Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Unable to reach other LAN subnet
« previous
next »
Print
Pages: [
1
]
Author
Topic: Unable to reach other LAN subnet (Read 1646 times)
mflammia
Newbie
Posts: 22
Karma: 0
Unable to reach other LAN subnet
«
on:
August 31, 2020, 11:45:32 pm »
Hi,
My LAN subnet is 192.168.0.0/24, with a default gateway of 192.168.0.254 which is the internal router.
I have an additional subnet that is 192.168.200.0/24. In the firewall I have a static route for that subnet pointing to the 192.168.0.254 DG.
Additionally I have a rule for LAN specifically allowing 192.168.200.0/24 to any.
I can see in the live view that traffic is coming in from IP addresses on the 192.168.200.0/24 subnet and being allowed.
The NAT config is set to hybrid but is only configured for automatic rules.
Issue is anything on that subnet can not reach in the Internet?
Many thanks in advance for any assistance.
Logged
errored out
Full Member
Posts: 171
Karma: 3
Re: Unable to reach other LAN subnet
«
Reply #1 on:
September 12, 2020, 02:53:29 am »
Is the second network segment a vlan? I'm thinking you may not. Why do you have a static route set?
You can configure the FW to have multiple network segments (VLANs) or subnets, without the need of a single GW and configure them individually to use your Internet connection.
What you are describing does not make sense as each 192.168.x.x should have it's own interface. If you do not want to have multiple interfaces, just put everything on your LAN 192.168.0.x and remove 192.168.200.x.
Logged
banym
Sr. Member
Posts: 468
Karma: 31
Free Human Being, FreeBSD, Linux and Mac nerd
Re: Unable to reach other LAN subnet
«
Reply #2 on:
September 13, 2020, 12:27:32 am »
Please provide a network diagram.
Logged
Twitter: banym
Mastodon: banym@bsd.network
Blog:
https://www.banym.de
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Unable to reach other LAN subnet