Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Filtering Bridge pfSense 2 RC-3 - SOLVED

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    12 Posts 4 Posters 15.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      josueharos
      last edited by

      After a couple of tests this is what i have done, with no luck

      1. Fresh Install
          xl0 –> WAN
          rl0 --> LAN
      2. Interface --> Assign --> Bridges
        - Create a new bridge
            BRIDGE0 (LAN,WAN)
      3. Interface --> Assign
          - Create a new interface and assign the bridge
          New Interface --> Bridge (BRIDGE0)
      4. Enable and set ip to Bridge New interface
      5. Create a rule on BRIDGE and LAN [ UDP 0.0.0.0 68 255.255.255.255 67 ]
      6. Create a rule on LAN [Any LAN Subnet *  * *]
      7. Set LAN and WAN type to NONE

      Hope someone can take me back to the road

      1 Reply Last reply Reply Quote 0
      • E
        eri--
        last edited by

        You have to set unser System->Advanced->Tunables
        net.link.bridge.pfil_member = 0
        net.link.bridge.pfil_bridge = 1

        1 Reply Last reply Reply Quote 0
        • W
          wallabybob
          last edited by

          @josueharos:

          5. Create a rule on BRIDGE and LAN [ UDP 0.0.0.0 68 255.255.255.255 67 ]

          This is so DHCP gets forwarded from rl0 to WAN? Does that much work?

          @josueharos:

          4. Enable and set ip to Bridge New interface
          6. Create a rule on LAN [Any LAN Subnet *  * *]
          7. Set LAN and WAN type to NONE

          So LAN doesn't have an IP address. What IP addresses will match LAN Subnet in the firewall rules?

          I setup a bridge on my pfSense to bridge ath0 (WiFi) and rl0 (wired) and have a common DHCP server. My LAN interface is bridge0 which has members ath0 and rl0.  LAN is configured with a static IP address and DHCP enabled. ath0 and rl0 have firewall rules to allow DHCP and traffic from LAN net to any. I have the default settings of net.link.bridge.pfil_member and net.link.bridge.pfil_bridge:

          net.link.bridge.pfil_member = 1
          net.link.bridge.pfil_bridge = 0

          1 Reply Last reply Reply Quote 0
          • E
            eri--
            last edited by

            4. Enable and set ip to Bridge New interface

            He wants the ip on the bridge itself.

            1 Reply Last reply Reply Quote 0
            • J
              josueharos
              last edited by

              Ok, i will make the changes to system tunables and see what happens. Should i consider adding a third interface for administration? After playing with this i needed to reset to factory default the router because i could not logon (no ips on interfaces).

              Also, is the procedure i posted above correct?

              Thank you for your time

              1 Reply Last reply Reply Quote 0
              • J
                josueharos
                last edited by

                @ermal:

                You have to set unser System->Advanced->Tunables
                net.link.bridge.pfil_member = 0
                net.link.bridge.pfil_bridge = 1

                This made the trick, also did not need a third interface for admin, just set the ip to the bridge and it worked. Thanks

                Another question, Is it possible to shape if so,which wizard should i start wizard "Dedicated Link" or "Single WAN/Multiple LAN"?

                1 Reply Last reply Reply Quote 0
                • G
                  garethevans1986
                  last edited by

                  I can't seem to be able to get this to work….I'm following the instructions and using the same version of pfsense.

                  Could you post some details about which IP Addresses your using.

                  Thanks
                  GE

                  1 Reply Last reply Reply Quote 0
                  • J
                    josueharos
                    last edited by

                    Ok, i will post screenshots as soon as i can.

                    1 Reply Last reply Reply Quote 0
                    • G
                      garethevans1986
                      last edited by

                      Thank You.

                      GE

                      1 Reply Last reply Reply Quote 0
                      • J
                        josueharos
                        last edited by

                        Sorry i was not being able to log to the bridge, but here are the screenshots

                        br1.JPG
                        br1.JPG_thumb
                        br2.JPG
                        br2.JPG_thumb
                        br3.JPG
                        br3.JPG_thumb
                        br4.JPG
                        br4.JPG_thumb
                        br5.JPG
                        br5.JPG_thumb

                        1 Reply Last reply Reply Quote 0
                        • J
                          josueharos
                          last edited by

                          Hope this helps, Bridge is made between WAN <-> OPT

                          br6.JPG
                          br6.JPG_thumb
                          br7.JPG
                          br7.JPG_thumb

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.