• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

If Opt1 is bridge to LAN; due OPT1 auto follow LAN firewall Rule

Scheduled Pinned Locked Moved Routing and Multi WAN
4 Posts 2 Posters 2.1k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • T
    thenewguy1979
    last edited by Jul 18, 2009, 10:04 PM

    Okay, cannot find a clear answer yet. Some say yes, some say no.

    If I bridge my OPT1(Wireless) to my LAN network will the firewall rule for LAN be automatically apply to OPT1. Or do I still have to copy the rule over to OPT1 Firewall rule?

    Thanks

    1 Reply Last reply Reply Quote 0
    • T
      thenewguy1979
      last edited by Jul 19, 2009, 1:32 AM

      I have confirmed there is no auto routing for OPT1 even if you bridge it to LAN. The only thing Bridge does is allow OPT1 to share DCHP server with LAN and hence same subnet. But routing for OPT1 are not automatic. You still need to explicitly copy all routing rule from LAN to OPT1 since they are essentially the same subnet.

      Why doesn't PFsense do this automatic when selecting bridge mode to LAN?

      1 Reply Last reply Reply Quote 0
      • G
        GruensFroeschli
        last edited by Jul 23, 2009, 1:21 PM

        Because the rules are "per interface" and not "per subnet".
        You can have entirely different firewall rules / access privileges on one interface then on the other and still have the same subnet.

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • T
          thenewguy1979
          last edited by Jul 24, 2009, 5:26 AM

          yeah boss, got that!

          Everything is good now. Not too hard at all.

          1 Reply Last reply Reply Quote 0
          4 out of 4
          • First post
            4/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
            This community forum collects and processes your personal information.
            consent.not_received