Moving from a pix to pfsense, I have a few nat/firewall questions



  • I'm currenlty using a pix which I'm fimiar with. I'd like to convert to a pfsense box, and I want it to go as smoothly as possible. Here's the juicy part of my config:

    ip address outside x.x.x.146 255.255.255.240
    global (outside) 1 x.x.x.147 netmask 255.255.255.240

    static (inside,outside) x.x.x.150 192.168.1.24 netmask 255.255.255.255 0 0
    static (inside,outside) x.x.x.151 192.168.1.25 netmask 255.255.255.255 0 0
    conduit permit tcp host x.x.x.150 eq 1494 any
    conduit permit tcp host x.x.x.151 eq 5993 any

    x.x.x.146 is the pix.
    x.x.x.150 is server 1
    x.x.x.151 is server 2

    I'm assuming I'll make the wan port on pfsense x.x.x.146. I'm not sure how to program x.x.x.147 to the pfsense…  This is the ip that shows up if I go to whatsmyip.org. For the servers I'm assuming two 1:1 nats, and then forwarding the individual ports in the firewall settings.

    Am I close?


Log in to reply