Re: 2 networks on the LAN interface, vlan, trunk?
Ugo Bellavance <
ugob@...>
2007-10-01 09:50:46 GMT
Paul M wrote:
> Ugo Bellavance wrote:
>> VLAN 101 contains ports that are connected directly to the internet
>> (PfSense WAN port, internet port (it is in colocation), other servers
>> that would be connected directly to the internet (not behind PfSense).
>>
>> VLAN 102 contains ports that are connected to devices in the Subnet1,
>> let's say 10.10.10.0/24.
>>
>> VLAN 103 contains ports that are connected to devices in the Subnet2,
>> let's say 192.168.10.0/24.
>
> this seems OK, I think, once you've created vlans you assign the wan and
> lan ports appropriately, then make vlan103 be say OPT1 (and rename it to
> LAN2?)
Hmmm, can you explain a bit further? There is only 2 NIC in this server.
>> However, subnet2 is completely isolated. It cannot talk to anyone, nor
>> to the fw, nor the subnet1, nor the internet.
>
> if you manually add static routes to hosts on vlan103, does it work?
> what are you seeing in the arp tables on the hosts?
On the hosts or on the pfsense? How would I do that?
Thanks a lot for your answer,
Ugo