Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How do I setup Pfsense as a transparent firewall with IPS?

    Scheduled Pinned Locked Moved General pfSense Questions
    8 Posts 4 Posters 685 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jshoe
      last edited by

      I've already bridged the connections but I'm not sure what to select when changing Snort settings.

      Thanks

      JonathanLeeJ B 2 Replies Last reply Reply Quote 0
      • JonathanLeeJ
        JonathanLee @jshoe
        last edited by

        @jshoe snort should be enabled on the interface you wish to run intrusion detection

        Make sure to upvote

        J 1 Reply Last reply Reply Quote 0
        • J
          jshoe @JonathanLee
          last edited by

          @JonathanLee So all I need to do is change the interface to the bridge and that's it? Sounds too easy!

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            If you want it to block as well as detect it should run on which ever interface has filtering enabled. By default that means the bridge member interfaces not the bridge itself.

            https://docs.netgate.com/pfsense/en/latest/bridges/firewall.html

            J 1 Reply Last reply Reply Quote 1
            • B
              boulesmoonraker @jshoe
              last edited by

              @jshoe tiny fishing said in How do I setup Pfsense as a transparent firewall with IPS?:

              I've already bridged the connections but I'm not sure what to select when changing Snort settings.

              Thanks

              Since you've already bridged the connections, let's ensure this part is correctly set up.

              Create a Bridge Interface:

              Navigate to Interfaces > Assignments > Bridges.
              Add a new bridge and select the interfaces you want to bridge (e.g., LAN and WAN).
              Save and apply the changes.
              Assign the Bridge Interface:

              Go to Interfaces > Assignments and add the bridge interface you created.
              Assign it a name, such as BRIDGE0.
              Configure Interface IP:

              Assign an IP address to the bridge interface (BRIDGE0) if needed for management purposes. If it's truly transparent, you might not need an IP on this interface.

              J 1 Reply Last reply Reply Quote 0
              • J
                jshoe @stephenw10
                last edited by

                @stephenw10 would this be the WAN port?

                stephenw10S 1 Reply Last reply Reply Quote 0
                • J
                  jshoe @boulesmoonraker
                  last edited by

                  @boulesmoonraker I should have put that I know how to bridge them, not that I have yet. I will follow your steps.

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator @jshoe
                    last edited by

                    @jshoe It could be either if filtering is on the member interfaces.

                    I would probably move filtering to the bridge interface and apply it there for logical simplicity.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.