[ previous ] [ next ] [ threads ]
 From:  Chris Buechler <cbuechler at gmail dot com>
 To:  Jim Spaloss <jspaloss at gmail dot com>
 Cc:  m0n0wall list <m0n0wall at lists dot m0n0 dot ch>
 Subject:  Re: [m0n0wall] m0n0 1.11, opt to lan rules have no effect...
 Date:  Sun, 3 Apr 2005 03:49:50 -0500
On Apr 3, 2005 3:05 AM, Jim Spaloss <jspaloss at gmail dot com> wrote:
> Hello to all.
> I recently added a third nic to my m0n0wall, to isolate wlan traffic
> from the rest of my lan. The wlan is an access point attached to a nic
> and not a wireless card in m0n0wall. I was able to get it up and
> running, but no matter how I configure the rules, I have unrestricted
> access to the lan from opt1. I can remove all rules, add a block rule,
> it doesn't seem to matter.

Take out your static routes.  Those are unnecessary, and because of
firewall rule design in m0n0wall at that time (it's since been changed
in current beta versions) those incorrect static routes cause the
rules to be bypassed.