Yes, static routes cannot be added if the interface is defined any way, because pfSense knows about the interfaceI wonder if pfsense is pushing the return traffic back through the trunk port since there are no route statements. Can you disconnect the trunk port and add route statements and ping out from a client? I don't care if DHCP is broken.
Never mind. You can't add route statements with DHCP defined with those networks.
It is routing from the switch so it is returning right.
I doubt downstream traffic is going through the Transit route. I am not sure how to check it in pfsense, maybe an allow rule...
However, I am not seeing any issues in logs about specific TCP:S and TCP:FA blocks related to my use