Mikrotik Transparent Bridge Mode Questions;;
-
So I have some pretty beefy Mikrotik Routers that do an amazing job of routing and dont really want to stray away from them when it comes to that. But I do want to add a layer of security and control over all of the traffic on all the vlans.
my first question is about how it all connects.. I couldn't just connect both the mikrotik to the same core switch right (the way I see it, the traffic never go through the pfsense so how could it see it. (especially on all the vlans)
So I figure there has to be like a 10gig daisy chain style connection where the pfsense is directly in the middle of the connection. I'll post a diagram to see if anyone can help me fully understand that.Now another question is, do I need to create vlan interfaces or will I just be able to create rules in PFsense in that one bridge interface and define SRC. address or address list to filter per VLAN.
-
You don't want to be routing local traffic through a transparent firewall. Replace the Mikrotik with Pfsense. You will end up with a better firewall.