You need to add the rules on the WAN interface for traffic entering the bridge.

Scott


On 9/16/05, jason <[EMAIL PROTECTED]> wrote:
> Hi,
> 
> I am trying to setup a firewall in bridging mode as apposed to using nat
> basically, i want to:
> 
> 1. Leave my severs on the LAN with their public facing Ips in the range
> 212.87.85.xxx
> 2. Configure the WAN to effectively filter/forward packets to the
> servers on the LAN, just basic port blocking stuff
> 
> I've installed pfsense 0.84 and configured static ips on both the LAN &
> WAN and bridged the LAN > WAN
> 
> From the LAN I can see out across the WAN as I have this default rule on
> the LAN
> 
> Prot: Source:  Port: Destination: Port: Gateway: Description
> *     Lan NET  *         *         *       *     Deafult Lan > any
> 
> Problem is I cannot get into the LAN from the WAN side at all, no ping,
> http infact any protocol. I have the following rule on the WAN:
> 
> Prot: Source:  Port: Destination: Port: Gateway: Description
> *      *        *         Lan NET   *       *
> 
> Surley the above rule on the WAN side should let absolutley everything
> through? I have read on the mailing list serveral posts regarding
> bridging. I have only 2 interfaces in the dell server. Is the above
> scenario possible with just two interfaces, if so should I have an IP
> address/gateway assigned to the LAN?
> 
> Or do I need 3 interfaces? My knowledge of FreeBSD/Linux is quite
> limited but I'm happy to send my XML config to any body who can help or
> point me in the right direction
> 
> 
> Jason Brown.
> New Media Director.Monochrome
> www.monochrome.co.uk
> 
> 
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
> 
>

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to