[SOLVED] Static Routes troubles



  • Hello,
    I write because I have a big problem with static routes, the connection drops. Let me explain my situation, maybe someone can help me out, I'm from three days working on this and does not come out.

    My network is 10.0.0.0/24
    Main pfSense firewall with IP 10.0.0.2 which shares the internet and its go well.
    Cisco firewall ASA5500 with 10.0.0.1 IP without DHCP, and  holding an open tunnel with a VPN with 10.1.0.0/16 network

    By setting static routes on the PC to switch from 10.0.0.1 when you go to the VPN all works very well. The set route is this "sudo add 10.1.0.0/16 via 10.0.0.1 ip r".

    The problems come out when setting the static routes on pfSense, the route seems to work because the connection is active an you can connect to remote hosts, but after less than a minute the connection drops, always.

    What I did on pfSense:

    • I went on System-> Routing-> Gateways and added the GW LAN 10.0.0.1
    • I went on System-> Routing-> Static Routes, and added the route as well: destination network: 10.1.0.0/16, GATEWAY = 10.0.0.1.
    • I went on Firewall-> Rules-> LAN and added to the first two rules:
      –------ Rule 1: Action: pass, Interface: LAN, Family: IPv4, Protocol: any, Source: LAN net, Destination: 10.1.0.0/16
      -------- Rule 2: Action: pass, Interface: LAN, Family: IPv4, Protocol: any, Source: 10.1.0.0/16, Destination: LAN net
    • I went on System-> Advanced-> Firewall & Nat and I activated the flag "bypass firewall rules for traffic on the same interface"

    As I said, a client that connects by DHCP, getting a IP from pfSense and having as default gateway (10.0.0.2), is able to enter without problems in the 10.1.0.0/16 network, but the connection drops after less than a minute.

    I hope someone knows how to help me, thank you.



  • Seems that I solved the problem changing "State type" in "none" on the "Rule 1".