Can't ping between two networks - firewall rules???



  • !!! attention the tables in this post are shown in white color - I don't know how to change it !!!

    Good morning all,

    my boss asked my to plan and setup a complete new network for our company.

    To double check my planning I want to build this network in a VMware-enviroment.

    But when setting up this enviroment I run in problems very fast - just want to ping between to networks.

    I have two networks which I want to connect to eachother.

    | Interface | Netz-IP | pfSense-IP |
    | WAN | 10.64.6.0/23 | 10.64.6.98 |
    | Server | 10.66.4.0/24 | 10.66.4.1 |

    The WAN-network is a "real2 network which is in use here at my site. I have deleted all NAT-rules and switched to manual NAT in pfSense - because i won't need it at the moment.

    To ping from server 10.66.4.2/24 to 10.64.6.101/23 I set up the following rules.

    WAN-Interface

    | Proto | Source | Port | Destination | Port | Gateway | Schedule | Desription |
    | ICMP | 10.64.6.0/23 | * | 10.66.4.0/24 | * | * | | |

    Server-Interface

    | Proto | Source | Port | Destination | Port | Gateway | Schedule | Desription |
    | ICMP | 10.66.4.0/24 | * | 10.64.6.0/23 | * | * | | |

    But when I try this ping i found the following entry in the log.

    | Act | Time | IF | Source | Destionation | Proto |
    | * | Jun 11 06:33:12 | Server | 10.66.4.2 | 10.64.6.101 | ICMP |

    Clicking on "Act" pfSense shows a box: @79 block drop in log quick all leble "Default deny rule

    Is here anybody who has an idea what I did wrong?

    Thank you very much for your help in advance.

    Best regards from Hamburg, Germany

    Alex


Locked