DHCP on pfSense VM not handing out addresses past the host

Thanks a lot, this was my issue. I'm using a miniforum MS-01 and it comes with one I226-V and one I226-LM. Switching the two interfaces helped me. The I226-V isn't affected and can be used for DHCP in the bridge mode. The USB Nic solution also worked.
I've been killing myself for days on this! exact same setup.. thankyou! Now I just need to change the NICS! lol
 
Thanks madmat777 for your detailed analysis, and thanks maximus3485 for pointing to the minisforum MS-01. That was exactly my issue as well, and switching the interfaces was the end of several hours of troubleshooting. Would not have thought that this could be a hardware issue on just one of the two NICs ...
Well i switched the NICS and disabled AMT..and tried a USB NIC and nothing would fix DHCP Server for me :( No 'external' devices ever get dhcp. I'll have to use an external source
 
if you have access to x710's then you should be using SR-IOV alongside them - you'll find significantly lower latency, better performance, lower cpu usage and hardware offloads

so your setup would look like either having the internet plugged into a managed switch and setting up a PVID vlan and then connecting your x710 PF to the switch to access that vlan, having a single cable for both WAN + LAN (using 2x SR-IOV interfaces) or setting up multiple cables and passing through a whole PF + an SR-IOV VF and doing LAN + WAN that way
 
  • Like
Reactions: MCal27
if you have access to x710's then you should be using SR-IOV alongside them - you'll find significantly lower latency, better performance, lower cpu usage and hardware offloads

so your setup would look like either having the internet plugged into a managed switch and setting up a PVID vlan and then connecting your x710 PF to the switch to access that vlan, having a single cable for both WAN + LAN (using 2x SR-IOV interfaces) or setting up multiple cables and passing through a whole PF + an SR-IOV VF and doing LAN + WAN that way
Sadly I don’t. the machines I’m using are minisforum MS01’s and though they can accept an x710 PCIe card, they cost a third as much as the pc itself apparently!
 
Sadly I don’t. the machines I’m using are minisforum MS01’s and though they can accept an x710 PCIe card, they cost a third as much as the pc itself apparently!
???

the ms01 has it built in, its the SFP ports - you should even see it when you do lspci - its one of the major reasons why people love the ms01's
 
  • Like
Reactions: MCal27
Ahh apologies. So I just need a couple of sfp to ethernet adapters assuming the switch I’ll be using (I’m not onsite until tomorrow) doesn’t have sfp ports. And these are not affected by the dhcp issues?
 
I’m reading that disabling APSM can also help when using the NICS on the ms-01 running a dhcp server solution like pfsense? I’ll try this tomorrow morning when I arrive onsite
 
i can't speak to this DHCP issue but you've got 2 different intel segments here

the intel x520's, x550's, x710's (the SFP ports) are enterprise grade nics, super well supported in freebsd / everything else and are super stable, with really good low latency (sub 100us most likely) with strong offloads that are known good and work out the box

the other ports are low power, consumer ports that aren't super vetted and likely have much higher latency

the great thing about the enterprise ones is that they all support SR-IOV, you can split each port into upto 64 nics that you can passthrough to individual VMs / containers if you wanted to and they'd all get hardware level direct access to the nics

i used an x520 for the better part of 6 years or so and it worked flawlessly - you won't go wrong with the x710