Can't access local subnet from another machine


By following this guide:
Subnet routers and traffic relay nodes
I have created a subnet in machine A (
using this command:

sudo tailscale up --accept-routes --advertise-routes=

and I have accepted the Subnet routes on Machine B successfully.

when I try to ping one of the machines on subnet A ( from machine B, I get this error.

92 bytes from Communication prohibited by filter

The current workaround: is to disable the firewalls on machine A.

is there a way to fix it without disabling the firewalld?

I managed to solve it by doing:

firewall-cmd --permanent --add-forward

then restarting everything.

Don’t know if there is another way.