Netgate SG-1000 microFirewall

Author Topic: "Bypass firewall rules for traffic on the same interface" is NOT working  (Read 57 times)

0 Members and 1 Guest are viewing this topic.

Offline MrMoosieMan

  • Newbie
  • *
  • Posts: 3
  • Karma: +0/-0
    • View Profile
I have an asynchronous routing issue that I'm trying to overcome by using the "Bypass firewall rules for traffic on the same interface" option but its not working as expected. 

Traffic on my local LAN (10.10.10.0/24) that is sent to the inside interface (10.10.10.101) of my pfSense firewall and is destined to 10.1.1.0/24 needs to be redirected to another gateway off the inside interface (10.10.10.1).  Sometimes the traffic is sourced from devices on the local LAN (10.10.10.0/24) and destined to 10.1.1.0/24, and sometimes the devices on the local LAN (10.10.10.0/24) are responding to requests from the 10.1.1.0/24 subnet.

pfSense config so far...

I configured a static route - any traffic destined to 10.1.1.0/24 should be routed to the other gateway (10.10.10.1)
Enabled System>Advanced, Firewall/NAT, check "Bypass firewall rules for traffic on the same interface"
Created a "pass" firewall rule to allow the communication (is this even needed because I have the above option enabled?)
What have I missed?
[/list]

Thanks for the help!  :)