Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Does VLAN traffic go direct between devices?

    Scheduled Pinned Locked Moved Routing and Multi WAN
    3 Posts 2 Posters 293 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      Binson_Buzz
      last edited by

      Please bear with me as I have a basic question I don't know the answer to and I have tried google.

      I know that when LAN devices are connected to a switch, traffic from Device A can go to Device B without needing to go via a router.

      My question is - what happens when Device A and Device B are on a VLAN and I have a managed switch? Does traffic between devices still go direct or does it have to go via pfsense? Or, does pfsense just 'tell' the switch if traffic is allowed without the data having to actually go via pfsense e.g. if A is a media server does the full movie data have to go via pfsense or does it go direct to B once pfsense says it's ok?

      I'm trying to do some capacity planning on my network and I'm trying to understand if I need another nic connected to the switch to cover LAN traffic on top of my WAN-LAN traffic that is set to increase as I get a gigabit connection.

      Thanks in advance

      CPU: Intel Xeon E5-2683 V3 | MB: ASUS X-99-A II | Memory: Crucial 8x 8GB DDR4-2133
      PSU: Corsair AX760 | Case: Define R5 Blackout Window
      unRAID 6.3.2 VMs: pfSense, 3x Windows 10 Pro | Network: AOC-SGP-I2, 2x UniFi AP AC Pro

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        Either it all goes direct via the switch; if both A and B are on the same VLAN.

        Or it all goes via pfSense; if A and B are on different VLANs (different subnets) then routing between them is required.

        The only exception to that would be if the switch is layer 3 and can route itself.

        Steve

        1 Reply Last reply Reply Quote 1
        • B
          Binson_Buzz
          last edited by

          Thanks - that makes sense and helps me plan upgrades

          CPU: Intel Xeon E5-2683 V3 | MB: ASUS X-99-A II | Memory: Crucial 8x 8GB DDR4-2133
          PSU: Corsair AX760 | Case: Define R5 Blackout Window
          unRAID 6.3.2 VMs: pfSense, 3x Windows 10 Pro | Network: AOC-SGP-I2, 2x UniFi AP AC Pro

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.