OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • newbie question FW rule between two LANs
« previous next »
  • Print
Pages: [1]

Author Topic: newbie question FW rule between two LANs  (Read 3071 times)

vikozo

  • Full Member
  • ***
  • Posts: 211
  • Karma: 5
    • View Profile
    • wombat.ch
newbie question FW rule between two LANs
« on: February 25, 2019, 07:39:57 am »
Hello
i do have a


     Internet
            |
+-------+------+
|   Router        | GW LAN-1 10.147.42.1
| Fritzbox        |
+-------+------+
            |
+-------+------+
|  OpnSense    |  eth1 LAN-1 = 10.147.42.7  --> Switch --> PC1
|                    |  eth2 LAN-2 = 10.18.10.1   --> PC2
+--------------+


PC1 | Work and get IP on DHCP (10.147.42.x Range) an go Internet
PC2 | Got a IP on DHCP (10.18.10.x  Range) but can't go to Internet


PC2 Ping works to the LAN-01 Port and LAN-2 Port but can't ping 10.147.42.1

so the question
how do i have to config the Firewall between LAN-1 and LAN-2 to have access to NAS in LAN-01 and be able to go to the Internet.
In a first step it would be also helpfull just to know how to configure it to have it transparent the trafic for and back.

have a nice day
vinc
Logged
apu2c4 / wle200nx / 240 Disk --> Firewall | FW-03
---
OPNsense 22.1.6-amd64
FreeBSD 13.0-STABLE
OpenSSL 1.1.1n 15 Mar 2022

newsense

  • Hero Member
  • *****
  • Posts: 1038
  • Karma: 77
    • View Profile
Re: newbie question FW rule between two LANs
« Reply #1 on: February 25, 2019, 08:00:49 am »
Hi Vikozo,

Support questions usually go to the matching version of OPNsense subforum otherwise in the General Discussions one. Thanks for taking that into consideration going forward.
Logged

vikozo

  • Full Member
  • ***
  • Posts: 211
  • Karma: 5
    • View Profile
    • wombat.ch
Re: newbie question FW rule between two LANs
« Reply #2 on: February 25, 2019, 08:24:26 am »
@newsense
right sorry, should be on the newest Productive i think 19.x
it is possible to move?
have a nice day
vinc
Logged
apu2c4 / wle200nx / 240 Disk --> Firewall | FW-03
---
OPNsense 22.1.6-amd64
FreeBSD 13.0-STABLE
OpenSSL 1.1.1n 15 Mar 2022

vikozo

  • Full Member
  • ***
  • Posts: 211
  • Karma: 5
    • View Profile
    • wombat.ch
Re: newbie question FW rule between two LANs
« Reply #3 on: February 27, 2019, 10:48:13 am »
any Help how to solve the Problem in CONFIG or Design?
have a nice day
vinc
Logged
apu2c4 / wle200nx / 240 Disk --> Firewall | FW-03
---
OPNsense 22.1.6-amd64
FreeBSD 13.0-STABLE
OpenSSL 1.1.1n 15 Mar 2022

newsense

  • Hero Member
  • *****
  • Posts: 1038
  • Karma: 77
    • View Profile
Re: newbie question FW rule between two LANs
« Reply #4 on: February 28, 2019, 04:41:38 am »
First of all you want the NAS on LAN2 - with highly restricted access both in and out.

Secondly, you don't say anything about rules on the LANs. While LAN1 allows by default outbound connections any other interface will only have the implicit Deny ALL rule.

P.S. Having a single Allow ANY ANY rule on the interfaces kinda voids the need for a firewall.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • newbie question FW rule between two LANs
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2