Thu May 12, 2022 11:53 pm
Hello Sergio,
172.16.0.0/24 and 172.16.1.0/25 subnets are both connected to phisical interfaces in the CCR?
In this case, if you configured an IP in each subnet in CCR, you should have a "Connected" route to each subnet, so you should not need any additional route
By default, all filter rules does not drop packet from different LAN interfaces
If an specific traffic does not match any rule, this will be allowed (It is the default behavior)
In case you have rules to block traffic comming from WAN interface list, check that these interfaces are not in the Interface list
If not, check the rules you have
If you still dont know, you coud run "ip firewall filter export" in a terminal and copy the output here, hidding sensitive information
Regards,
Damián