"and you always have to specify a gateway specific to that subnet to enable that subnet to see the Internet"
Yes you set a gateway on the clients to IPcops lan interface IP - but you don't set a gateway on that interface to itself. This was my point. Yes devices on that segment that wants to get OFF that segment need a gateway which would be the lan ip of either pfsense or ipcop. But the interface itself on ipcop nor pfsense do not point to itself as the gateway.
edit: I just booted ipcop on virtual machine, and NOwhere did it ask me to setup the GATEWAY on my GREEN (lan) network
Do you mean what you put in the RED (wan) interface for a gateway if set to static?
Where would you ever get the idea that you would set an interface to use itself as the gateway? You can not talk to yourself to get OFF the network. Yes it would use itself to talk to the network its on, which could be seen as gateway for that network. But NO sorry you don't set in IPcop or pfsense to use a LAN gateway –-> unless you were going to have routes off that interface to some other network inside yours.
green.jpg
green.jpg_thumb
red.jpg
red.jpg_thumb