<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Rules for vlan]]></title><description><![CDATA[<p dir="auto">How can i limit 1 single computer to only access from internet and not access other computers in the same network?</p>
]]></description><link>https://forum.netgate.com/topic/101537/rules-for-vlan</link><generator>RSS for Node</generator><lastBuildDate>Sat, 11 Jul 2026 08:58:23 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/101537.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 15 Jun 2016 13:06:06 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Rules for vlan on Wed, 15 Jun 2016 14:43:43 GMT]]></title><description><![CDATA[<p dir="auto">thank you :)</p>
]]></description><link>https://forum.netgate.com/post/631833</link><guid isPermaLink="true">https://forum.netgate.com/post/631833</guid><dc:creator><![CDATA[telvenes]]></dc:creator><pubDate>Wed, 15 Jun 2016 14:43:43 GMT</pubDate></item><item><title><![CDATA[Reply to Rules for vlan on Wed, 15 Jun 2016 14:20:32 GMT]]></title><description><![CDATA[<p dir="auto">255.255.255.255 is not a subnet.. that host specific /32 mask..  Not sure what you think that does?  Normally that would never be placed on a client - that sort of mask is used in routing or a firewall rule to represent that specific IP.</p>
<p dir="auto">If you don't want a client on a network to talk to other clients on the network normally you would use a switch that provides private vlan support.</p>
<p dir="auto">https://en.wikipedia.org/wiki/Private_VLAN</p>
]]></description><link>https://forum.netgate.com/post/631822</link><guid isPermaLink="true">https://forum.netgate.com/post/631822</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Wed, 15 Jun 2016 14:20:32 GMT</pubDate></item><item><title><![CDATA[Reply to Rules for vlan on Wed, 15 Jun 2016 13:17:32 GMT]]></title><description><![CDATA[<p dir="auto">ok, thougt it was possible with subnet 255.255.255.255, but i gues they can just change it.</p>
]]></description><link>https://forum.netgate.com/post/631802</link><guid isPermaLink="true">https://forum.netgate.com/post/631802</guid><dc:creator><![CDATA[telvenes]]></dc:creator><pubDate>Wed, 15 Jun 2016 13:17:32 GMT</pubDate></item><item><title><![CDATA[Reply to Rules for vlan on Wed, 15 Jun 2016 13:08:30 GMT]]></title><description><![CDATA[<p dir="auto">"other computers in the same network?"</p>
<p dir="auto">You would need to do that switch level.  Pfsense has nothing to do with traffic between computers on the same network.  If your talking traffic from one network/vlan to another network/vlan on pfsense then sure you can create the appropriate firewall rules.</p>
<p dir="auto">But when computer on 192.168.1.100 talks to 192.168.1.101 pfsense is not part of this conversation at all..</p>
]]></description><link>https://forum.netgate.com/post/631797</link><guid isPermaLink="true">https://forum.netgate.com/post/631797</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Wed, 15 Jun 2016 13:08:30 GMT</pubDate></item></channel></rss>