<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[How To Setup SD-1100 w&#x2F;Ubiquiti ER4+ES10]]></title><description><![CDATA[<p dir="auto">I'm trying to put my SD-1100 behind my Ubiquiti router &amp; switch devices like this:</p>
<pre><code>&lt;Internet&gt;
   ^
   v
Motorola MB8600 Cable Modem (MB8600)
   ^
   v
Ubiquiti EdgeRouter 4 (ER4)
   ^
   v
Ubiquiti EdgeSwitch 10 (ES10)
   ^
   v
Netgate SD-1100 (IDS/IPS)
   ^
   v
Ubiquity UAP-AC-LR (Wireless AP)
   ^
   v
&lt;LAN&gt;
</code></pre>
<p dir="auto">Up until recently, I have had the SD-1100 behind the MB8600 followed by the ER4 &amp; then ES10. I believe Double NAT'ing was at play, among a few other poor configurations.</p>
<p dir="auto">Given that the ER4 and ES10 are far more capable performance-wise with routing, the SD-1100 should be behind them. How should an SD-1100 be configured to support this topology? ...static IPs on both its WAN+LAN ports? ...external/internal bridge?</p>
]]></description><link>https://forum.netgate.com/topic/172505/how-to-setup-sd-1100-w-ubiquiti-er4-es10</link><generator>RSS for Node</generator><lastBuildDate>Sun, 10 May 2026 05:45:29 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/172505.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 28 May 2022 23:07:43 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to How To Setup SD-1100 w&#x2F;Ubiquiti ER4+ES10 on Tue, 26 Jul 2022 01:39:17 GMT]]></title><description><![CDATA[<p dir="auto">Pure routing sounds like the way to go @stephenw10. Thanks!</p>
]]></description><link>https://forum.netgate.com/post/1053514</link><guid isPermaLink="true">https://forum.netgate.com/post/1053514</guid><dc:creator><![CDATA[evan914]]></dc:creator><pubDate>Tue, 26 Jul 2022 01:39:17 GMT</pubDate></item><item><title><![CDATA[Reply to How To Setup SD-1100 w&#x2F;Ubiquiti ER4+ES10 on Sun, 29 May 2022 15:54:12 GMT]]></title><description><![CDATA[<p dir="auto">Bridging will not be any faster than routing. In fact it's often slower.<br />
But if you want to configure the SG-1100 as a transparent device that's what you'd have to do.<br />
<a href="https://docs.netgate.com/pfsense/en/latest/bridges/index.html" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.netgate.com/pfsense/en/latest/bridges/index.html</a></p>
<p dir="auto">You might consider just disabling NAT so it's purely routing, which would be faster.</p>
<p dir="auto">Or just running it as an IDS only using a mirror port on the switch.</p>
<p dir="auto">Steve</p>
]]></description><link>https://forum.netgate.com/post/1044363</link><guid isPermaLink="true">https://forum.netgate.com/post/1044363</guid><dc:creator><![CDATA[stephenw10]]></dc:creator><pubDate>Sun, 29 May 2022 15:54:12 GMT</pubDate></item></channel></rss>