Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Creating rules

    Scheduled Pinned Locked Moved General pfSense Questions
    3 Posts 2 Posters 830 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      Sharaz
      last edited by

      what is the difference between Source: Lan Address and Lan Subnet, and what different situations call for what?

      so far i only have ever used Lan Subnet (or subnets of other lan-side-vlans).

      thanks!

      Jonathan

      1 Reply Last reply Reply Quote 0
      • S
        Sharaz
        last edited by

        ok, googling after i posted shows me part of the answer i was looking for.

        i am wondering if i can use those to differentiate between say, traffic that is allowed to access host ips on the subnet, and traffic that is allowed to traverse the interface into the next subnet?

        ie, id like to have an eaiser way to have a subnet that is only allowed to access the internet.  rihgt now i solve that by creating an alias called "all local subnet", i put the subnet of all my vlans in there, and then i source: vlan: target: all_local_subnets and then so far thats working. but its cumbersome, and im just looking for simpler/more correct way of doing things.

        Jonathan

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by

          Where are you putting this rule - why would you not put the rule on the vlan interface?  And the source would be that vlans network.

          Why do you think you need to create an alias to contain all your vlans?  To allow them to access the internet?

          Can you post pictures of your rules.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.