Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Several /30 networks to pfsense

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    8 Posts 2 Posters 2.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      repa
      last edited by

      Hi,

      i have a pfsense running in firewall mode to protect a /27 Subnet.

      Now, i got another /27 subnet assigned, which will be devided into 8 /30 networks.

      How do i need to configure the pfsense to add this /30 networks?

      Whats the best way to get it running? /30 includes 2 Hosts, one is the pfsense and the second is a server, that for each subnet.

      1 Reply Last reply Reply Quote 0
      • marcellocM
        marcelloc
        last edited by

        Create vlans on switch and on pfsense

        Treinamentos de Elite: http://sys-squad.com

        Help a community developer! ;D

        1 Reply Last reply Reply Quote 0
        • R
          repa
          last edited by

          Why VLAN? I need this /30 subnet.

          1 Reply Last reply Reply Quote 0
          • marcellocM
            marcelloc
            last edited by

            If you need multiple /30 to isolate hosts, the best way is to apply one ip for each /30 network on pfsense and other on host.

            Vlan will isolate on network to other.

            These is Also a quite odd setup That you assign /32 ips on hosts and define gateway based on interface/out of subnet ip.

            Treinamentos de Elite: http://sys-squad.com

            Help a community developer! ;D

            1 Reply Last reply Reply Quote 0
            • R
              repa
              last edited by

              I've done that.

              one ip to the pfsense, another to the host.

              added firewall rule for ICMP, now host can ping pfsense. But pfsense is not routing the traffic from the host to the WAN, why?

              1 Reply Last reply Reply Quote 0
              • marcellocM
                marcelloc
                last edited by

                How many /30 ips did you assigned to pfsense?

                Check firewall - nat - outbound

                Treinamentos de Elite: http://sys-squad.com

                Help a community developer! ;D

                1 Reply Last reply Reply Quote 0
                • R
                  repa
                  last edited by

                  currently only one to test it.

                  Firewall is LAN -> WAN "Default allow LAN to any rule "

                  Outbound NAT is "Manual Outbound NAT rule generation" with no entry.

                  1 Reply Last reply Reply Quote 0
                  • marcellocM
                    marcelloc
                    last edited by

                    @repa:

                    currently only one to test it.

                    Firewall is LAN -> WAN "Default allow LAN to any rule "

                    Outbound NAT is "Manual Outbound NAT rule generation" with no entry.

                    When using manual outbound, you need to specify outbound nat.

                    Change it to manual to test and then Back to manual.

                    Treinamentos de Elite: http://sys-squad.com

                    Help a community developer! ;D

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.