Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    One pfsense LAN net and two subnets, how to?

    Scheduled Pinned Locked Moved General pfSense Questions
    9 Posts 5 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      fgina
      last edited by

      Hi pfsense friends. I'm testing a set up with v2.4.5 with 1 WAN port and 1 LAN port. There are two subnets connected to pfsense's LAN port. see picture attached. machines in 10.0.1.0 subnet can ping and get out to the internet all fine. But pfsense appliance refuses all traffic coming from 10.0.2.0 subnet to it's LAN port. Other devices in both subnets can ping each other no problem. Goal is to have 10.0.2.0 subnet talk to pfsense and get to the internet. is this possible? where to configure? thank you!!pfsense.PNG

      GertjanG JKnottJ 2 Replies Last reply Reply Quote 0
      • F
        fgina
        last edited by

        adding info, pfsense is able to ping devices in 10.0.2.0 subnet successfully.

        1 Reply Last reply Reply Quote 0
        • Cool_CoronaC
          Cool_Corona
          last edited by

          Have you checvked outbound nat rules for the subnets??

          F 1 Reply Last reply Reply Quote 0
          • F
            fgina @Cool_Corona
            last edited by

            @Cool_Corona well no. The second subnet can't get a ping response from pfsense lan port. Too early to look at the WAN side, isn't it? I did add lan firewall rule to allow any to ping lan address, but that made no difference. I guess pfsense doesnt recognize the second subnet as its LAN net. So help still needed.

            1 Reply Last reply Reply Quote 0
            • GertjanG
              Gertjan @fgina
              last edited by Gertjan

              @fgina said in One pfsense LAN net and two subnets, how to?:

              and 1 LAN port

              In this order :
              If possible, go for a 'real' second NIC,
              Or, use VLAN's - you'll be needing a VLAN-capabale switch,
              Or, see what https://docs.netgate.com/pfsense/en/latest/book/firewall/virtual-ip-addresses.html can do for you.

              The last choise might imply some limitations. I never tried/used it.

              No "help me" PM's please. Use the forum, the community will thank you.
              Edit : and where are the logs ??

              F 1 Reply Last reply Reply Quote 0
              • JKnottJ
                JKnott @fgina
                last edited by

                @fgina

                You have 2 different subnets on the same NIC? What's pfSense configured for? You can't have the 2 subnets and expect pfSense to route between them. All you'll do is generate a lot of ICMP redirects. Either get a 2nd NIC or make it just 1 big subnet.

                PfSense running on Qotom mini PC
                i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                UniFi AC-Lite access point

                I haven't lost my mind. It's around here...somewhere...

                1 Reply Last reply Reply Quote 0
                • F
                  fgina @Gertjan
                  last edited by

                  Ok, looks like can't get it done with one LAN port. Was hoping pfsense would allow me to define "Lan net" spanning multiple subnets.

                  1 Reply Last reply Reply Quote 0
                  • A
                    akuma1x
                    last edited by

                    @fgina No, you actually can run multiple subnets (networks) on a single physical network port. But, you have to use VLANs and a smart/managed switch.

                    Jeff

                    F 1 Reply Last reply Reply Quote 1
                    • F
                      fgina @akuma1x
                      last edited by

                      @akuma1x okay thanks I will research a bit. the appliance VM is in azure.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.