstream gateway
«
Reply #1 on:
July 23, 2024, 02:06:16 pm »
Do you have NAT created for that network in order to reach Public destined adresses?
Regards,
S.
Logged
Networking is love. You may hate it, but in the end, you always come back to it.
OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G -
VM HA(SOON)
N100 - i226-V | Crucial 16G 4800 DDR5 | S 980 500G -
PROD
cambrbr
Newbie
Posts: 9
Karma: 0
Re: no route to internet from downstream gateway
«
Reply #2 on:
July 23, 2024, 04:18:31 pm »
NAT is set to "Automatic outbound NAT rule generation".
Perhaps a manual NAT rule needs to be created ?
Logged
Patrick M. Hausen
Hero Member
Posts: 6807
Karma: 572
Re: no route to internet from downstream gateway
«
Reply #3 on:
July 23, 2024, 04:22:36 pm »
Yes. Automatic takes care of directly connected interfaces only.
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do.
(Isaac Asimov)
cambrbr
Newbie
Posts: 9
Karma: 0
Re: no route to internet from downstream gateway
«
Reply #4 on:
July 23, 2024, 05:21:00 pm »
Thanks to the both of you. I switched to hybrid mode for NAT and added a manual rule for the 192.168.130.0 network.
Works now :-)
Logged
Seimus
Hero Member
Posts: 607
Karma: 59
Re: no route to internet from downstream gateway
«
Reply #5 on:
July 23, 2024, 05:47:16 pm »
Great,
please adjust your topic subject with [SOLVED] front of it
Regards,
S.
Logged
Networking is love. You may hate it, but in the end, you always come back to it.
OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G -
VM HA(SOON)
N100 - i226-V | Crucial 16G 4800 DDR5 | S 980 500G -
PROD
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
24.1 Legacy Series
»
no route to internet from downstream gateway