http://doc.pfsense.org/multiple-subnets-one-interface-pfsense.pdf<\/a><\/p>\n<\/li>\n<\/ul>","upvoteCount":1,"datePublished":"2014-07-05T05:45:23.000Z","url":"https://community.spiceworks.com/t/vlans-on-pfsense-dhcp-clients-cannot-see-internet/318640/7","author":{"@type":"Person","name":"chamele0n","url":"https://community.spiceworks.com/u/chamele0n"}},{"@type":"Answer","text":"@DerBachmannRocker<\/span> The switch is an HP5406zl, I use the “trunking” language because I am by default more a cisco guy. The port involved has VLAN 2 tagged, and VLAN 1 untagged.<\/p>\nThe ip routing you see in the screen capture is because I used the command >show running-config | begin ip routing – since there’s nothing in the routing section of the configuration then the VLAN configuration lists next, essentially an easy way of displaying what I want without all the extras.<\/p>\n
All the networks that I’m sending and receiving traffic for on the PFsense box are “local” and yes there are auto-generated routes, and traffic is flowing between the firewall and switch, so I’m not really certain that its a routing issue per say.<\/p>\n
I attempted to have both VLAN 1 and 2 tagged but that caused all traffic to the firewall to stop.<\/p>\n
There is a default route on the switch for all traffic going to the internet to go to the firewall through its VLAN 1 IP address (0.0.0.0/0 192.168.10.250). I think the suggestion about the firewall rule is a good one, I was testing with ICMP packets and that rule likely dropped them…<\/p>","upvoteCount":0,"datePublished":"2014-07-07T15:48:35.000Z","url":"https://community.spiceworks.com/t/vlans-on-pfsense-dhcp-clients-cannot-see-internet/318640/9","author":{"@type":"Person","name":"danielhoeving2254","url":"https://community.spiceworks.com/u/danielhoeving2254"}},{"@type":"Answer","text":"
So I have to admit my stupidity… I now realized that the problem was exactly what DerBachmannRocker said… the rule was too restrictive. It wasn’t that I couldn’t see the internet it was that DNS is UDP, and thus all DNS requests were being dropped. It wasn’t that I couldn’t see the switch from the client, it was the ICMP packets were being dropped…<\/p>\n
It is now working, thank you all for your assistance.<\/p>","upvoteCount":1,"datePublished":"2014-07-07T16:19:10.000Z","url":"https://community.spiceworks.com/t/vlans-on-pfsense-dhcp-clients-cannot-see-internet/318640/10","author":{"@type":"Person","name":"danielhoeving2254","url":"https://community.spiceworks.com/u/danielhoeving2254"}},{"@type":"Answer","text":"
we have the same problem. may be you can help me
i allow<\/p>\n
allow ANY protocol and still my pc connected to vlan cannot ping the internet<\/p>","upvoteCount":0,"datePublished":"2017-01-12T02:49:29.000Z","url":"https://community.spiceworks.com/t/vlans-on-pfsense-dhcp-clients-cannot-see-internet/318640/11","author":{"@type":"Person","name":"glennpaps","url":"https://community.spiceworks.com/u/glennpaps"}}]}}