Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense nat and certificate let'sencrypt

    Scheduled Pinned Locked Moved NAT
    4 Posts 2 Posters 593 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • frankzF
      frankz
      last edited by

      Hello everyone , I wanted to know if there is a way to deploy port 443 and port 80 on multiple hosts that are in LAN .

      For years I have been using the dnat of the 80 and 443 on a server in LAN, where lets' encrypt is installed on this server. I would need to install 2 more servers in LAN and request the certificate ( I use noip.com free and hoi only 3 ip hostname ) . How can I do it? So at the moment I'm limited to dnat on only one host .

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @frankz
        last edited by

        @frankz
        You would need the HAproxy and ACME package on pfSense. ACME manages the Let's encrypt certificates and in HAproxy (HTTP mode) you can add rules to redirect requests to different backend servers according to the host header value.
        The backend servers don't need to do TLS then.

        frankzF 1 Reply Last reply Reply Quote 0
        • frankzF
          frankz @viragomann
          last edited by

          @viragomann
          Thank you, I imagined! Where do I find a configuration example?

          V 1 Reply Last reply Reply Quote 0
          • V
            viragomann @frankz
            last edited by

            @frankz
            For a quick start this Lawrence video may help: https://www.youtube.com/watch?v=gVOEdt-BHDY

            It should cover all what you need for above aims.

            1 Reply Last reply Reply Quote 1
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.