listhor
Contributor
- Joined
- Mar 2, 2020
- Messages
- 133
I have configured a few interfaces in FreeNAS:
Routing
I would expect that communication to and from specific interface goes through its respective gateway (which is not configurable). But it's not that case, everything goes back through default gateway.
If I remove default gateway, than FreeNAS looses all connectivity.
vlan15 supposed to be going through VPN gateway configured in my router, but since data in FreeNAS goes through its default gateway - everything leaks out...
I found this thread: https://www.ixsystems.com/community/threads/gui-not-accessible-without-default-gateway.78747/
So, it means that there is no other way, no hope left??
Code:
igb0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: LAN3
options=6403bb<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,JUMBO_MTU,VLAN_HWCSUM,TSO4,TSO6,VLAN_HWTSO,RXCSUM_IPV6,TXCSUM_IPV6>
ether ac:1f:6b:d7:fb:c5
hwaddr ac:1f:6b:d7:fb:c6
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect (1000baseT <full-duplex>)
status: active
vmx0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: storage net esxi
options=60039b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM,TSO4,TSO6,RXCSUM_IPV6,TXCSUM_IPV6>
ether 00:0c:29:eb:9e:f5
hwaddr 00:0c:29:eb:9e:f5
inet 10.55.1.2 netmask 0xffff0000 broadcast 10.55.255.255
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect
status: active
vmx1: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: Trunk
options=60039b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM,TSO4,TSO6,RXCSUM_IPV6,TXCSUM_IPV6>
ether 00:0c:29:eb:9e:ff
hwaddr 00:0c:29:eb:9e:ff
inet 172.16.0.9 netmask 0xffffff00 broadcast 172.16.0.255
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect
status: active
igb1: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: LAN2
options=6403bb<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,JUMBO_MTU,VLAN_HWCSUM,TSO4,TSO6,VLAN_HWTSO,RXCSUM_IPV6,TXCSUM_IPV6>
ether ac:1f:6b:d7:fb:c5
hwaddr ac:1f:6b:d7:fb:c5
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect (1000baseT <full-duplex>)
status: active
igb2: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: LAN4
options=6403bb<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,JUMBO_MTU,VLAN_HWCSUM,TSO4,TSO6,VLAN_HWTSO,RXCSUM_IPV6,TXCSUM_IPV6>
ether ac:1f:6b:d7:fb:c7
hwaddr ac:1f:6b:d7:fb:c7
inet 172.17.0.9 netmask 0xffffff00 broadcast 172.17.0.255
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect
status: no carrier
lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384
options=680003<RXCSUM,TXCSUM,LINKSTATE,RXCSUM_IPV6,TXCSUM_IPV6>
inet6 ::1 prefixlen 128
inet6 fe80::1%lo0 prefixlen 64 scopeid 0x6
inet 127.0.0.1 netmask 0xff000000
nd6 options=21<PERFORMNUD,AUTO_LINKLOCAL>
groups: lo
lagg4095: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: Trunk
options=6403bb<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,JUMBO_MTU,VLAN_HWCSUM,TSO4,TSO6,VLAN_HWTSO,RXCSUM_IPV6,TXCSUM_IPV6>
ether ac:1f:6b:d7:fb:c5
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect
status: active
groups: lagg
laggproto lacp lagghash l2,l3,l4
laggport: igb0 flags=1c<ACTIVE,COLLECTING,DISTRIBUTING>
laggport: igb1 flags=1c<ACTIVE,COLLECTING,DISTRIBUTING>
vlan11: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: Zasoby
options=600303<RXCSUM,TXCSUM,TSO4,TSO6,RXCSUM_IPV6,TXCSUM_IPV6>
ether ac:1f:6b:d7:fb:c5
inet 172.16.1.2 netmask 0xffffffc0 broadcast 172.16.1.63
inet 172.16.1.5 netmask 0xffffffc0 broadcast 172.16.1.63
inet 172.16.1.3 netmask 0xffffffc0 broadcast 172.16.1.63
inet 172.16.1.4 netmask 0xffffffc0 broadcast 172.16.1.63
inet 172.16.1.62 netmask 0xffffffc0 broadcast 172.16.1.63
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect
status: active
vlan: 11 vlanpcp: 2 parent interface: lagg4095
groups: vlan
vlan13: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 9000
description: Dzieci
options=600303<RXCSUM,TXCSUM,TSO4,TSO6,RXCSUM_IPV6,TXCSUM_IPV6>
ether ac:1f:6b:d7:fb:c5
inet 172.16.3.14 netmask 0xfffffff0 broadcast 172.16.3.15
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect
status: active
vlan: 13 vlanpcp: 0 parent interface: lagg4095
groups: vlan
vlan15: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
description: VPN
options=600303<RXCSUM,TXCSUM,TSO4,TSO6,RXCSUM_IPV6,TXCSUM_IPV6>
ether ac:1f:6b:d7:fb:c5
inet 172.16.5.4 netmask 0xfffffff0 broadcast 172.16.5.15
inet 172.16.5.5 netmask 0xfffffff0 broadcast 172.16.5.15
nd6 options=9<PERFORMNUD,IFDISABLED>
media: Ethernet autoselect
status: active
vlan: 15 vlanpcp: 1 parent interface: lagg4095
groups: vlanRouting
Code:
Routing tables Internet: Destination Gateway Flags Netif Expire default 172.16.1.1 UGS vlan11 10.55.0.0/16 link#2 U vmx0 10.55.1.2 link#2 UHS lo0 127.0.0.1 lo0 UHS lo0 172.16.0.0/24 link#3 U vmx1 172.16.0.9 link#3 UHS lo0 172.16.1.0/26 link#8 U vlan11 172.16.1.2 link#8 UHS lo0 172.16.1.3 link#8 UHS lo0 172.16.1.4 link#8 UHS lo0 172.16.1.5 link#8 UHS lo0 172.16.1.62 link#8 UHS lo0 172.16.3.0/28 link#9 U vlan13 172.16.3.14 link#9 UHS lo0 172.16.5.0/28 link#11 U vlan15 172.16.5.4 link#11 UHS lo0 172.16.5.5 link#11 UHS lo0 172.17.0.0/24 link#5 U igb2 172.17.0.9 link#5 UHS lo0
I would expect that communication to and from specific interface goes through its respective gateway (which is not configurable). But it's not that case, everything goes back through default gateway.
Code:
traceroute -i vlan15 1.1.1.1 traceroute to 1.1.1.1 (1.1.1.1), 64 hops max, 40 byte packets 1 172.16.1.1 (172.16.1.1) 0.311 ms 0.195 ms 0.158 ms (....)
If I remove default gateway, than FreeNAS looses all connectivity.
vlan15 supposed to be going through VPN gateway configured in my router, but since data in FreeNAS goes through its default gateway - everything leaks out...
I found this thread: https://www.ixsystems.com/community/threads/gui-not-accessible-without-default-gateway.78747/
So, it means that there is no other way, no hope left??