• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Creating loopback interface for management

Scheduled Pinned Locked Moved Routing and Multi WAN
8 Posts 2 Posters 4.7k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    Saravanen
    last edited by Jan 18, 2021, 2:18 AM

    I have a requirement to create a loopback interface on the pfSense firewall for management purpose. I can't find anyway to create loopback interface in the GUI. Can someone help point me in the right direction on configuring it?

    J 1 Reply Last reply Jan 18, 2021, 2:52 AM Reply Quote 0
    • J
      johnpoz LAYER 8 Global Moderator @Saravanen
      last edited by johnpoz Jan 18, 2021, 2:55 AM Jan 18, 2021, 2:52 AM

      Its a vip.

      Here jimp answering the same question from 2017
      https://forum.netgate.com/post/682341

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      1 Reply Last reply Reply Quote 1
      • S
        Saravanen
        last edited by Jan 18, 2021, 4:05 AM

        Thanks, I'll look into that. :)

        J 1 Reply Last reply Jan 18, 2021, 5:07 AM Reply Quote 0
        • J
          johnpoz LAYER 8 Global Moderator @Saravanen
          last edited by Jan 18, 2021, 5:07 AM

          Why do you think you need a loopback for management?

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • S
            Saravanen
            last edited by Jan 18, 2021, 7:08 AM

            I just need to give another team temporary management access to the firewall as they can't use the LAN IP for management due to IP overlap issue on their end.

            So I'll create a VIP on the firewall and configure static route on the core switch for the VIP (next hop would be the LAN IP of the firewall).

            J 1 Reply Last reply Jan 18, 2021, 1:04 PM Reply Quote 0
            • J
              johnpoz LAYER 8 Global Moderator @Saravanen
              last edited by Jan 18, 2021, 1:04 PM

              You know any IP on pfsense can be used to hit the gui or ssh right. The wan IP, any other opt IP..

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              1 Reply Last reply Reply Quote 0
              • S
                Saravanen
                last edited by Saravanen Jan 18, 2021, 1:15 PM Jan 18, 2021, 1:15 PM

                I'm using the pfSense firewall to protect a user VLAN, so both LAN and WAN IP range fall within a /19 subnet and that whole subnet is overlapping for the other team. :(

                J 1 Reply Last reply Jan 18, 2021, 1:39 PM Reply Quote 0
                • J
                  johnpoz LAYER 8 Global Moderator @Saravanen
                  last edited by johnpoz Jan 18, 2021, 1:45 PM Jan 18, 2021, 1:39 PM

                  Seems like an odd thing to do - overlapping networks in the same network.. Good luck. Thanks for entertaining my curiosity cat..

                  I thought it could be a remote site via a vpn, having overlap of some vlan in your internal network.. Which you could just use say the tunnel IP to allow them to ssh/gui to pfsense. Where the tunnel network should be be overlapping any network either remote or local..

                  But sure a vip would allow you to put a non overlapping IP on pfsense to be able to access.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  1 out of 8
                  • First post
                    1/8
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                    This community forum collects and processes your personal information.
                    consent.not_received