Non RFC1918 on VLAN
-
Hello, I'm trying to find best approach how to make aditional gateway for one VLAN. This VLAN was routed with device that will be unplugged. Bad is, that it is old production VLAN, that range (194.5.x.x ) cant be changed on devices.
I want to add normal range RFC1918 compliant, DHCP,DNS services for some non static devices, but still need to route traffic for old static devices that I cant touch.
I start to make RFC1918 range on interface and add VIP(after disconnecting old router it will be his IP) with 194.5.x.x range(/23). I'm not network professional, so want to ask community - is this good approach? Can I make GW from VIP address? Isnt there something better? Thx for ideas.
-
@georgecz58
Yes you can use VIPs as gateway.
But it is not a good idea to assign different subnets to the same interface. However, it may work though if the devices only need to connect to other networks across the router.
Since you already use VLANs anyway, better to put the non-static devices in a separate VLAN. -
@viragomann I know..but for now, this plant is 1500 Km far away and I need to change switches, cables..so for now I'm trying make some temp solution. So if I add to Gateways ip address from VIP and on VLAN firewall rules i setup that all traffic to that public ip must go through this VIP GW, it can work? Or when there is VIP, pfsense automaticly use it as GW and didnt send it to real public address?
-
@georgecz58
Not clear, what you really try to achieve. Maybe you can provide a drawing?