Re: [pfSense] pfsense rules

2016-12-08 Thread Luc Paulin
I knew the rules were processed in order, but didn't think about doing it this way. Thanx ! -- ! ( o o ) --oOO(_)OOo-- Luc Paulin email: paulinster(at)gmail.com Skype: paulinster 2016-12-08 11:57

Re: [pfSense] pfsense rules

2016-12-08 Thread Moshe Katz
Remember that rules are processed in order. Given that fact, here's one way to do what you want. First, put in any rules that ALLOW specific traffic from LAN to OPT2. Then, put in a rule to DENY ALL TRAFFIC from LAN to OPT2. Finally, put the rule to ALLOW ALL TRAFFIC from LAN to ANYWHERE. This

Re: [pfSense] pfsense rules

2016-12-08 Thread Freund, Ingo
put the more restrictive rules before the "allow any" rule. - Ingo > -Original Message- > From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Luc Paulin > Sent: Thursday, December 08, 2016 5:51 PM > To: pfSense Support and Discussion Mailing List > S

[pfSense] pfsense rules

2016-12-08 Thread Luc Paulin
Hi Everyone, I am curently to look at migrating rules from our iptable/fwbuilder system to pfsense. But now I am facing an issue. I need to grant internet access from LAN to WAN, so I created a rule PASS ANY on the LAN interface. However this cause an issues because I want to have specific