Op 18-9-2012 8:23, Vieri schreef:
Hi,

I'm having trouble understanding a very simple concept.

Suppose I have several interfaces, eg. lan, wan, dmz, corp2.
Most public IP addresses are in 'wan' but some may be accessible through 
'corp2'.
Let's say I would like to add a firewall rule for a specific destination.
I can create an alias or specify a network or single host but how do I apply a 
rule from lan to a specific host in wan?
eg. lan single host 10.215.144.48/32 can access 8.8.8.8/32 through 'corp2' but 
cannot access 8.8.8.8/32 through 'wan'.

Should that be done only through static routing?

Firewall rules are top down.
Make a allow rule for that single host and a block rule below that.

Cheers
_______________________________________________
List mailing list
[email protected]
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to