Cant ping my gateway on op1 interface, but can access pfsense web….
-
Okey I removed them, but still no changes
![rules lan.PNG](/public/imported_attachments/1/rules lan.PNG)
![rules lan.PNG_thumb](/public/imported_attachments/1/rules lan.PNG_thumb) -
1
-
I cannot see anything removed or improved, plus you are missing the absolutely basic rule: you do NOT allow OPT1 traffic on LAN. You allow it on OPT1 (the interfaces where the traffic first hits the firewall)
-
yeah looks like you got this .6 wanting to talk to googledns.. Going to be hard for it resolve local stuff that way ;)
What I would highly suggest is put in any any rule on Opt1, get your stuff talking!! Then put in block rules for what you don't want to talk.. Unless you don't want opt talking to lan at all?
-
update of rules
![lan updated.PNG](/public/imported_attachments/1/lan updated.PNG)
![lan updated.PNG_thumb](/public/imported_attachments/1/lan updated.PNG_thumb) -
updated opt1
![opt1 updated.PNG](/public/imported_attachments/1/opt1 updated.PNG)
![opt1 updated.PNG_thumb](/public/imported_attachments/1/opt1 updated.PNG_thumb) -
And again completely pointless with that TCP rule with a rule right below it that says any any.. You do not need this rule!!! Unless you wanted to log or something - which you clearly do not have marked.
And you rule on opt is only allow TCP, not ping (icmp) or dns which is UDP..
-
The first rule is still pointless. But yet again: You are showing us the WRONG INTERFACE!!!
You need to allow the traffic on OPT1, NOT LAN!!!!
-
Okey god… I am such an idiot............ Figured it out now........ God dam.......
-
thanks guys for sticking it out…. I am such a freaking dumb ass.....
-
Well no problem, you figured out the issue pretty fast. Some people don't get it even after a couple of days. :D
-
I felt so freaking dumb when I discovered what I had done worng. But again thaks for helping me in my less bright moments :P
-
Days? heheh dok there are some that don't get it after weeks ;) heheheh