I’ve run into an issue with a USG, where it seems to block certain websites. For all intents and purposes this is a virgin install.

Some back story. Client needs to be able to connect security cameras and view them from outside network. He just wants it to work, but the old existing infrastructure wasn’t allowing proper port forwarding. I came in and installed CloudKey, USG3 & 3 UAP-Pro’s. Everyting was working properly then 2 weeks later he’s put the ISP router into bridge mode. OK so we setup PPoE on the WAN port of the USG, but this doesn’t work as planned, now certain websites won’t load. I haven’t made any changes to any rules on the CloudKey. I’d taken a backup of the config from after I’d set it up, I’ve tried restoring that file, nothing seems to be working. ISP modem is a ZyXEL.

This is installed on a small network (8 workstations, a single 24 port unmanaged switch, 3 UAP-Pro’s, CloudKey, 35 wireless devices).

My troubleshooting steps have included:

  • Running the latest firmware on all devices (Dec 11/2018)

  • Reset USG, cloud key and all AP’s to factory

  • replaced cloud key,

  • swapped ports on the ADSL modem

  • Firewall: changing WAN IN/OUT firewall rules to ALLOW ALL source/destination
    It doesn’t seem to make any sense, I’ve even tried rolling back to when I knew it worked, removed bridge functionality, set WAN to DHCP. Do I have a dud LAN port?
    Any ideas would be appreciated. I’m at a loss as to what else this might be.

@Ubiquiti_Inc

9 Spice ups

Has the ISP cleared the arp table in the modem? Everytime I change out firewalls I have to call the ISP support line to have them do this or nobody can get internet access.

1 Spice up

I had a similar issue where some websites wouldn’t load after I changed the ISP modem to bridged mode behind a firewall. I ended up lowering the MTU on the WAN port to solve it.

What MTU are yo using on the WAN connection? Have you asked what MTU the ISP recommends.

1 Spice up

Is the router in bridge mode and actually allowing ports to connect to lets say a laptop or device plugged in directly to the Router?

MTU on ISP modem is 1492, mirrored on USG.

Modem has been reset using the universal reset button (ie paper clip). I’m assuming this clears out ARP tables as well as everything else.

So after some more troubleshooting I unplugged the DSL WAN port and checked its connection. Turns out it all stemmed from the RJ11 connector; changed that plugged back in and everything now works.

Thanks for all who’ve given their responses. Issue resolved.

Good, it made sense.