Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense in front of udm pro

    Scheduled Pinned Locked Moved General pfSense Questions
    5 Posts 3 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      rfinch23
      last edited by

      Hi l live where I need to use 4G GSM for my Internet access and so have issues with using NAT/port forwarding. This is due to the GSM provider using carrier NAT so I do not get a public ip address. I now have a working test pfsense box with a vpn tunnel setup that gives me a public ip address this acts as the default gateway so all internal clients use this to connect to the Internet. This allows for any external access using port forwarding where required. What is the easiest way of now placing the pfsense box in front of the udm pro. Can I just connect the pfsense to the udm pro's WAN port usin DHCP on the pfsense LAN ort as I would normally to a Adsl router?

      Thanks

      Roy

      N johnpozJ 2 Replies Last reply Reply Quote 0
      • N
        netblues @rfinch23
        last edited by

        @rfinch23 You could do that.
        Of course this will also be double nat, (as it would also be the case with an adsl router not in bridge mode)
        Not exactly a problem until it becomes one.

        R 1 Reply Last reply Reply Quote 0
        • R
          rfinch23 @netblues
          last edited by

          @netblues thank you for your reply, yes I realise this will require double NAT but sadly I am presently using a vigor 130 in pass through but the connection is at best only 4mbs and drops out at least four or more times within a 24 hour period, The GSM 4G is showing 40-50mbs down and around 30-40 mbs up, so is a bit of a no brainier hopefully. I did try this without the tunnel as I use 3 mobile who it is rumoured to still use public ip addresses but for some reason it was causing havoc with my Samsung SmartThings hub as the devices were not syncing correctly?

          Roy

          N 1 Reply Last reply Reply Quote 0
          • N
            netblues @rfinch23
            last edited by

            @rfinch23 I doubt the issue is with the ip connectivity of 3mobile.
            Its easy to check if you are behind cgnat or public ip.
            Perhaps with routing you could eliminate dobule nat.

            If boils down to disablin nat on udm and routing networks behind utp wan ip with static routes on pf.
            I have no idea if udp pro can be used in routed mode though.

            1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator @rfinch23
              last edited by

              @rfinch23 said in Pfsense in front of udm pro:

              This allows for any external access using port forwarding where required.

              So this is a vpn on some vps or something you setup somewhere - most vpn services do not provide for port forwarding.

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.