Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Inter vlan communication

    Scheduled Pinned Locked Moved Firewalling
    5 Posts 3 Posters 1.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E Offline
      eskimos
      last edited by

      Hey I'm having some issues with trying to get 2 vlans to communicate.

      I have Lan and Vlan101.  I do have other Vlans which are working properly.  But with my newly created VLAN101, I can ping from VLAN101 to Lan.  But cannot Pint from Lan to VLAN101

      I think I got the rules set properly but i'm pretty sure its a firewall issue.  I turned off Symantec fully and disabled windows firewall.

      I also Included Vlan31 screen which works.

      I can ping the DG of the vlan101 from LAN, but not anything inside the vlan101.  DHCP works and vlan101 can get internet access.

      Any help would be appreciated,
      Thanks

      vlan101.png
      vlan101.png_thumb
      vlan31.png
      vlan31.png_thumb
      ![interface 101.png](/public/imported_attachments/1/interface 101.png)
      ![interface 101.png_thumb](/public/imported_attachments/1/interface 101.png_thumb)
      ![interface 101 dhcp.png](/public/imported_attachments/1/interface 101 dhcp.png)
      ![interface 101 dhcp.png_thumb](/public/imported_attachments/1/interface 101 dhcp.png_thumb)
      ![lan rules.png](/public/imported_attachments/1/lan rules.png)
      ![lan rules.png_thumb](/public/imported_attachments/1/lan rules.png_thumb)

      1 Reply Last reply Reply Quote 0
      • DerelictD Offline
        Derelict LAYER 8 Netgate
        last edited by

        Your interface address should not be inside the DHCP Pool.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • E Offline
          eskimos
          last edited by

          Fixed it, but that wasnt the problem.

          total of 4 devices on that vlan

          1 Reply Last reply Reply Quote 0
          • johnpozJ Offline
            johnpoz LAYER 8 Global Moderator
            last edited by

            looks ok to me..  So your saying you can ping lan devices from vlan101, but not from lan to vlan101

            I would really look to the client on vlan101..  Do a sniff, does pfsense send the icmp to the client..

            Rules look fine..

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 26.03.1 | Lab VMs 2.8.1, 26.07

            1 Reply Last reply Reply Quote 0
            • E Offline
              eskimos
              last edited by

              ok I got it fixed.  Was really weird

              Might have been some setting didn't get saved properly.

              I changed the network to .131.* thinking maybe there is something wonky.

              it worked….

              then I changed it back and it was working?????.  o well I wont kick a gift horse in the mouth

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.
              Privacy Policy · Cookie Policy