Unable to reach other LAN subnet

Started by mflammia, August 31, 2020, 11:45:32 PM

Previous topic - Next topic
Hi,

My LAN subnet is 192.168.0.0/24, with a default gateway of 192.168.0.254 which is the internal router.

I have an additional subnet that is 192.168.200.0/24. In the firewall I have a static route for that subnet pointing to the 192.168.0.254 DG.

Additionally I have a rule for LAN specifically allowing 192.168.200.0/24 to any.

I can see in the live view that traffic is coming in from IP addresses on the 192.168.200.0/24 subnet and being allowed.

The NAT config is set to hybrid but is only configured for automatic rules.

Issue is anything on that subnet can not reach in the Internet?

Many thanks in advance for any assistance.


Is the second network segment a vlan? I'm thinking you may not.  Why do you have a static route set? 

You can configure the FW to have multiple network segments (VLANs) or subnets, without the need of a single GW and configure them individually to use your Internet connection.

What you are describing does not make sense as each 192.168.x.x should have it's own interface. If you do not want to have multiple interfaces, just put everything on your LAN 192.168.0.x and remove 192.168.200.x.

Please provide a network diagram.
Twitter: banym
Mastodon: banym@bsd.network
Blog: https://www.banym.de