Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    It's possible with pfsense

    Scheduled Pinned Locked Moved General pfSense Questions
    3 Posts 3 Posters 848 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      drakke
      last edited by

      I have the first subnet 192.168.0.0/24 with my internet connected.

      I have a PC with pfsence with wan and lan interface.

      I have a second subnet 192.168.100.0/24.

      Is possible with pfsence to give internet to my subnet 192.168.100.0?

      If yes, the interface wan is better to my subnet 192.168.0.0 or if the choice is not important?

      I have a lot of configuration for do what I want?

      1 Reply Last reply Reply Quote 0
      • P
        phil.davis
        last edited by

        You need a place to plug in the hardware of the second subnet - a 3rd NIC on the pfSense or use VLANs and a VLAN-capable switch. Once you have the 3rd device (NIC ir VLAN) then Interfaces->Assign - assign it to OPT1. Then Interfaces->OPT1 and set it up how you like - 192.168.100.0/24 is fine. Add rules on OPT1 to pass whatever traffic you want to allow out of OPT1. By default pfSense will NAT out from both LAN and OPT1 to WAN - so you will get internet as soon as you add pass rule/s to OPT1.

        The 1st subnet is fine on LAN 192.168.0.0/24 - but if you are planning big expansion of your private network, VPN etc., then best to change that LAN subnet to something else, just because loads of people, cafes etc. are already using that subnet and it creates routing hassles if you VPN  in from an outside cafe that is 192.168.0.0/24 and your own internal LAN is the same.

        As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
        If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

        1 Reply Last reply Reply Quote 0
        • chpalmerC
          chpalmer
          last edited by

          If your on a cable modem and it is a bridge you might want to avoid using 192.168.100.0/ as a subnet if you still want to be able to access your modems gui.

          most bridge modems answer to 192.168.100.1

          Triggering snowflakes one by one..
          Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.