Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Does LAN traffic pass through pfSense?

    Firewalling
    4
    7
    957
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tsolrm last edited by

      So I have a pfSense box functioning as a router. It has a WAN and LAN interfaces. I have a switch connected to the LAN interface.

      Does the traffic passing through that switch in any way go through pfSense? Can I forbid communications between say all PCs on the network? I'm only interested in allowing them to access WAN

      1 Reply Last reply Reply Quote 0
      • D
        doktornotor Banned last edited by

        No.

        1 Reply Last reply Reply Quote 0
        • T
          tsolrm last edited by

          So on the LAN interface, when I edit the rule, what's the point in choosing the LAN option as the destination? If that can't be prevented anyway

          1 Reply Last reply Reply Quote 0
          • D
            doktornotor Banned last edited by

            That rule you are creating is completely pointless.

            1 Reply Last reply Reply Quote 0
            • T
              tsolrm last edited by

              Thanks for the answer.

              1 Reply Last reply Reply Quote 0
              • H
                Harvy66 last edited by

                If you don't want devices on the switch from communicating with each other, then you need to break them up into their own VLANs. The whole point of a switch is to allow all devices to communicate. The physical analogy is to have a port for each computer on your firewall, then you firewall could block them from talking to each other.

                1 Reply Last reply Reply Quote 0
                • johnpoz
                  johnpoz LAYER 8 Global Moderator last edited by

                  if you don't want lan devices talking to each other look into private vlan.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 22.05 | Lab VMs CE 2.6, 2.7

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post