Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
[SOLVED] Unable to access WebGUI via WAN interface
« previous
next »
Print
Pages: [
1
]
Author
Topic: [SOLVED] Unable to access WebGUI via WAN interface (Read 21428 times)
Andrew Crane
Newbie
Posts: 2
Karma: 1
[SOLVED] Unable to access WebGUI via WAN interface
«
on:
June 04, 2018, 08:36:28 pm »
I have a fresh 18.1 install that I'm testing. It's currently on my private network with an RFC1918 DHCP-assigned WAN address.
Problem is, despite enabling access from WAN Net, and removed the Interface's restriction on RFC1918 sourced addresses, I cannot access the installation's WebGUI via the WAN interface. Even if I enable very permissive pass rules, I still seeing Default Deny rule hits from WAN Net addresses in the firewall log. I see the WAN's MAC address in other hosts' ARP tables, but I'm not getting echo replies, or access via the WebGUI on TCP:443.
I can ping out from the interface with no problem.
Ideas welcome! Many thanks.
«
Last Edit: June 12, 2018, 09:39:12 am by franco
»
Logged
franco
Administrator
Hero Member
Posts: 17668
Karma: 1611
Re: Unable to access WebGUI via WAN interface
«
Reply #1 on:
June 05, 2018, 10:01:25 pm »
Hi,
Two candidates, could be one or the other or both:
1. You need to disable reply-to globally for your test setup (Firewall: Settings: Advanced)
2. If you have a LAN, WAN is not permitted to receive web GUI connections by default. Add a pass rule under Firewall: Rules: [WAN].
Cheers,
Franco
Logged
Andrew Crane
Newbie
Posts: 2
Karma: 1
Re: Unable to access WebGUI via WAN interface
«
Reply #2 on:
June 06, 2018, 09:12:54 pm »
Thank you so much.
Disabling reply-to on WAN rules did the trick.
Logged
franco
Administrator
Hero Member
Posts: 17668
Karma: 1611
Re: Unable to access WebGUI via WAN interface
«
Reply #3 on:
June 12, 2018, 09:39:03 am »
Yay, happy to help!
Cheers,
Franco
Logged
kp74508
Newbie
Posts: 2
Karma: 0
Re: [SOLVED] Unable to access WebGUI via WAN interface
«
Reply #4 on:
August 29, 2018, 09:07:38 pm »
Hi Franco,
I had the same issue and your very helpful advice of Disabling reply-to at the firewall setting solved my problem. However, I am a bit confused.
Now when I create a new rule, that field is unchecked on the rule. It seems like the firewall setting is overriding the option selected on the rule. If this is the case, I would expect the option the on the rule to be greyed out. If the firewall setting does not override the rule, I would expect the option on the rule to default to the firewall setting. What do you think?
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
[SOLVED] Unable to access WebGUI via WAN interface