Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OPT1 NIC equal rules as LAN NIC

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 2.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bushtor
      last edited by

      Hi,

      I have a third NIC called RADIUS in my pfSense box.  Its IP address is 10.130.0.4 and the LAN NIC IP is 192.168.33.9.

      I have created a rule for the RADIUS NIC with the same property values as for the LAN NIC and with this rule I hoped that all computers on the LAN subnet should be able to access all the computers on the RADIUS subnet and vice versa just as if they were on the same subnet.

      However I don't even get access to the pfSense GUI from a computer on the RADIUS subnet.

      One of the goals is that computers using captive portal on the LAN subnet should authenticate against a radius server on the RADIUS subnet.

      How can I achieve the above two issues with rules?

      My current rule details are here:
      http://www.kuntigi.net/download/opt_if_details.htm
      and
      http://www.kuntigi.net/download/lan_if_details.htm

      thanks a lot if someone can show how this has to be set up…

      regards

      Tor

      1 Reply Last reply Reply Quote 0
      • H
        hoba
        last edited by

        Your rules look good so far (if these are the only rules or they are not limited by other rules on top of them). Make sure all Clients use the pfSense LAN or OPT IP as default gateway (depending at which interface they are connected to).
        In this setup your clients are not in the same subnet and routing is required (which the pfSense does by default). If you want them to be in the same subnet you need bridging (however, then they all have to use IPs from the same subnet of course).

        1 Reply Last reply Reply Quote 0
        • B
          bushtor
          last edited by

          Thanks for the confirmation.  I discovered that I had not modified the subnet mask for the opt if from 32 to 24 :-(

          All is well now ;-)

          Tor

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.