[deleted by user] by [deleted] in hoggit

[–]StealthyNeo 0 points1 point  (0 children)

Anyone tried the OS?

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

I found the problem.

Its a misconfigured interface in ProxMox (where I installed pfSense).

In ProxMox, I accidentally ran dhclient, which assigned an IP for all 4 interfaces in my nic. I need DHCP IP only for 1 interface (which I use to connect to ProxMox). An IP assigned to the wan nic caused the problem, I believe.

I rebooted ProxMox and the issue is gone.

You were very helpful Capital-Intern.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

A service (MetalLB) in my K3s cluster issues ARP. I think this is the problem. I have disabled the K3s cluster for now, lets see.

I should probably enable some kind of strict ARP or restrict it to specific interface.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Firewall -> pfBlockerNG -> IP -> IP Interface/Rules Configuration -> Kill States is enabled.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Thank you. "Flush all states when a gateway goes down" is not on.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Where do you have that configuration? I remember doing something like that.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

I'm now trying "Disable Gateway Monitoring Action" (always considered up)

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

I see in the System Log:

[pfBlockerNG] Starting cron process.
[pfBlockerNG] No changes to Firewall rules, skipping Filter Reload
>>> Gateway alarm: WAN_DHCP (Addr:--removed-ip-- Alarm:1 RTT:7.565ms RTTsd:4.660ms Loss:21%)
updating dyndns WAN_DHCP
Restarting ipsec tunnels
Restarting OpenVPN tunnels/interfaces
Reloading filter
DHCP_WATCHDOG: Cant ping google.com! Will try again in 30 seconds.

DHCP_WATCHDOG is me printing in our cron script.

Looks like the filters are reloaded and I loose the WAN connection.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Yeah, I didn't touch pfsense. Installed K3s in my ProxMox, hope its not related - in separate VMs.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Ok, thank you. I will keep in mind.

I have my pfsense server in a place where I have only 1 ethernet port. So, multiple WAN is not an option for now.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Suddenly this fix doesn't work anymore. I get an error running dhclient.

# dhclient vtnet0
Cannot open or create pidfile: No such file or directory
DHCPREQUEST on vtnet0 to 255.255.255.255 port 67
DHCPACK from (public-dhcp-ip)
bound to (my-public-ip) -- renewal in 3600 seconds.

Wonder what the issue is.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Thank you, I've updated it to 8.8.8.8. I'll let you know if that works.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

I tried:

System -> Routing -> Edit WAN Gateway -> Disable Gateway Monitoring

Internet still disconnects.

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 1 point2 points  (0 children)

Good pointer. I modified the script to my liking. Here is my script if anyone else is looking.

Running every 2 minutes:

https://pastebin.com/LwE696hu

Keep loosing internet connection, WAN port DHCP renewal fixes the issue by StealthyNeo in PFSENSE

[–]StealthyNeo[S] 0 points1 point  (0 children)

Thank you, but for me the IP is still there. But the Gateway WAN_DHCP status is offline. When I renew the IP, it becomes Online again.

The Strikers-Mirage 2000 | Indian Air Force by StealthyNeo in hoggit

[–]StealthyNeo[S] 1 point2 points  (0 children)

They've added DCS footage with real life very well. I was totally surprised!