Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Getting Xbox working with PFSense when it's behind the DMZ

    Scheduled Pinned Locked Moved Gaming
    xbox
    10 Posts 2 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      vortex0007
      last edited by

      This post is deleted!
      1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator
        last edited by johnpoz

        Your going to have 1 hell of time with a double nat when devices call for static source ports with your nats..

        Why do you have 2?? Does atleast pfsense 1 have public on its wan? Or you behind a triple nat?

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        V 1 Reply Last reply Reply Quote 0
        • V
          vortex0007 @johnpoz
          last edited by

          This post is deleted!
          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            Why do you think you need that 2nd pfsense? And is it natting as well or just the edge pfsense?

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

            V 1 Reply Last reply Reply Quote 0
            • V
              vortex0007 @johnpoz
              last edited by vortex0007

              This post is deleted!
              1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator
                last edited by johnpoz

                Why do you think you need/want that 2nd pfsense in the first place.. There is really zero reason for it.

                The only reason for such a setup is normally when edge is PE (provider equipment) and 2nd is CE (customer equipment).

                Not sure what you think that 2nd pfsense gets you other than extra cost and complexity. If you want a "dmz" then just hang it off the pfsense attached to your edge.

                But sure if you want to run downstream pfsense you can. But then you wouldn't use your "dmz" as the transit. If devices want to talk to dmz from your lan you run into asymmetrical routing.

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                1 Reply Last reply Reply Quote 0
                • V
                  vortex0007
                  last edited by vortex0007

                  This post is deleted!
                  1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator
                    last edited by johnpoz

                    You DO NOT NEED THAT!!! Just hang your "dmz" or firewall segment off your 1 pfsense... Your doing nothing there but wasting electricity and cost of running 2..

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                    V 1 Reply Last reply Reply Quote 0
                    • V
                      vortex0007 @johnpoz
                      last edited by

                      This post is deleted!
                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        Vlan ;)

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.