• How to use pfSense w/ Layer 3 switch running 5 VLAN / Subnets.

    Locked
    2
    0 Votes
    2 Posts
    6k Views
    A
    VLAN 101:  Switches, Firewalls Huh Network:  10.10.1.0 /24 Switch IP: 10.10.1.1 1. assume ur pfsense has wan ip x.x.x.b/zz and wan gateway is x.x.x.a/24 and lan ip is 10.10.1.10 2. connect lan into access port belongs to VLAN101 make sure it is not trunk port 3. create another gateway having ip 10.10.1.1 named LANGW 4. create static route of 10.10.2.0 /24 using gateway LANGW I.E FOR ALL OF YOUR VLAN 5. open firewall nat click Manual Outbound NAT rule generation and SAVE 6. after generating automatic rule add similar rule for all vlan networks hope u will get internet from lan let me know
  • Gateway Weights?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    M
    Looks like it.
  • 0 Votes
    1 Posts
    1k Views
    No one has replied
  • Inbound Load Balance

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Cross Vlan - LAN Traffic

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    M
    Yes it is sometimes hard to member ingress+top-to-down
  • Pfsense VLAN and Multi WAN

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    E
    Hi You resolved this problem? I have the same configuration and it doesnt work
  • Multi wan and static routes

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    THANKS FOR THE HELP I GOT IT WORKING!!!!
  • Dual WAN & Dual LAN with 3 ports

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    P
    I'm still a bit confused. I took the network example from the 1.2 docs and adjusted it a bit. The red box is my small business server, it does smtp, remote web workplace and outlook web access. The blue box is what I would like to use the connection #1 which is the faster connection. I think I can figure out that much between the 1.2 and 2.0 docs. My question is, what goes in the green circle? Just a regular unmanaged switch and then I add another firewall before the dmz zone? The second image is what I was thinking originally. Would this setup work? I'm not even worried about failover or load balancing right now, I just need to get this DMZ sorted. [image: dmz.jpg] [image: dmz.jpg_thumb] [image: dmz1.jpg] [image: dmz1.jpg_thumb]
  • Alias in routes?

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    M
    if you're having subnet of 192.168.1.1/24 then gateway must be inside of that area: 192.168.1.1 and 192.168.1.254 But if you mean, that you could use different wan gateway to internet, then yes
  • No DHCP problem

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    P
    I already enabled it before.
  • Possible to have more than 2 IP's on single physical WAN int?

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    M
    If you have only one gateway, then it can be done by manual outbound nat(Firewall:NAT)
  • Scheduling uTorrent traffic on certain WAN links at different times

    Locked
    7
    0 Votes
    7 Posts
    2k Views
    A
    You're putting the cart before the horse buddy. Did you even figure out how to force bittorrent onto a specific WAN before tackling the schedule?
  • Assign specific WAN based on L7 rule.

    Locked
    17
    0 Votes
    17 Posts
    5k Views
    A
    @Cino: Emarl would be the guru if its possible. Thinking a code change would be needed to allow a feature like this. Do you have access to all the clients running bit-torrent software? You could set static ports then create an alias to direct all that traffic thru the gw you want. Thats what I did for my network Well that's what I'm doing now. I basically put the before-last-rule to be that ALL traffic of the bittorrent machine (192.168.0.10) be NATed to the DSL connection. Above that rule, I put that port 80,80,443 (and a few other ports) from 192.168.0.10 be sent to the cable connection. So far it works ok, but the problem is with the trackers running on HTTP will be contacted by my cable connection. So getting incoming connections on my DSL for bittorrent is a bit slow, as the DHT and peer-sharing functions need to kick in for my DSL connection to be known to the other peers. but it works none the less and maybe I'll leave it like that since I don't want to take the chance that L7 layer filtering (if I'd get it to work) would fail one day and reship everything to the cable connection, costing me a pretty penny in overages.
  • PfSense working 99.999% fine

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • How to access a NAS server behind pfsense if I use wifi on livebox ?

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    M
    You got it
  • IS it possible?

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    M
    I'm afraid that is not enough, which chip you use etc. Check your hardware and then check that list which url i already post. And when using virtuals, hardware is going to change a bit. cause of "virtual machine"
  • Setup Guide: Transparent Filtering Bridge (Public IPs on LAN) on 2.0-RC1

    Locked
    9
    0 Votes
    9 Posts
    9k Views
    D
    Dear Nicklas, I really look forward when your document is ready. Last night I am trying to upgrade from 1.2.3 rc 3 to 2.0 rc3 and ran in a lot of problems. I got the traffic in and out through the firewall but I can only access the Gui from the Lan side (it was a problem that I cannot access the firewall remotely). Also the firewall has DNS issues itself which cannot ping external or dns look up. But the servers behind the firewall can access SSH, WHOIS, DNS, FTP, WWW..pop…etc are all good. So, I am now restart the whole setup from scratch instead of upgrading it and import the configuration file. May I ask a question: On the Wan side rules, the "Lan net" is replaced to "any" ? is that how you did on yours?
  • OpenOSPF + PFsense 2, OSPF interface route gets deleted (w/ workaround)

    Locked
    8
    0 Votes
    8 Posts
    8k Views
    D
    Because I believe this problem doesn't really have a lot to do w/ PFsense, I created a blog post about this specific issue. I would still love for any others to share their experiences with OpenOSPF. http://ouliakk.blogspot.com/2011/08/using-openospfd-with-freebsd-78.html
  • Load balance working…sort of

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    M
    Maybe you have 50/50 loadbalance, you should try weighted loadbalancing to get more upload speed
  • Quickly - How to use optional interface as WAN?

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    T
    Thanks. I noticed that difference in both versions. I decided to play with my chances and quickly change WAN IP which helped. I think the buffer from the time that some action is done on pfSense to the time that it takes effect would help a lot in changes. Maybe a universal buffer time button or APPLY button would be a great feature.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.