Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Route LAN and OPT

    Scheduled Pinned Locked Moved Firewalling
    2 Posts 2 Posters 3.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B Offline
      bryandj23
      last edited by

      Hi All.  I have the following setup:

      (WAN) –--pfsense ---LAN ---192.168.200.0/24 --switch  ---W2k8, DHCP, DNS, Radius, etc.
                        |
                        |
                      opt - 10.0.0.1/16
                        |
                        |----switch --- Mikrotik Routerboard - 10.0.0.10
                                  |
                                  |
                                  laptop - 10.0.0.35

      I'm trying to route LAN and OPT.  I believe I've configured appropriate rules (basically to allow anything from LAN to OPT and from OPT to LAN)....but:

      1.  Laptop hardwired as in diagram, can ping Mikrotik @ 10.0.0.10.
      2.  Laptop hardwired as in diagram, can ping 10.0.0.1 and 192.168.200.1, 192.168.200.2, etc.

      3.  Laptop wireless with 192.168.200.101 address can ping 192.168.200.1, and 10.0.0.1.
      4.  Laptop wireless with 192.168.200.101 CANNOT ping 10.0.0.10 (nor connect via Winbox)

      5.  Mikrotik can ping 10.0.0.1 (static route in Mikrotik of 0.0.0.0 via 10.0.0.1)
      6.  Mikrotik cannot ping 192.168.200.1

      Firewall logs show traffic is allowed and going between LAN and OPT (it'll show pings from laptop to mikrotik), but the requests still time out.

      Should copying the default rule from the LAN interface be sufficient enough?  I'll delete my rules on OPT and try that if it's suggested.

      Thanks in advance!

      1 Reply Last reply Reply Quote 0
      • S Offline
        shadowadepts
        last edited by

        plz post your rules! and you should the only bridge options for have 'opt1' set to (lan) and the 'type' set to static

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.