Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Converting from a PIX firwall to pfsense

    Scheduled Pinned Locked Moved NAT
    4 Posts 3 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cmal00
      last edited by

      We are converting from a PIX firewall to a pfsense firewall. One of the thing I need information is like the following line on a PIX:

      static (inside,DMZ) 10.205.0.0 10.205.0.0 netmask 255.255.0.0 0 0

      How would I do this on the pfsense box?

      Thanks

      1 Reply Last reply Reply Quote 0
      • E
        esoteric
        last edited by

        I'm not familiar with the interworkings of PIX firewalls that well, what exactly does that command do and more importantly what are you trying to achieve?

        -Erik

        Erik Kristensen (pfS Dev)
        –---------------------
        Programmer, Interface Design, Network Security, Computer Forensics
        Certs: GCFA, Sec+, SFCP, RHCT, CEH

        1 Reply Last reply Reply Quote 0
        • C
          cmal00
          last edited by

          What this command does is that it will not NAT across a inside IP address, or in this case, a inside network into the DMZ. In other words, it keeps his inside address and is able to connect to any of the DMZ servers. The PIXs creates this static. This is the way we have it on the PIX right now. If there is a different way to do it on PFsense, please let me know.

          Thanks

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            By default, pfSense will not NAT between internal subnets.

            You can customize this behavior by using manual outbound NAT rules.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.