Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Noob needs help with basic routing

    Scheduled Pinned Locked Moved Routing and Multi WAN
    8 Posts 3 Posters 873 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      artisticcheese
      last edited by

      Hello,

      I run PfSense in Hyper-V. I have 3 networks defined in Hyper-V and have Pfsense with 3 NICs

      1. WAN 192.168.1.0/24 (pfsense assigned 192.168.1.28)
      2. Network1 10.1.0.0/24 (pfsense assigned 10.1.0.1)
      3. Network2 10.2.0.0/24 (pfsense assigned 10.2.0.1)

      Pfsense is installed and running. I need Network1 and Network2 to be able to talk to each other and to Internet through pfsense.
      What specifically do I need to add into PfSense to make it work?

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @artisticcheese
        last edited by johnpoz

        @artisticcheese nothing really other then create rules on interfaces that you create, only lan has default rules - if you create new interface you would need to add the rules you want on that interface.

        Out of the box pfsense will have routes to any network its directly attached too. Unless you modified the outbound nat from auto, when you create a new interface with a network, it would auto be natted to your wan address.

        There is nothing "special" you would have to do with pfsense other than create the network and assign the rules, enable dhcp if you want on that network, etc..

        You didn't plug these 2 interfaces into the same dumb switch did you? That would be very problematic - especially with dhcp. You would need 2 different physical dumb switches, or a vlan capable switch you setup to isolate the 2 networks, etc.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        A 1 Reply Last reply Reply Quote 0
        • A
          artisticcheese @johnpoz
          last edited by artisticcheese

          @johnpoz This is Hyper-V virtual switch, so there is nothing physical about whole setup.
          I have no issues routing from either Network1 or Network2 to internet via pfSense but Network1 can not talk to Network2. Firewall feature is disabled on pfsense, so it's not ACL either.
          Here is what HyperV looks like
          19dcc56b-34d2-439c-a28c-650e9989edae-image.png

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @artisticcheese
            last edited by

            @artisticcheese what you do in in hyper-v has nothing to do with pfsense. Pfsense doesn't care if its connected to physical or virtual.. It just routing and firewalling traffic it sees on its interfaces - be they real or virtual.

            What you posted doesn't even show pfsense running.. So not sure what that has to do with anything. Your problem is in your virtual setup most likely.. As stated pfsense will know how to route between any network its directly attached to.. Now if that traffic never gets to pfsense in the first place - then its kind of hard for pfsense to "route" it.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            A 1 Reply Last reply Reply Quote 0
            • A
              artisticcheese @johnpoz
              last edited by

              @johnpoz
              Checking and unchecking this checkbox fixed all the issues. There were no other changes other then that. Thanks.

              29adb42f-d9a0-4c93-abc9-c6c1f091ef87-image.png

              johnpozJ 1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator @artisticcheese
                last edited by

                @artisticcheese have no idea what why you would of disabled packet filtering.. That for sure is not pfsense out of the box. Did you want want pfsense to only route? If so then it sure wouldn't of been natting any networks attached to its wan IP.

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.8, 24.11

                S 1 Reply Last reply Reply Quote 0
                • S
                  SteveITS Galactic Empire @johnpoz
                  last edited by

                  @johnpoz Would that apply/read in any saved-but-not-Applied rules? (which a restart should do as well)

                  Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                  When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                  Upvote 👍 helpful posts!

                  johnpozJ 1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator @SteveITS
                    last edited by

                    @SteveITS yeah I would think restarting pf would force the loading of rules.. Which you could just also do with filter reload under status.

                    Or you would of thought of just reboot pfsense if something wasn't working, etc.

                    Not sure how they would of gotten that deep into the weeds of disable and then reenable pf?

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.