On Wed, Mar 4, 2009 at 11:05 AM, Christian Krützfeldt <[email protected]> wrote: > I have 4 interfaces on my firewall LAN1, LAN2, WAN, DMZ plus IPSEC. > And everything works as it should, I'm just confused about why certain rules > need to be on certain interfaces. > > For example I want to allow traffic from one host in the DMZ to one host on > LAN. > For me it would be logic to have that rule on the DMZ interface, I guess > having it on the LAN interface would also make sense, but why do I have to > have that rule on the WAN interface? >
You don't. Rules apply on the interface where the traffic is initiated. --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected] Commercial support available - https://portal.pfsense.org
