Problems with gateway of the rules.



  • Friends,

    They forgive my English, I made the text with a little translation tools of google and a little of what I already learned ;-)

    I have a PfSense here functioning as internal firewall.

    There are 3 interfaces:
    WAN - > is going for other internal nets of the company. (10.0.0.0/8)
    LAN - > is in the same net LAN: -) (10.14.6.0/24) 
    DMZ - > Net where they are the servers who take care of them you scheme of LAN and of the other net comings for the WAN. (10.14.5.0/24)

    Nat is disactivated, the objective is practically to make a roteador with filter.

    My problem is happening in interface WAN. To have access the other nets of the company, step for the roteador 10.14.1.8. but I have some server in the net 10.14.1.0 /24 that if I try to have access of my LAN or DMZ, I pass for the roteador 10.14.1.8 because of gateway of the rule. this is generating slowness and loss of packages.

    the question is:    How I make for the packages destined to the servers in the net of interface WAN are not launched to the roteador? (that he is gateway of interface WAN and default gw)

    I wait that it has been good to understand…

    TKS!



  • I wonder how that setup works at all. Your WAN subnet includes the LAN and DMZ subnet. This can't work properly. You have to rearrange your subnets in a different way. At the moment you have conflicting subnets.


Locked