<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[2 Firewalls (not carp) question]]></title><description><![CDATA[<p dir="auto">I want to add another pfsense behind my current pfsense firewall that will do some basic filtering. Anyway, can i put this firewall in and turn on advance Nat then disable all Nat policies and have the main firewall handle this?<br />
Here is what i was thinking… Will this work?</p>
<p dir="auto">(172.20.0.1/25)-----DMZ1<br />
--wan--PFsense(10.7.2.1/26)  ---- (10.7.2.5/26-wan)PFsense 2 ---then a 192.168.7.1/24 lan network<br />
                      (10.8.2.1/24) ----VLAN</p>
<p dir="auto">Ideally have the pfsense box on the 10 do all the natting for the 192.168.7.x/24 network without natting it as I would like to stay away from double natting as much as possible.</p>
<p dir="auto">I looked around the forums but want sure how to word this correctly.</p>
<p dir="auto">Thanks,</p>
<p dir="auto">cconk01</p>
]]></description><link>https://forum.netgate.com/topic/10112/2-firewalls-not-carp-question</link><generator>RSS for Node</generator><lastBuildDate>Tue, 21 Jul 2026 01:58:07 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/10112.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 01 Aug 2008 13:05:23 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to 2 Firewalls (not carp) question on Sun, 03 Aug 2008 01:25:52 GMT]]></title><description><![CDATA[<p dir="auto">ok. Thanks for the help<br />
cconk01</p>
]]></description><link>https://forum.netgate.com/post/178707</link><guid isPermaLink="true">https://forum.netgate.com/post/178707</guid><dc:creator><![CDATA[cconk01]]></dc:creator><pubDate>Sun, 03 Aug 2008 01:25:52 GMT</pubDate></item><item><title><![CDATA[Reply to 2 Firewalls (not carp) question on Sun, 03 Aug 2008 00:37:05 GMT]]></title><description><![CDATA[<p dir="auto">OSPF isn't supported at this time. You only need one static route in this scenario, any routing protocol is overkill.</p>
]]></description><link>https://forum.netgate.com/post/178705</link><guid isPermaLink="true">https://forum.netgate.com/post/178705</guid><dc:creator><![CDATA[cmb]]></dc:creator><pubDate>Sun, 03 Aug 2008 00:37:05 GMT</pubDate></item><item><title><![CDATA[Reply to 2 Firewalls (not carp) question on Sat, 02 Aug 2008 15:14:18 GMT]]></title><description><![CDATA[<p dir="auto">could i use ospf for this? is there any support on pfsense for ospf?</p>
<p dir="auto">Thanks</p>
]]></description><link>https://forum.netgate.com/post/178682</link><guid isPermaLink="true">https://forum.netgate.com/post/178682</guid><dc:creator><![CDATA[cconk01]]></dc:creator><pubDate>Sat, 02 Aug 2008 15:14:18 GMT</pubDate></item><item><title><![CDATA[Reply to 2 Firewalls (not carp) question on Sat, 02 Aug 2008 05:48:28 GMT]]></title><description><![CDATA[<p dir="auto">Yes, that's possible. Just make sure you put a static route in on the border pfsense that points to the internal pfsense for the internal network. If you wanted, you could just do a transparent firewall if you don't want any routing at all.</p>
]]></description><link>https://forum.netgate.com/post/178660</link><guid isPermaLink="true">https://forum.netgate.com/post/178660</guid><dc:creator><![CDATA[blak111]]></dc:creator><pubDate>Sat, 02 Aug 2008 05:48:28 GMT</pubDate></item></channel></rss>