Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Bridge firewall, bridge two vlans

    General pfSense Questions
    3
    3
    2065
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      sdischer last edited by

      I have two untagged vlan interfaces on my switch, a VLAN 50 port which is connected to the WAN port of pfsense firewall and a VLAN5 port which is connected to the LAN port of the pfsense firewall.  Traffic flow is out the VLAN50 and back in on VLAN5 where my LAN hosts live on VLAN 5. 
      The switch is a Cisco 3550. 
      I see pings working, mostly but with high packet loss.  I believe the switch is getting confused becasue it sees the firewall WAN and LAN MAC's on the same port due to the bridge.
      If I put the WAN port on a separate switch it works fine. Any ideas how to make this work?
      I want to use only one switch and simply loop out one port into the firewall and then back in, obviously with the ports on different VLAN's to prevent a switch loop. 
      Incidently, I don't see and loops in the switch log or spanning tree complaints in this configuration.

      1 Reply Last reply Reply Quote 0
      • GruensFroeschli
        GruensFroeschli last edited by

        Dont use untagged traffic.
        If you want multiple VLANs to the same switch, just create multiple VLANs on the same card and assign these VLANs.
        DONT assign the real card itself.

        This thread might help you:
        http://forum.pfsense.org/index.php/topic,11193.msg62084.html#msg62084
        (Screenshots from a setup with a Netgear switch)

        1 Reply Last reply Reply Quote 0
        • C
          cheesyboofs last edited by

          You may be able to get some pointers from my setup - Obviously I have a procurve switch and not a Cisco but the principles are the same,

          http://www.cheesyboofs.co.uk/home.htm


          1 Reply Last reply Reply Quote 0
          • First post
            Last post

          Products

          • Platform Overview
          • TNSR
          • pfSense
          • Appliances

          Services

          • Training
          • Professional Services

          Support

          • Subscription Plans
          • Contact Support
          • Product Lifecycle
          • Documentation

          News

          • Media Coverage
          • Press
          • Events

          Resources

          • Blog
          • FAQ
          • Find a Partner
          • Resource Library
          • Security Information

          Company

          • About Us
          • Careers
          • Partners
          • Contact Us
          • Legal
          Our Mission

          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

          Subscribe to our Newsletter

          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

          © 2021 Rubicon Communications, LLC | Privacy Policy