[solved] pfSense GUI not reachable on WAN

Hi all (:

so i am at a little headscratcher atm.

Here is what my setup basically looks like:

               +---------------------+      
               |                     |      
               |                     |      
               |  OPNsense Firewall  |      
               |                     |      
               |                     |      
               +----------+----------+      
                          |                 
              +-----------+-----------+     
              |                       |     
              |      LAN switch       |     
              |                       |     
              +-+------------------+--+     
                |                  |        
                |                  |        
                |                  |        
+---------------+-----+            |        
|                     |         +--+-------+
|                     |         |          |
|   pfSense Firewall  |         | Desktop  |
|                     |         |          |
|                     |         +----------+
+-----------+---------+                     
            |                               
            |                               
     +------+---+                           
     |          |                           
     | Laptop   |                           
     |          |                           
     +----------+                           

So i created a firewall rule according to Allowing Remote Access to the GUI | pfSense Documentation

from the Laptop i can reach the pfsense on the lan and wan ip.
but i cant reach the pfsense on the wan ip from the desktop o.O

i have no special deny rules on the OPNsense Firewall … i can reach other devices from the desktop in the same lan just fine … but not the pfSense box :confused:

and they are even neighboring IPs like 10.0.0.9 and 10.0.0.10
does anyone have an idea?

with kind regards

in pfsense go to the ineterface setting and at the bottom is “Reserved Networks” Make sure you have both “Block private networks and loopback addresses” and “Block Bogon” networks unchecked.

1 Like

of course i missed that :see_no_evil:

thank you for the solution <3