Hi,
When I look into my firewall rules I see "Lan net" and "Lan address". Whats the difference between these two types and in which cases should they be used?
LAN net is all devices in your LAN network. LAN address is the address of the firewall in that network.
So generally LAN net is used as a source and LAN address as a destination most of the time.
So if I want to block all traffic from 192.168.11.0/24 (IoT net) to 192.168.2.0/24 (Default net) I should use (see below)?
Firewall/Rules/IOT
Action: Block
Interface: IOT
Direction: IN
Source: any
Destination: Default address
No, Default net as destination of course.
ok, thank you.
I read this and it helped me clear up my confusion.
https://docs.opnsense.org/manual/firewall_generic.html#address-types