Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cant block opt1

    Scheduled Pinned Locked Moved Firewalling
    5 Posts 3 Posters 818 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C Offline
      chrisf
      last edited by

      So i've google the heck out of this and have found a ton of posts on how to do what im trying to do. Hence my post. I cant get it to work. I have a pfsense box with 4 nics. I'm using 3. WAN, LAN, SECURITY.

      I have internet working on LAN and SECURITY. DHCP server on both.
      WAN –> ISP
      LAN --> 192.168.1.0/24
      SECURITY--> 10.0.10.0/24
      Simple setup I thought. Both have internet access and it's working great. I simply want to block SECURITY from communication with LAN and vise versa. I'm attaching pics of my rules.

      LAN.PNG
      LAN.PNG_thumb
      Security.PNG
      Security.PNG_thumb
      WAN.PNG
      WAN.PNG_thumb
      Capture.PNG
      Capture.PNG_thumb

      1 Reply Last reply Reply Quote 0
      • V Offline
        viragomann
        last edited by

        The rules are processed from the top to the bottom. If a rule match it is applied and others below are ignored.
        So you have to put the block rules to the top of the rule sets, otherwise they are nether applied.

        1 Reply Last reply Reply Quote 0
        • B Offline
          biggsy
          last edited by

          You'll also need to reverse the source and destination networks in the rules.

          1 Reply Last reply Reply Quote 0
          • V Offline
            viragomann
            last edited by

            @biggsy:

            You'll also need to reverse the source and destination networks in the rules.

            Of course, on the LAN block rule. Not noticed that.

            1 Reply Last reply Reply Quote 0
            • C Offline
              chrisf
              last edited by

              Thank you sir. Switch the order and good to go. Obviously new to pfsense.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.