Interfaces with VLANs and IPsec

  • As I understand it, if a physical interface is a member of several VLANs, then pfsense will show a separate logical interface representing each VLAN. So far, wonderful. My question is this: When creating IPsec tunnels, can its endpoint be any of the logical interfaces? Instinct tells me yes, but I want to make sure. The reason I ask is this: one of my ISPs can give us private data, voice and internet over the same physical link, with VLANs defined on a catalyst switch they provide. I want to connect one trunk port on the switch to one pfsense interface, instead of 3.


