Multi Lan bridging - not working

  • Hi all.

    I am trying to setup bridging on my Lan interface a and opt2 interface. Both segments are on there own physical switches as I am segmenting a all ready existing network and really can not change the IPs and use routing. The PF box acts as a internet firewall as well and has a Wireless lan.

    So here is what I did. I setup Opt2 as a bridge to Lan. turned off all the filtering on Opt2 and Lan. I can get to the internet from both networks with out issue but can not move any traffic between Lan and Opt2. For clarity here is the interface layout

    Wan - Internet connection
    Lan - main intern network
    Opt1 (wlan) wireless network
    Opt2 (sec_lan) second switch I am trying to bridge with Lan.

    Hope that makes sense.

    Any help on this issue would be greatly appreciated. I will be taking this working model and putting it to work in a much larger network soon.



  • I have used this setup several times using an ALIX board so I know it works.  Ensure you're using 1.2.3 and check your firewall logs to make sure you don't have a rule that's blocking something.  This should work without any drama.

  • Thanks for the reply and your right it was a rules issue.

    So now I have moved on with a fresh install. I am bridging switch0 with switch1 (0 is on the wan interface, 1 is LAN interface) and I have followed the bridging guide. I can ping traffic from the LAN connected switch to the Wan connected devices with out issue but can not ping from wan connected devices to the LAN connected devices. I can if I go to advanced setting  and disable filtering. I have a rule for everything to everything on the wan interface but no luck. Any help would be much appreciated.

    One more question, if I build a new system and put 3 interfaces in the system, bridge LAN and opt1 and just ignore wan all together would that get around any funkiness?

    Thanks again everyone and thanks to the PFSense devs. You guys have done a fantastic job with this product. I am really looking forward to 2.0.


Log in to reply