No Internet on Blue Interface

So I’ve been working on this blue access line and so far I’ve gotten as far as to be able to get DHCP addresses on the Netgear wireless access point WAN. The router itself is able to complete their ping and traceroutes, but can’t get internet. Of course I set the LAN on the access point to another ip address from the WAN and that’s it, no other configurations on the access point. I have DNS with TLS on the IpFire with all DNS addresses working, but no internet.

I have the Blue Access page set to the disable mac filtering configuration with the ip/subnet, no mac address combination, to allow everyone to use it. I have a computer hooked up to the wifi access point’s ethernet with it’s mac address added to the blue access as well as my personal computer AND the zone configuration of blue set to “bridged” as per the documentation to use the ethernets on the Wifi AP, but when I try to get anything with my PC from the wifi connection, the browser says “proxy refuses connections”. Just in case, I did add both my PC and the computer hooked up2 the Wifi AP IP/Mac address combination to the blue access page, but to no avail. I have no squid configured for the blue access yet, but I would like to set a transparent proxy for it if I can get it working.

The Firewall logs show no blue0 blockings.The Firewall rules have every possible way of allowing red to blue and blue to red access possible including source port forwarding in every direction possible, but still no internet as shows:

I’ve studied every documentation/forum available but there doesn’t seem to be a solution to this problem. It seems this is a blocking problem from the ipfire itself. Anyone know what I’m missing?

This sound wrong.
If blue nic is plugged into PC directly.
Does it work.
If you have properly disabled Mac filter per wiki.
It should.
Know nothing about your AP. Setup.
Lots of us use old wifi routers as AP.
No DHCP fixed IP for router.
Do not use WAN port.

This sounds wrong
Probably Native.
Unless bridging two nic cards

This should help.

The default (after setup) is blocking blue to red

See this:

If you want blue to red you’ll need to enable this:

and follow the first OR the second section:

Disable MAC Address filtering for one client
-or-
Disable MAC Address filtering for ALL clients

Hope this helps

1 Like

I remember I read somewhere that if you wanted to use your ethernet ports on your router, you’d have to use the “bridge” configuration from the Zone Configuration. I have the IpFire blue0 ethernet plugged into the WAN port of the router, just seemed like that was the right thing to?? I didn’t think you’d plug it into a lan port?

Yes, this is recommended for the ISP gateway device. For me it is a cable modem. I am not sure what it may be for you.

I have IpFire hooked directly up2 the modem then from the modem to the wireless router.

similar to this?

yes Jon, that’s my set up, obviously I went wrong somewhere…

Then you can disable all of your firewall rules (above), they are not needed.

You only need Blue Access setup to get from BLUE to RED

Well, when I just didn’t have firewall rules set up, the wireless access point didn’t get any DHCP addresses at all? The Firewall rules we’re what allowed the router to get the addresses?

Place the wiki.ipfire.org - Zone Configuration back to default also.

yes, if DHCP window is setup correctly. Post a picture of that WebGUI page

Here is my page

okay, I shut the “Bridge” from the Zone Configuration

maybe I have to start over, this is the last thing I did but I did turn all the other configuration off for this

Please include the top of the page for GREEN zone

Is BLUE not getting DHCP addresses?

so when I delete all the firewall rules, what happens is the wifi router’s WAN port goes red, meaning I get no connection to the firewall at all…

Also, I wanted to use another IP address for the Green0 but then I couldn’t reach the web UI at all, until I changed it back to the 192.168.60.1 address… I was hoping I could change that once everything starts to work

Still means something is not set right. That is why I was hoping to see the DHCP WebGUI page

Here’s this too… seems legit, but the WAN port on the router says no connection at all with the basic set up… it was the firewall rules that at least got it to accept the DHCP numbers… now the router, without the firewall rules, can’t DHCP the device

Now post the BLUE Access WebGUI page.

This would be a good reason to start over.

But let’s keep going for now. I thing we are going the right way