I can ping the wifi device from the server, but not from my desktop or laptop computer. I have no clue how this is possible, it has been messing with my brain for the last couple of weeks and I just can’t figure it out. Hopefully one of you has an idea.
Well, since it seems your Server is on a different network, you’ll need to allow ICMP in both directions (DZM<->LAN) respectively. this needs to be done on your pfsense box.
It’s a netgear prosafe gs108 (non plus) switch that has no IP address, layer 2 only
Yes, that works.
I should add, it’s not just ICMP. The wifi device runs a webserver that I cannot access from the laptop or desktop, but when I use sshuttle to connect through the server it works fine.
Address HWtype HWaddress Flags Mask Iface
172.17.0.3 ether 02:42:ac:11:00:03 C docker0
172.17.0.2 ether 02:42:ac:11:00:02 C docker0
pfsense.slot ether d8:d3:85:f6:9a:2c C enp34s0
10.0.0.146 (incomplete) enp34s0
10.0.0.109 (incomplete) enp34s0
10.0.0.116 ether 98:3b:8f:bf:62:ba C enp34s0
pfsense.slot is the router (obviously) and 10.0.0.146 is the device I can’t connect to. I’m not sure what it means that the arp table shows (incomplete). It does show a mac address in the router for 10.0.0.146, 98:f4:ab:f2:8d:80
Yes, subnet 10.0.0.0/24 default gateway 10.0.0.1. DHCP range 10.0.0.2-10.0.0.254
default via 10.0.0.1 dev enp34s0 proto dhcp metric 100
10.0.0.0/24 dev enp34s0 proto kernel scope link src 10.0.0.141 metric 100
169.254.0.0/16 dev virbr0 scope link metric 1000 linkdown
172.17.0.0/16 dev docker0 proto kernel scope link src 172.17.0.1
172.18.0.0/16 dev br-2513d450bcb9 proto kernel scope link src 172.18.0.1 linkdown
172.19.0.0/16 dev br-8c27b5d04956 proto kernel scope link src 172.19.0.1
172.20.0.0/16 dev br-9efa184c5987 proto kernel scope link src 172.20.0.1 linkdown
192.168.122.0/24 dev virbr0 proto kernel scope link src 192.168.122.1 linkdown
Not much out of the ordinary I don’t think, one primary intel NIC and a couple of interfaces for docker and qemu.
Well that makes sense why it can’t connect to it if it doesn’t understand the mac address. Not sure why that would happen though. Do you have another switch you can test?
I think your default gateway should be the IP address of the router (aka pfsense virtual machine) and not the hypervisor host which it runs on (in your diagram the machine called “server”).
What’s the IP Address of the PFSense VM?
Side note - Are you running PFSense as a container?