OPNsense Forum

English Forums => General Discussion => Topic started by: fadern on January 17, 2024, 03:07:05 PM

Title: Lan net or Lan address?
Post by: fadern on January 17, 2024, 03:07:05 PM
Hi,
When I look into my firewall rules I see  "Lan net" and "Lan address". Whats the difference between these two types and in which cases should they be used?
Title: Re: Lan net or Lan address?
Post by: Patrick M. Hausen on January 17, 2024, 03:24:46 PM
LAN net is all devices in your LAN network. LAN address is the address of the firewall in that network.
So generally LAN net is used as a source and LAN address as a destination most of the time.
Title: Re: Lan net or Lan address?
Post by: fadern on January 17, 2024, 04:12:37 PM
So if I want to block all traffic from 192.168.11.0/24 (IoT net) to 192.168.2.0/24 (Default net) I should use (see below)?

Firewall/Rules/IOT
Action: Block
Interface: IOT
Direction: IN
Source: any
Destination: Default address
Title: Re: Lan net or Lan address?
Post by: Patrick M. Hausen on January 17, 2024, 04:44:49 PM
No, Default net as destination of course.
Title: Re: Lan net or Lan address?
Post by: fadern on January 19, 2024, 12:03:23 PM
ok, thank you.
I read this and it helped me clear up my confusion.
https://docs.opnsense.org/manual/firewall_generic.html#address-types