"Default deny rule" denies connection between subnets



  • I have pfsense set up as the firewall between my WAN connection and two subnets.
    Both subnets have connection to the WAN, but any connection between the subnets are established but then are dropped within a mater of seconds.

    I've created rules in the firewall to allow LAN connections to the "OPT" connection (other subnet) and vice versa, but these rules are being ignored and the "Default deny rule" denies the connection.

    Also each subnet has its own separate interface.

    Any ideas?



  • Update…

    I managed to make things slightly better by changing the Advanced option "Firewall Optimization Options" setting to "conservative".

    I still have packets that are blocked, and the connection isn't solid.



  • What IP ranges (and subnet masks) are you using?



  • @Cry:

    What IP ranges (and subnet masks) are you using?

    I'm using:

    10.66.1.0/24 255.255.255.0 for LAN
    &
    10.66.3.0/24 255.255.255.0 for OPT



  • What version of pfSense are you running?

    Can you post screenshots of your rules?



  • @Cry:

    What version of pfSense are you running?

    Can you post screenshots of your rules?

    I'm running pfsense version 1.2.3.
    As for the rules, I have two rules to pass any traffic from LAN to OPT, and another to pass any traffic from OPT to LAN.



  • Please post the rules, not what you think the rules are.


Locked