On Sat, Dec 5, 2015 at 10:38 PM, Jarno Elonen <[email protected]> wrote: > I'm trying to build a firewall, which NATs LAN-->WAN, and DMZ-->WAN, but > routes LAN-->DMZ. > The problem is, LAN-->DMZ currently only works if I add a NAT between them. >
Problem solved. Turns out this was an asymmetric routing issue -- pfSense was in fact correctly routing between LAN and DMZ, but return packets where sent to a wrong router (the old firewall, that was still connected to a common switch). -Jarno _______________________________________________ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold
