Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    1 WAN 2 LAN Setup

    Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
    5 Posts 4 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      waterhog666
      last edited by

      Hello everyone :) I'm new here and I need some help.  Im planning to make use of pfSense with a setup of 1 WAN with 2 LANs because I need them to have different subnets but must see each other.

      LAN1 (192.168.1.1)= servers and priority units with high bandwidth

      LAN2 (192.168.2.1)= for guests and low priority units with limited bandwidth

      I'll be setting LAN1 so that it can only allow certain mac addresses,
      LAN2 would be the opposite blocking the allowed mac addresses in LAN1 so that those unit wont take their IPs in LAN1 (is this still right?)

      May I seek advice on this matter? is it doable or is there a better way on doing it?

      1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan
        last edited by

        @waterhog666:

        ….
        LAN2 would be the opposite blocking the allowed mac addresses in LAN1 so that those unit wont take their IPs in LAN1 (is this still right?)

        They couldn't "take" the IP's from LAN1 because the DHCP server on LAN2 is using a different pool as LAN2. Even if devices from LAN2 had static IP's as 192.168.1.x = (LAN1 segment) then they couldn't communicate on LAN2.

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        1 Reply Last reply Reply Quote 0
        • C
          C0RR0SIVE
          last edited by

          You will be setting up VLANS, proper firewall rules so the two can talk to one another if needed, and your network switch will need to support vlans.  Unless you are literally doing two physically different networks?

          1 Reply Last reply Reply Quote 0
          • W
            waterhog666
            last edited by

            @C0RR0SIVE:

            You will be setting up VLANS, proper firewall rules so the two can talk to one another if needed, and your network switch will need to support vlans.  Unless you are literally doing two physically different networks?

            Unfortunately my network switches doesn't support VLANs as of the moment. I'll be purchasing a new switch later on. So isn't there anything that might have the same effect?

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              Not really.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.