Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    HELP! Firewall blocking same subnet

    Scheduled Pinned Locked Moved Firewalling
    4 Posts 2 Posters 3.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      charles.regan
      last edited by

      Dec 6 05:30:57 WAN 149.217.134.211 149.217.134.186 ICMP

      WAN : 149.217.134.184/29 (255.255.255.248)
      OPT1 : 149.217.134.0/24  (255.255.255.0)
      LAN : 10.0.0.0/24

      When a host on OPT1 ping my WAN it is blocked by the firewall.

      ???

      How to fix this?
      Thanks

      1 Reply Last reply Reply Quote 0
      • C
        charles.regan
        last edited by

        If i activate this option, i can ping my WAN interface no problem.

        Shared Physical Network
          This will suppress ARP messages when interfaces share the same physical network

        But it won't work with NAT, it's trying to access my server internal ip address…

        Dec 6 05:47:36 WAN 149.217.134.254:3142 10.0.0.2:21 TCP
        Dec 6 05:47:33 WAN 149.217.134.251:1028 10.0.0.2:53 TCP

        PFSENSE thinks both network are on the same subnet, but they are not!!!

        Thank you so much!!!

        1 Reply Last reply Reply Quote 0
        • C
          charles.regan
          last edited by

          This is crazy!!

          Now for no apparent reason I can't PING my WAN !? 30 minutes ago I could!!!

          Dec 6 06:28:37  WAN  149.217.134.211  149.217.134.186  ICMP

          Help me please. Thank you.

          1 Reply Last reply Reply Quote 0
          • H
            hoba
            last edited by

            @charles.regan:

            PFSENSE thinks both network are on the same subnet, but they are not!!!

            Sure they are! 149.217.134.0/24 includes 149.217.134.184/29. There is no router in the whole wide world that can handle this  ;)

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.