Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Does LAN traffic pass through pfSense?

    Scheduled Pinned Locked Moved Firewalling
    7 Posts 4 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tsolrm
      last edited by

      So I have a pfSense box functioning as a router. It has a WAN and LAN interfaces. I have a switch connected to the LAN interface.

      Does the traffic passing through that switch in any way go through pfSense? Can I forbid communications between say all PCs on the network? I'm only interested in allowing them to access WAN

      1 Reply Last reply Reply Quote 0
      • D
        doktornotor Banned
        last edited by

        No.

        1 Reply Last reply Reply Quote 0
        • T
          tsolrm
          last edited by

          So on the LAN interface, when I edit the rule, what's the point in choosing the LAN option as the destination? If that can't be prevented anyway

          1 Reply Last reply Reply Quote 0
          • D
            doktornotor Banned
            last edited by

            That rule you are creating is completely pointless.

            1 Reply Last reply Reply Quote 0
            • T
              tsolrm
              last edited by

              Thanks for the answer.

              1 Reply Last reply Reply Quote 0
              • H
                Harvy66
                last edited by

                If you don't want devices on the switch from communicating with each other, then you need to break them up into their own VLANs. The whole point of a switch is to allow all devices to communicate. The physical analogy is to have a port for each computer on your firewall, then you firewall could block them from talking to each other.

                1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator
                  last edited by

                  if you don't want lan devices talking to each other look into private vlan.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.