Pfsense/Fibre question

adviseme

Member
Joined
Jul 31, 2012
Messages
27
Reaction score
3
In preparation for fibre connectivity at home I setup PFsense on an old PC and tested it at work using a spare DSL line. The reasoning being that I should do something and learn something about home internet security because I have CCTV, newsgroup server, gaming, PC's and portable devices attached to a wifi router with basically no security other than a VPN subscription.
I'm not very technical so this took a while but eventually got the box configured and working with snort, squid and some whitelists etc.
Fibre was activated last week so took the box home, changed the WAN interface to DHCP. No IP appears on the WAN interface so after probably breaking things further, did a factory reset on PFsense and an auto detect on the LAN and WAN interfaces. Still no joy with seeing the WAN. CW via Vumatel.
My question is, does it make any difference plugging in different routers to a fibre line in succession? Will it take a while to refresh and is there some type of mac address monitoring/blocking from the provider? My standard wifi router (with WAN port) is up and running and the only configuration change I made was to select DHCP. Most likely I'm doing something totally dof. If there's someone in the JHB area who knows their stuff and wants to make some extra $ helping me out....forum rules permitting...I'd appreciate the help.
 
Did a similar thing, with the complexity of VLans and VMs to do the work.

It works, but, your MAC Address changes when you plug the fiber into the new PFSense box, and it doesnt get its DHCP over that WAN interface.
Vumatal lock your service to the first MAC address that it sees looking for an IP down your line.
If you know the MAC Address of the first device, PFSense will let your spoof the MAC and set it to the one you need to use, if not, your provider can do a MAC reset on your line.

But I can confirm it works, my PFSense has the public IP from my provider on its WAN interface
 
Vumatel locks to a specific MAC address. Call them and ask them to release the mac as you have a new firewall.
 
Thank you both for the quick responses. Will try spoof the MAC address tonight.
 
Don't spoof the MAC address, because it very much sounds like it's your wifi that you first plugged into the CPE.
You're asking for trouble by having two of the same MAC addresses on your network.

Don't call Vumatel either, it's CrystalWeb you need to phone to unlock the mac address. Once that's done it will automatically pick up your pfSense MAC address if it's configured for DHCP.
 
I didn't win by spoofing the MAC. I made sure that the wireless router wasn't up at the time I tried plugging PFsense into the CPE. I didn't have much time to play around but did notice that the lights on the CPE seemed to register a valid connection. Results from PFsense were either 0.0.0.0 or n/a for the WAN.
I'm planning on trying to get this right this weekend so thanks for the additional pointers above.
 
...and of course if you like BEER, PIZZA and $$$ and know your stuff you can come show me how to properly secure things. :whistle:
 
You're welcome to give me a shout if you need help. I've got a pfSense firewall working on Cool Idea's/Vumatel
 
Phone ISP, release old MAC address, accept the new :D
 
Top
Sign up to the MyBroadband newsletter
X