PfSense: firewall rules not working

Hello,

I have two VLANs, one for IoT and another for Wi-Fi. I do not want the IOT VLAN to reach out to any other VLAN; however, I want other VLANs (in this case, VLAN40) to talk to the router I am using as an access point.

VLAN 40 is on igc1, VLAN 70 is on igc2-opt11.

What am I doing wrong?

TIA

You have 2 different interfaces using VLAN 40?

Sorry, I meant VLAN 70 on igc2-opt11

I’m not understanding your setup very well. Your 3rd screenshot shows your IoT WiFi directly on interface 2 but doesn’t have a VLAN assigned to it. Typically you setup your VLAN’s on the same physical interface and let a switch with VLAN capabilities handle the VLANs.

You should be putting VLAN 70 on igc1.

Here is the VLAN assignment, and maybe you are right. I need to put VLAN 70 on the same interface as other VLANs.

Solved: routing table entry on CR1000B was not there, once created the route started working.