Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Bridge probably misconfiguired

    Scheduled Pinned Locked Moved NAT
    1 Posts 1 Posters 987 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      rfinterference
      last edited by

      I originally posted here thinking that my pfsense box was not correctly applying firewall rules to one of my interfaces. When I looked into it further I found other problems.  Here is a description of my network:
      WAN EM0: (Switch0 GATEWAY)
      IP 12.XXX.XXX.6
      Gateway 12.XXX.XXX.1
      Nameserver 12.X.X.1 12.X.X.2

      LAN EM1: (Switch1 VLAN0))
      IP 192.168.10.1
      Netmask 255.255.255.0
      DHCP 192.168.10.100 - 192.168.100.110

      OPT EM2:(Switch1 VLAN1))
      IP NONE
      Netmask NONE
      DHCP NONE

      BRIDGE BRIDGE0:
      IP 192.168.12.1 (Do I even need an IP on this?)
      WAN + OPT

      ESXI MGMT NIC1: (Switch1 VLAN1)
      IP 12.XXX.XXX.7

      ESXI NIC2: (Switch1 VLAN0)

      PROXMOX NIC1: (Switch1 (VLAN1) POOL1
      IP 12.XXX.XXX.8

      PROXMOX NIC2: (Switch1 VLAN1) POOL2

      VIP Alias:
      12.XXX.XXX.9
      12.XXX.XXX.10
      12.XXX.XXX.11

      NAT 1 to 1:
      WAN 12.XXX.XXX.9 LAN 192.168.10.9
      WAN 12.XXX.XXX.10 LAN 192.168.10.10
      WAN 12.XXX.XXX.11 LAN 192.168.10.11

      NAT Outbound:
      WAN 192.168.10.0/24
      WAN 127.0.0.0/8

      I have 2 servers with 2 NICs in each. One is ESXI and the other Proxmox. I had Pfsense working before with the management interfaces of my servers just plugged in to a separate switch. I then added a NIC to my pfsense box  and want this bridged to the WAN so that I can have Public IPS behind it for the management interfaces and for a few other servers that wont work with 1:1. I created my bridge added OPT and WAN to it then assigned a Bridge interface. Now that it is done I can access the machines that are behind it but they can not access DNS, ping the gate and other odd behavior. I have been watching my syslog for a possibility that I had rules configured incorectly but that doesn't seem to be the case. I assume I have something incorrect but just cant find it.

      Everything on my LAN that uses 1:1 is still working just fine. Thanks for the help
      rfi

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.