Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    1. Home
    2. Tags
    3. vlan
    Log in to post
    • All categories
    • H

      Assigning Clients to VLANs

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan
      12
      0 Votes
      12 Posts
      3k Views
      johnpozJ

      @hudri said in Assigning Clients to VLANs:

      where they just manually switched back and forth between the VLANs,

      You can - where you set the pc to understand the tag, but again that is not a vlan... That is some user without a clue to networking thinking they have setup a vlan and all they did is run multiple IP schemes on the same network. There is no actual security there, anything can talk to anything, be it you setup a firewall rule or not - broadcast and multicast traffic is going to be seen by every device.

      That is not a vlan. A vlan actually isolates traffic at layer 2..

      You could move your pc into another vlan that is on that port, by changing the pvid on trunk port so the untagged traffic is now in X vs Y, etc. But just changing on the IP on the pc isn't going to work if you actually have vlans setup.

    • O

      Creating VLANs and subnets (and SSIDs) using pfSense

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions vlan dd-wrt ssid
      3
      0 Votes
      3 Posts
      1k Views
      JKnottJ

      @onepiece said in Creating VLANs and subnets (and SSIDs) using pfSense:

      Do most modern APs allow multiple SSID transmissions using separate subnets simultaneously?

      Proper APs usually do, but using a router as an AP won't. Just read the specs to see what an AP can do.

      I have a Unifi AC-Lite AP, which supports multiple SSIDs and VLANs, as did a TP-Link AP I used before.

      BTW, some people here like the Unifi APs.

    • M

      No connection on WAN port

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions help wan vlan pppoe
      9
      0 Votes
      9 Posts
      2k Views
      M

      @stephenw10 I guess there is VLAN configured because I didn't need to set it on the pfsense

    • E

      SG-2100 Enabled 802.1q VLAN mode no internet on VLans

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN sg-2100 vlan 802.1q vlan
      5
      0 Votes
      5 Posts
      1k Views
      R

      I would verify with a packet capture that the traffic is crossing into the pfSense side properly.
      What's the LAN interface VLAN in the that list? 4084? 4083? 4082?

    • S

      Security of Vlan on WAN with Send options

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions security vlan wan
      19
      0 Votes
      19 Posts
      2k Views
      stephenw10S

      And logins to other more remote sites will be encrypted with https or similar.

    • M

      1u-7100 multiple vlan sur LAGG

      Watching Ignoring Scheduled Pinned Locked Moved Français vlan
      2
      0 Votes
      2 Posts
      664 Views
      M

      @msid

      Voici la configuration du switch (HP) :

      PORT 13-14-15-16 -> Agrégat des 4 liens Mode TRUNK -> Untagg le VLAN défault (1) -> TAGG sur les autres TRUNK dont le 160 (LIEN VERS LE NETGATE)
      PORT 20 -> untagg sur le VLAN 160

      e6a46564-1765-4613-91ee-c3ba37fed005.jpg

    • A

      Firewall rule problems. (Client-to-client forward)

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs rules vlan protocols smb ssh
      2
      0 Votes
      2 Posts
      883 Views
      V

      @adminproconer said in Firewall rule problems. (Client-to-client forward):

      Where should I start troubleshooting the issue?

      With the network settings and firewall config of the concerned device.

      Ensure that all devices in both subnets use pfSense as gateway.

      If you can access a device from within it's own subnet, but not from another network segment check its firewall and ensure that it allows access from outside.

    • A

      Slow traffic on VLANs (smb, sql, dns)

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs routing vlan protocols slow speed
      6
      0 Votes
      6 Posts
      2k Views
      johnpozJ

      @adminproconer And how about you remove the link aggregation..

      If still slow then I would sniff - but if you have full speed, and ping is 1ms - your issue is not network related, but most likely server or performance related.

      Sniff to see what is slow, nothing the network the router can do if server answers slowly.

    • crc_error_79C

      Silly VLAN information

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan gateway wan ppoe nat
      3
      0 Votes
      3 Posts
      1k Views
      crc_error_79C

      @bob-dig
      yes destination is internet.

      So this is why I get the NAT3 on the ps4 right?
      in short, because the vlan's gateway is not exposed to internet but is behind the wan.. right?

      sorry what you mean with If the destination is at your place then number 3
      another vlan or the lan?

      thanks again

    • K

      Hyper-V, PfSense and Vodafone Gigafast Issues

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions vodafone gigafast vlan lcp connection
      2
      0 Votes
      2 Posts
      732 Views
      stephenw10S

      Are you sure hyper-v is passing the tagged traffic? Can you test running baremetal on something?

      Steve

    • E

      Can’t access WebGUI from inside a VLAN?

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions vlan boot web gui
      4
      0 Votes
      4 Posts
      1k Views
      stephenw10S

      I assume you only have one NIC in that device?

      You can still leave LAN assigned as the parent interface directly and assign VLAN99 as an OPT interface.

      Steve

    • M

      LAN vs VLAN w/ unifi switch and UDM PRO

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs pfsense firewal unifi vlan
      16
      0 Votes
      16 Posts
      3k Views
      M

      @johnpoz Since both my phone and desktop are on LAN and the phone can see the chromecast and cast to it and the desktop cannot.

      doesn't that mean something is wrong somewhere?

    • L

      VLAN over a Bridged Wifi Router?

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan bridge guest
      15
      0 Votes
      15 Posts
      3k Views
      L

      @johnpoz : Linksys EA7300 - You said it would work, but it doesn't!!! 😆 🤣

      Not listed as supported on the DD-WRT web site. 😞

      But it is supported on OpenWRT with vLan! Yay!

      So, cool beans! I can (probably) take it from here.
      Thanks for your, and everyone's, help!!!

    • R

      pfsense, web server and VLAN's

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions web server static ip vlan switch
      42
      0 Votes
      42 Posts
      11k Views
      stephenw10S

      No worries, glad you're up and running. 👍

    • P

      Entregar IP diferente de VLAN, amarrando ao MAC

      Watching Ignoring Scheduled Pinned Locked Moved Portuguese vlan mac ubiquiti unifi wifi
      1
      0 Votes
      1 Posts
      726 Views
      No one has replied
    • L

      Captive Portal on specific VLAN prevents routing to other networks (since 22.01)

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN captiveportal vlan routing
      4
      0 Votes
      4 Posts
      1k Views
      L

      @gertjan The suggested system patch fixed the issue. Thank you!

    • C

      Configurazione OpenFiber WAN - PPPoE VLAN

      Watching Ignoring Scheduled Pinned Locked Moved Italiano openfiber wan pppoe vlan
      7
      0 Votes
      7 Posts
      4k Views
      W

      @g-luke said in Configurazione OpenFiber WAN - PPPoE VLAN:

      @wifi75 non mancava nulla.
      Avevo fatto tutto esattamente come hai suggerito tu, ma non c'era login.
      Ho chiamato il provider il quale ha inizialmente detto che poteva essere un problema del mio router, così mi sono procurato un altro router ma neanche con questo c'era login.
      Di conseguenza hanno aperto un ticket con OpenFiber, e alla fine è venuto fuori che quando hanno fatto l'allacciamento si sono dimenticati di attivare qualcosa, per cui non c'era possibilità di connettersi.
      Io avevo dato per scontato che fosse un problema di configurazione perché dopo che OpenFiber ha fatto l'allacciamento ho chiesto espressamente se la linea dovesse essere attivata dal provider, ma mi hanno assicurato che "potevo già navigare!"

      Che provider?

    • N

      Multiple VLANs in HA config

      Watching Ignoring Scheduled Pinned Locked Moved HA/CARP/VIPs vlan high availabili
      10
      0 Votes
      10 Posts
      2k Views
      N

      @viragomann said in Multiple VLANs in HA config:

      So ensure the VLAN is also properly configured on the switch.

      omg , so stupid :)

      Thx it all works now

    • W

      FTTH (AON): Fritz!Box 5530 works, pfSense not

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions ftth fiber fritzbox sfp vlan
      27
      0 Votes
      27 Posts
      5k Views
      stephenw10S

      @waldy327 said in FTTH (AON): Fritz!Box 5530 works, pfSense not:

      Or is it enough to disable
      "Hardware TCP Segmentation Offloading"
      "Hardware Large Receive Offloading"

      Those should be disabled anyway, they are disabled by default so definitely disabled them if you have set them enabled.

      Hardware offloading requires the driver and hardware to work correctly together. Something that works on an igb NIC might work on ix. It might not even work on a different NIC that also uses the igb driver.
      They usually do though because those Intels are the best supported. Intel contributes their own driver code to FreeBSD.

      To disable that as a test you can run at the command line:

      ifconfig ix0 -vlanhwfilter -vlanmtu -vlanhwtag -vlanhwcsum

      I had assumed your igb NICs are not SFP?

      Steve

    • QuasaurQ

      Wireless: Getting the MAC to the Right Interface & DHCP Server

      Watching Ignoring Scheduled Pinned Locked Moved Wireless interface vlan wireless dhcp mac-address
      13
      0 Votes
      13 Posts
      2k Views
      stephenw10S

      Yes you could use pools in one subnet and filter them differently using aliases but you can't filter traffic between the clients on one subnet that way. Traffic would just go between them directly without passing through pfSense. Only one interface.
      Really you need to use VLANs in there to separate the traffic at layer 2.

      Steve