Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Intrusion Detection and Prevention
»
Problem with access between LAN and LAN_VLAN with IPS
« previous
next »
Print
Pages: [
1
]
Author
Topic: Problem with access between LAN and LAN_VLAN with IPS (Read 3298 times)
olest
Jr. Member
Posts: 69
Karma: 3
Problem with access between LAN and LAN_VLAN with IPS
«
on:
June 24, 2019, 12:07:13 pm »
When I enable IPS on LAN interface and use "Promiscuous mode" I cannot access my Synology NAS at LAN_VLAN1200 from a PC at LAN.
Logged
russella
Newbie
Posts: 21
Karma: 2
Re: Problem with access between LAN and LAN_VLAN with IPS
«
Reply #1 on:
July 24, 2019, 06:49:57 pm »
Try the following: Goto Interfaces->Settings and set Hardware CRC, Hardware TSO and Hardware LRO all to Disabled (i.e. Checked) and set VLAN Hardware Filtering to Disable VLAN Hardware Filtering
Logged
ruggerio
Sr. Member
Posts: 295
Karma: 11
Re: Problem with access between LAN and LAN_VLAN with IPS
«
Reply #2 on:
July 24, 2019, 08:42:53 pm »
do not use promiscuous. yor traffic will get inspected on the real portport.
i tried that too, but then remarked, that it got inspected on lan instead of vlan-interfaces.
Logged
olest
Jr. Member
Posts: 69
Karma: 3
Re: Problem with access between LAN and LAN_VLAN with IPS
«
Reply #3 on:
August 06, 2019, 08:34:28 am »
Yes "Promiscuous mode" is the problem.
Should I still only select LAN interface in IPS settings to get IPS on VLAN interfaces?
Tried to disable VLAN Hardware filtering also but no change.
«
Last Edit: August 06, 2019, 08:37:55 am by olest
»
Logged
ruggerio
Sr. Member
Posts: 295
Karma: 11
Re: Problem with access between LAN and LAN_VLAN with IPS
«
Reply #4 on:
August 07, 2019, 04:14:18 pm »
your crossed answer was the right. disable promiscuous mode and the vlan interfaces.
check then, usually its been checked on the physical interface, nonetheless it will show up with your vlanmy config works like this.
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Intrusion Detection and Prevention
»
Problem with access between LAN and LAN_VLAN with IPS