<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[VLAN cannot access private network behind another router]]></title><description><![CDATA[<p dir="auto">I have a private network behind my pfsense firewall.</p>
<p dir="auto">Router WAN connected to pfsense VLAN 20, Route LAN is 10.0.0.0/8 private network.<br />
-10.0.0.0/8 Private network<br />
-VLAN 20 Gateway is 192.168.20.1<br />
-router WAN IP is 192.168.20.11 dynamically assigned by pfsense VLAN 20 dhcp server<br />
-router LAN IP is 10.0.0.1</p>
<p dir="auto">I am trying to ssh server 10.0.0.198 but cannot get to the server.</p>
<p dir="auto">On the router, I set NAT Virtual Server external IP 192.168.20.11 port 22 and internal IP 10.0.0.198 port 22.</p>
<p dir="auto">ssh root@192.168.20.11 does not work.</p>
<p dir="auto">I can ping 192.168.20.1 and 192.168.20.11.  I can get to the router's webgui at 192.168.20.11.  But somehow, the port forwarding is not working.</p>
<p dir="auto">Does anyone have experiencing in setting this up before?</p>
<p dir="auto">Thanks!</p>
]]></description><link>https://forum.netgate.com/topic/178646/vlan-cannot-access-private-network-behind-another-router</link><generator>RSS for Node</generator><lastBuildDate>Thu, 17 Sep 2026 03:48:09 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/178646.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 10 Mar 2023 19:40:21 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to VLAN cannot access private network behind another router on Fri, 10 Mar 2023 20:51:35 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/sho1sho1sho1">@<bdi>sho1sho1sho1</bdi></a> said in <a href="/post/1093440">VLAN cannot access private network behind another router</a>:</p>
<blockquote>
<p dir="auto">-router WAN IP is 192.168.20.11 dynamically assigned by pfsense VLAN 20 dhcp server<br />
-router LAN IP is 10.0.0.1</p>
</blockquote>
<p dir="auto">So if your wan of pfsense is rfc1918 this 192.168.20 address.  And you want to get to 10.0.0.x on pfsense lan, if pfsense is doing nat.. Yes you would have to setup a port forward.</p>
<p dir="auto">Also you would have to disable the block rfc1918 rule on pfsense wan.  This rule blocks source IPs of rfc1918, which I would assume your client your trying to ssh to this 10.box is on..</p>
]]></description><link>https://forum.netgate.com/post/1093448</link><guid isPermaLink="true">https://forum.netgate.com/post/1093448</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Fri, 10 Mar 2023 20:51:35 GMT</pubDate></item><item><title><![CDATA[Reply to VLAN cannot access private network behind another router on Fri, 10 Mar 2023 20:18:15 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/sho1sho1sho1">@<bdi>sho1sho1sho1</bdi></a><br />
Possibly pfSense is listening on port 22.<br />
Check the settings in <em>System &gt; Advanced &gt; Admin Access &gt; Secure Shell Server</em>.</p>
<p dir="auto">Maybe change either port.</p>
]]></description><link>https://forum.netgate.com/post/1093444</link><guid isPermaLink="true">https://forum.netgate.com/post/1093444</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Fri, 10 Mar 2023 20:18:15 GMT</pubDate></item></channel></rss>