pFsense : Firewall static routes ?



  • Dear All,

    I am facing to an issue and there is many ways to figure it but need some lights.

    We have :

    • 1x PROXMOX server with VM, LACP

    • 1x HPE V1910-48G - WAN and PROXMOX Connection

    • 3x pFsense on VM.

      • PF1
        • WAN connection (5x PUBLIC IP)
        • NAT 1:1
        • LAN 1, 2, 3, 4 To connect to PF2, PF3, PF4, PF5 (Static Route)
      • PF2
        • WAN connected to PF1 and get PUBLIC IP ADDRESS
        • LAN2 with Subnet
        • ACME Certificate
        • DMZ 2
      • PF3
        • WAN connected to PF1 and get PUBLIC IP ADDRESS
        • LAN3 with Subnet
        • ACME Certificate
        • DMZ 3

    Question :

    I need to access from subnet LAN2 servers to subnet LAN3 and vice-versa
    I need to access from outside to my servers on LAN2 and/OR LAN3 through proxy
    I neet to access my DMZ2 and DMZ3 outside
    I need to access by openvpn on any subnet of LAN2 and/or LAN3

    It will be great if you could highlight me the correct architecture to take.

    Best Regards,
    Youssef