Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PFSense as a WAN Router

    Scheduled Pinned Locked Moved Routing and Multi WAN
    7 Posts 3 Posters 3.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      Aderium
      last edited by

      Is there any information about setting up PF Sense as a WAN Router ? We have a Class C Public IP that will provide services from Virtual Servers each one of them bound to a public IP, but we still would like to use PFSense as the perimeter router for the Class.
      Does this make sense or should I be looking for a different box all together ?

      I see that in the PFSense book it talks about using PFSENSE as a wan router but there nothing more specific then that.

      Regards
      ::)

      Anthony Palermo

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        That's just a normal routing scenario. You'd need an IP address in a separate subnet for pfSense to use as its WAN IP, and then assign an IP in that class C as pfSense's LAN IP, which will be the gateway for your servers. Disable NAT (switch to manual outbound NAT and delete all of the rules) and it should all work normally.

        Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • A
          Aderium
          last edited by

          Let me see if I get this straight

          WAN : Public IP from different subnet
          LAN : Public IPs Class C IP
          Disable NAT ( switch to manual outbound)

          GOT IT !!

          Anthony Palermo

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            That's about it.

            Just be sure that after you switch to manual outbound NAT you delete the rules that show up that match your class C.

            And be sure that your class C is routed to your WAN IP by your upstream provider.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • A
              Aderium
              last edited by

              Would the setup be any different if I did not have a full Class C in the LAN ?

              Anthony Palermo

              1 Reply Last reply Reply Quote 0
              • jimpJ
                jimp Rebel Alliance Developer Netgate
                last edited by

                Depends on what you do have on the LAN. As long as it is a full routable subnet it should be fine.

                Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                Need help fast? Netgate Global Support!

                Do not Chat/PM for help!

                1 Reply Last reply Reply Quote 0
                • D
                  danswartz
                  last edited by

                  Nowadays, almost no-one cares about classful nets anymore, so I wouldn't worry about it.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.