Bug or i do not know how to…?



  • PF:
    1 wan (dchp) 192.168.2.* (ip is getting by dhcp from adsl router)
    2 lan (dchp) 192.168.1.*  (ip for pf is fixed, all other computers gets ip from this dhcp srv)

    I am trying to block lan traffic between this 2 separate LANs (wan(lan1) has own lan).
    I tried to enter on lan firewall block all 192.168.1.0/8 192.168.2.0/8
    whatever i do i can from lan2 connect to services on lan1?



  • Maybe /16 or something else?



  • You don't say what rules you created where - remember that you block traffic leaving any network, though by default it won't allow WAN to LAN traffic.  If you're seeing that then it sounds like you've added a default pass-all rule.

    It would help if you posted a screen capture of the rules on the WAN interface.



  • I run into this all the time.  the first thing that I do,  is change the ASDL modem to bridge mode.  This puts the external ip on the pfsense device.  I have haveing a firewall behind a firewall.

    The only time I have kept the orginal configuration is when I need a DMZ.

    Any questions kept posting here or send me a internal email.

    RC



  • @Cry:

    You don't say what rules you created where - remember that you block traffic leaving any network, though by default it won't allow WAN to LAN traffic.  If you're seeing that then it sounds like you've added a default pass-all rule.

    It would help if you posted a screen capture of the rules on the WAN interface.

    I change only mask on lan devices to /8 and now i can not touch another lan. Hmmm, maybe i didn' enable fw. Where should I click?



  • @fastcon68:

    I run into this all the time.  the first thing that I do,  is change the ASDL modem to bridge mode.  This puts the external ip on the pfsense device.  I have haveing a firewall behind a firewall.

    The only time I have kept the orginal configuration is when I need a DMZ.

    Any questions kept posting here or send me a internal email.

    RC

    I am fine width router mode. Just want to know how to effective use firewall.


Log in to reply