Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Allow internet only for certain interfaces

    Scheduled Pinned Locked Moved Firewalling
    2 Posts 2 Posters 407 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      CJRoss
      last edited by

      I have pfSense set up with several interfaces.  Some of them are bridged while others are not.

      What I would like to do is to set up internat only access by default.  Then I can add additional rules allowing certain traffic between the various interfaces.

      What is the best way to accomplish this?  I'm not sure how to go about it with the bridged interfaces.

      Thanks.

      1 Reply Last reply Reply Quote 0
      • NogBadTheBadN
        NogBadTheBad
        last edited by

        1. Create an alias with all your subnets in.

        2. Create a rule on the interface that blocks traffic out to the above alias and place it at the top of the rule list.

        3. Create rules above the block list allowing dns & anything that the local router is supplying.

        Untitled.png
        Untitled.png_thumb

        Andy

        1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.