Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DMZ a secondary router on my network

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    4 Posts 2 Posters 621 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      TBBZ8X8
      last edited by

      Ok I know this makes no sense but just bear with me.

      My house mates already had a router when I showed up with my pfsense box. I didn't want to bother them so I thought "ok Ill just pass their router right through my box so that everything appears to be the same to them but I can still get all of the pfsence goodness and fully manage the network". So I setup a port forward of ALL of the ports for their routers ip and that seemed to solve the upnp issue that they were having when trying to play videogames, and I setup a wide open vlan for the router so it had no firewall rules applied to it (its currently using my lan and I want to put firewall rules on lan). The problem is it doesn't seem to want to use the vlan. I have the port for their router set to be untaged on my switch and the port and the lan port on the switch as tagged. I setup the DHCP server, I enabled the interface, I set a valid range. Its just not taking an ip from the vlan range.

      Thank you for any advice or suggestions you may have.

      1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott
        last edited by

        @tbbz8x8 said in DMZ a secondary router on my network:

        I have the port for their router set to be untaged on my switch and the port and the lan port on the switch as tagged.

        ????

        The switch port is untagged but it's tagged???

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        1 Reply Last reply Reply Quote 0
        • T
          TBBZ8X8
          last edited by

          Sorry that was confusing.

          On the switch the lan port coming from my router, the pfsence box, is tagged.

          The port coming from my housemates router is not tagged, because people dont normally use vlans for consumer grade routers.

          1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott
            last edited by

            When you try to ping something on your house mate's network, does the tagged port LED flash? Since you have a managed switch, have to set up port mirroring so that you can watch the traffic through that port with Wireshark?

            I find using Wireshark, with port mirroring, so useful, I bought a cheap 5 port Gb, managed switch just for that purpose.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.