Dhcp and gateway from corp firewall, PF &CP for wifi only



  • Hi all,

    Here is what i would like to know…

    We have a corporate firewall that is the gateway and also DHCP server.  I would like to setup a PF box to use for the wifi only.  I would like this to be all on the same network.  I would like to leave the corp firewall as is and only add the pf box for the wifi.  I dont want to enable DHCP on the pf box because it is coming from the corp firewall.  Is this possible?  My box has 2 nics, would i have to bridge them?  here is how i envision it

    Internet===>Corp Firewall/Gateway/DHCP===>PFSense===>Switch===>Wifi Accesspoints

    Not sure if it is possible.

    thanks in advance!



  • That is possible in general, and widely done. But not possible putting wifi on the same subnet as the corporate network, you'll have to put a separate subnet on the wifi in the scenario you describe there.



  • @cmb:

    But not possible putting wifi on the same subnet as the corporate network, you'll have to put a separate subnet on the wifi in the scenario you describe there.

    Why is that?  There is no way of bridging them together?  Would i have to use VLANS and trunk them together?



  • Can't do CP on a transparent bridge, for a variety of reasons. Can either do one flat network with the APs, or VLANs if using VAP on the APs.



  • Not sure i understand?  When you say "one flat netowrk" do you mean the PF box do everything(gateway/dhcp, etc?  not sure what VAP is?  sorry…



  • VAP == multiple SSIDs bridged over to multiple VLANs on your APs. Minus that, you have a flat network with all the APs that's behind the pfSense box, either way it will do DHCP, and be the gateway for the wireless network if you need to use CP.


Locked