Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can't reach DMZ hosts from LAN - worked in 2.0

    Scheduled Pinned Locked Moved Routing and Multi WAN
    5 Posts 4 Posters 846 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P Offline
      pubmsu
      last edited by

      Hi Everyone,

      After upgrading to 2.1.x, hosts in DMZ can't be reached from LAN. DMZ and LAN are two subnets under pfSense. There was no such issue in 2.0.x.

      Any idea? We tried adding pass rule in LAN interface from LAN to DMZ and allow rule in DMZ interface from LAN to DMZ but it's still not working.

      Thanks!
      Pub

      1 Reply Last reply Reply Quote 0
      • D Offline
        divsys
        last edited by

        Hi there.

        Can you post a screenshot of your LAN and DMZ rules?

        What hardware/Nics are you using?

        -jfp

        1 Reply Last reply Reply Quote 0
        • P Offline
          pubmsu
          last edited by

          Hi there,

          Thanks for replying. Here are the screenshots of the rules:

          LAN: https://www.diigo.com/item/image/4dji/ctp9

          DMZ: https://www.diigo.com/item/image/4dji/henv

          We're using Asus EEE PC laptops with Trendnet Gigabit USB NICs - we've been on this hardware for last 3 years without any issue.

          Pub

          1 Reply Last reply Reply Quote 0
          • V Offline
            viragomann
            last edited by

            Put the rule allowing traffic from LAN to DMZ to the top! Your current top rule on LAN interface handles any destination (also DMZ) and routes traffic to a specific gateway which assumedly cannot reach DMZ.

            1 Reply Last reply Reply Quote 0
            • X Offline
              xternal
              last edited by

              See my thread here
              https://forum.pfsense.org/index.php?topic=75358.msg411290

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.