Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
Cannot Ping a Local Device
« previous
next »
Print
Pages: [
1
]
Author
Topic: Cannot Ping a Local Device (Read 2203 times)
spetrillo
Hero Member
Posts: 721
Karma: 8
Cannot Ping a Local Device
«
on:
July 18, 2020, 03:54:24 am »
Hello all,
I am in the middle of productionizing a new firewall. Currently my firewall is a mixture of vlans and non-vlan interfaces, moving to an all vlan topology. My PC is on a vlan interface, trying to ping a local device on a non-vlan interface, and not getting a response. I can ping the default gateway of the non-vlan interface, but cannot go any further.
I believe it has to do with the way my switch is setup for the vlans that are being passed. My question is if there is no vlan on an interface does it get passed by default?
Thanks,
Steve
Logged
marjohn56
Hero Member
Posts: 1701
Karma: 179
Re: Cannot Ping a Local Device
«
Reply #1 on:
July 18, 2020, 12:21:11 pm »
Depends on the switch. If its a managed layer 2 only then no, if it's layer 3 then you can configure the switch to 'route' between interfaces. If it's an un-managed switch the answer is the packets will appear, but will not be answered by other devices because they are not on the same VLAN.
Most managed switches are layer 2, this means the routing between LANs and VLANs will need to be handled by opnsense, this is simply a case of adding the correct allow rules to the LAN/VLAN firewall rules to allow other VLANs/LANs access.
Logged
OPNsense 24.7
-
Qotom Q355G4
- ISP -
Squirrel 1Gbps
.
Team Rebellion Member
- If we've helped you remember to applaud
spetrillo
Hero Member
Posts: 721
Karma: 8
Re: Cannot Ping a Local Device
«
Reply #2 on:
July 18, 2020, 06:43:19 pm »
I am using managed switches but chose not to enable L3 functionality and instead use OPNsense in a router on a stick fashion.
My rules are set to allow anything from any vlan or non vlan interface to any destination. Where I think I am getting caught is on the switch config. It looks like I am just allowing clans to pass, so looking into that now.
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
Cannot Ping a Local Device