Skip to content
Discussion options

You must be logged in to vote

So I ended up finding the problem - I'm not sure how those extra interfaces monitoring got IP addresses - but that caused some asymmetric routing issues. DMZ hosts were going through our pfsense box to the LAN seconion, but since the seconion box had an interface with an IP on the DMZ, it wouldn't travers the pfsense on the way back.

We discovered the fix on accident while forcing those nics into monitoring mode with sudo so-monitor-add ens224 - after seconion didn't have an interface with an IP on the DMZ, everything functioned as expected.

Replies: 2 comments 5 replies

Comment options

You must be logged in to vote
5 replies
@pezhore
Comment options

@pezhore
Comment options

@TotieBash
Comment options

@pezhore
Comment options

@TotieBash
Comment options

Comment options

You must be logged in to vote
0 replies
Answer selected by pezhore
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
2.4
Labels
None yet
2 participants