Newbie question
-
Hi all,
I Installed smoothwall about a week ago and to be honest I'm not impressed here is my wish list.
- have DHCP with static IP's (if I'm saying this correctly)
- Have timed access so I can block IP's at certain times (my son)
- Port forwarding and if possible to multiple devices (a game and the knidle want port 443 forwarding to them)
- Usage charts by IP
- web proxy so I can trace where people have been
- I have a wifi router, this has build in SSID and passwords this will be part of my network
- virgin media cable router -> pfSense -> switch, hanging off this switch downstairs will be wifi router
- Web interface
I know i have probably said a lot of things that are "Doh" but didn't want to miss anything, so will pfSense do all this?
Thanks
Steve
-
Hi scar
- have DHCP with static IP's (if I'm saying this correctly)
yes, have to put mac address and reserve the static ip - Have timed access so I can block IP's at certain times (my son)
squid acl time based rule - Port forwarding and if possible to multiple devices (a game and the knidle want port 443 forwarding to them)
Yes, Nat rules could it be nat 1:1 or port forwarding - Usage charts by IP
squid with sarg, pftop - web proxy so I can trace where people have been
squid again doing the job - I have a wifi router, this has build in SSID and passwords this will be part of my network
connect direct to wan port or lan port will do the job in companion with squid - virgin media cable router -> pfSense -> switch, hanging off this switch downstairs will be wifi router
Web interface
dont ge it! but pfsense has a web interface to work with it
- have DHCP with static IP's (if I'm saying this correctly)
-
Additionally:
-
You could also use scheduled firewall rules.
-
Yes but you can't forward incoming port 443 requests to two places. Are you sure they want, the very common and already used for HTTPS, port 443?
Steve
-
-
Just to add a little bit…
- have DHCP with static IP's (if I'm saying this correctly)
yes, have to put mac address and reserve the static ip
RJC - if necessary, you can also startup IPFW and create rules to make sure that no tries to manually switch their IP address (layer 2/3 rules). Good idea if anyone on your network is smart enough to figure out how to change their IP (for example - to one that doesn't have time restrictions or filtering). - Have timed access so I can block IP's at certain times (my son)
squid acl time based rule
RJC - Time based firewall rules work great for this. - Port forwarding and if possible to multiple devices (a game and the knidle want port 443 forwarding to them)
Yes, Nat rules could it be nat 1:1 or port forwarding - Usage charts by IP
squid with sarg, pftop - web proxy so I can trace where people have been
squid again doing the job
RJC - Highly recommend Dansguardian in conjunction with Squid if you have children accessing the internet. It will give you content based filtering and nice logging features. There's no great reporting package for it, but Webmin can be added and it works well. Also consider using the OpenDNS servers for DNS. Then configure the dynamic DNS update within pfSense. - I have a wifi router, this has build in SSID and passwords this will be part of my network
connect direct to wan port or lan port will do the job in companion with squid - virgin media cable router -> pfSense -> switch, hanging off this switch downstairs will be wifi router
Web interface
RJC - Sounds like exactly what I have: modem -> pfsense -> switch -> wifi router configured as access point.
- have DHCP with static IP's (if I'm saying this correctly)
-
WOW, thanks a lot guys really helpfull, will install at the weekend and keep you all posted, thanks again.
Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.