Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can't ping between two networks - firewall rules???

    Scheduled Pinned Locked Moved Firewalling
    1 Posts 1 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      deskdevil
      last edited by

      !!! attention the tables in this post are shown in white color - I don't know how to change it !!!

      Good morning all,

      my boss asked my to plan and setup a complete new network for our company.

      To double check my planning I want to build this network in a VMware-enviroment.

      But when setting up this enviroment I run in problems very fast - just want to ping between to networks.

      I have two networks which I want to connect to eachother.

      | Interface | Netz-IP | pfSense-IP |
      | WAN | 10.64.6.0/23 | 10.64.6.98 |
      | Server | 10.66.4.0/24 | 10.66.4.1 |

      The WAN-network is a "real2 network which is in use here at my site. I have deleted all NAT-rules and switched to manual NAT in pfSense - because i won't need it at the moment.

      To ping from server 10.66.4.2/24 to 10.64.6.101/23 I set up the following rules.

      WAN-Interface

      | Proto | Source | Port | Destination | Port | Gateway | Schedule | Desription |
      | ICMP | 10.64.6.0/23 | * | 10.66.4.0/24 | * | * | | |

      Server-Interface

      | Proto | Source | Port | Destination | Port | Gateway | Schedule | Desription |
      | ICMP | 10.66.4.0/24 | * | 10.64.6.0/23 | * | * | | |

      But when I try this ping i found the following entry in the log.

      | Act | Time | IF | Source | Destionation | Proto |
      | * | Jun 11 06:33:12 | Server | 10.66.4.2 | 10.64.6.101 | ICMP |

      Clicking on "Act" pfSense shows a box: @79 block drop in log quick all leble "Default deny rule

      Is here anybody who has an idea what I did wrong?

      Thank you very much for your help in advance.

      Best regards from Hamburg, Germany

      Alex

      isn't there a jabber field in the profile?

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.