Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    VLAN Help!!…..

    Scheduled Pinned Locked Moved General pfSense Questions
    20 Posts 4 Posters 1.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DerelictD
      Derelict LAYER 8 Netgate
      last edited by

      If everything was set that way it would be working.

      You're going to have to post all those settings because you obviously haven't done what you think you've done.

      Chattanooga, Tennessee, USA
      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
      Do Not Chat For Help! NO_WAN_EGRESS(TM)

      1 Reply Last reply Reply Quote 0
      • W
        wyzard
        last edited by

        Thanks.  I will play with this a bit more and see what happens.

        One more question…  for now...

        I have four ethernet ports on my pfSense box, one currently used for WAN and the other for LAN leaving two "unused".  If I run an ethernet cable from one of those ports to an open port on my switch, then set the VLAN to that interface, will the traffic from the AP on my 2nd SSID  come into port 14 and got out to the pfSense through that port?  So in other words, if I run a LAN connection from opt2 (currently unused on pfSense) to say port 20 on my switch, will my second SSID (which is identified as VLAN50) go into port 14 on my switch than out through port 20 (as log as I tag port 20 as VLAN50) to the pfsense then out to the internet?  In essences I'm separating the physical LAN ports for my main SSID and the 2nd SSID.

        Hope that makes sense.

        1 Reply Last reply Reply Quote 0
        • DerelictD
          Derelict LAYER 8 Netgate
          last edited by

          Not exactly sure what you're asking…

          ![VLAN-pfSense copy.png](/public/imported_attachments/1/VLAN-pfSense copy.png)
          ![VLAN-pfSense copy.png_thumb](/public/imported_attachments/1/VLAN-pfSense copy.png_thumb)

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • W
            wyzard
            last edited by

            I obviously don't have something right…

            How do I post screen shots here?

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              Click Attachments and other options.

              Attach files

              ![Screen Shot 2018-05-06 at 10.05.04 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2018-05-06 at 10.05.04 PM.png_thumb)
              ![Screen Shot 2018-05-06 at 10.05.04 PM.png](/public/imported_attachments/1/Screen Shot 2018-05-06 at 10.05.04 PM.png)

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • W
                wyzard
                last edited by

                Hopefully this will help figure this out..

                settings.txt

                1 Reply Last reply Reply Quote 0
                • GertjanG
                  Gertjan
                  last edited by

                  An nearly empty text file  ?

                  No "help me" PM's please. Use the forum, the community will thank you.
                  Edit : and where are the logs ??

                  1 Reply Last reply Reply Quote 0
                  • W
                    wyzard
                    last edited by

                    Try again…

                    [pfsense settings.zip](/public/imported_attachments/1/pfsense settings.zip)

                    1 Reply Last reply Reply Quote 0
                    • DerelictD
                      Derelict LAYER 8 Netgate
                      last edited by

                      What is so hard about screen shots?

                      Asking us to do a lot of work here.

                      ETA: A word document? Really?

                      EATA: What are those 5 errors in the upper right? Click that and post it.

                      ![Screen Shot 2018-05-07 at 1.10.09 AM.png](/public/imported_attachments/1/Screen Shot 2018-05-07 at 1.10.09 AM.png)
                      ![Screen Shot 2018-05-07 at 1.10.09 AM.png_thumb](/public/imported_attachments/1/Screen Shot 2018-05-07 at 1.10.09 AM.png_thumb)

                      Chattanooga, Tennessee, USA
                      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                      Do Not Chat For Help! NO_WAN_EGRESS(TM)

                      1 Reply Last reply Reply Quote 0
                      • W
                        wyzard
                        last edited by

                        There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
                        @ 2018-05-06 23:43:18
                        There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
                        @ 2018-05-06 23:48:18
                        There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
                        @ 2018-05-06 23:48:54
                        There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
                        @ 2018-05-07 00:17:09
                        There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
                        @ 2018-05-07 00:18:44

                        1 Reply Last reply Reply Quote 0
                        • W
                          wyzard
                          last edited by

                          Here's a zip with PNG images…  Sorry about the word doc.. it was late....

                          settings.zip

                          1 Reply Last reply Reply Quote 0
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator
                            last edited by

                            Your going to want to fix that bogon problem or you going to have issues with your rules..

                            System > Advanced > Firewall Maximum Table Entries

                            Set that to say 400000

                            Your rules are wrong on your iot interface that is for sure.

                            Rules are evaluated top down, first rule to trigger wins.  You have a any any rule that lets iot do anything on ipv4.  Your block to lan net would never be evaluated..  If you don't want iot going to lan net, then put that block ABOVE your any any.

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.8, 24.11

                            1 Reply Last reply Reply Quote 0
                            • W
                              wyzard
                              last edited by

                              Got it!!!

                              Thanks for all the help and patience.

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.