no, things works like this first PFS machine is conected to ISP router, and it is firewall/proxy/vpn etc…
(only 2 nics)
second one (6 nics) is connected to first one, and second one connects multiply networks into one, BUT, i dont want users to see each other so i need firewall that works.
And port forward, i need it to forward ports from internet to internal radius etc... whic is connected to one of 6 interfaces on second PFS.
i didnt try to use opt interface on second pfs as WAN interface, bit i think it would work. ?