VLAN Help!!…..
-
Thanks. I will play with this a bit more and see what happens.
One more question… for now...
I have four ethernet ports on my pfSense box, one currently used for WAN and the other for LAN leaving two "unused". If I run an ethernet cable from one of those ports to an open port on my switch, then set the VLAN to that interface, will the traffic from the AP on my 2nd SSID come into port 14 and got out to the pfSense through that port? So in other words, if I run a LAN connection from opt2 (currently unused on pfSense) to say port 20 on my switch, will my second SSID (which is identified as VLAN50) go into port 14 on my switch than out through port 20 (as log as I tag port 20 as VLAN50) to the pfsense then out to the internet? In essences I'm separating the physical LAN ports for my main SSID and the 2nd SSID.
Hope that makes sense.
-
Not exactly sure what you're asking…
![VLAN-pfSense copy.png](/public/imported_attachments/1/VLAN-pfSense copy.png)
![VLAN-pfSense copy.png_thumb](/public/imported_attachments/1/VLAN-pfSense copy.png_thumb) -
I obviously don't have something right…
How do I post screen shots here?
-
Click Attachments and other options.
Attach files
![Screen Shot 2018-05-06 at 10.05.04 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2018-05-06 at 10.05.04 PM.png_thumb)
![Screen Shot 2018-05-06 at 10.05.04 PM.png](/public/imported_attachments/1/Screen Shot 2018-05-06 at 10.05.04 PM.png) -
Hopefully this will help figure this out..
-
An nearly empty text file ?
-
Try again…
[pfsense settings.zip](/public/imported_attachments/1/pfsense settings.zip)
-
What is so hard about screen shots?
Asking us to do a lot of work here.
ETA: A word document? Really?
EATA: What are those 5 errors in the upper right? Click that and post it.
![Screen Shot 2018-05-07 at 1.10.09 AM.png](/public/imported_attachments/1/Screen Shot 2018-05-07 at 1.10.09 AM.png)
![Screen Shot 2018-05-07 at 1.10.09 AM.png_thumb](/public/imported_attachments/1/Screen Shot 2018-05-07 at 1.10.09 AM.png_thumb) -
There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
@ 2018-05-06 23:43:18
There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
@ 2018-05-06 23:48:18
There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
@ 2018-05-06 23:48:54
There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
@ 2018-05-07 00:17:09
There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: Cannot allocate memory - The line in question reads [19]: table <bogonsv6> persist file "/etc/bogonsv6"
@ 2018-05-07 00:18:44 -
Here's a zip with PNG images… Sorry about the word doc.. it was late....
-
Your going to want to fix that bogon problem or you going to have issues with your rules..
System > Advanced > Firewall Maximum Table Entries
Set that to say 400000
Your rules are wrong on your iot interface that is for sure.
Rules are evaluated top down, first rule to trigger wins. You have a any any rule that lets iot do anything on ipv4. Your block to lan net would never be evaluated.. If you don't want iot going to lan net, then put that block ABOVE your any any.
-
Got it!!!
Thanks for all the help and patience.