IPTables Conversion



  • Hi All,
    I have recently joined a company and have been tasked with coverting their iptables firewall to PFSense.

    I am looking for a bit of help with coverting this over…eth0 and eth1 have the same IP address on our firewall, with different subnet masks.

    eth0 is physically connected directly to a cable modem, whereas eth1 is the interface for the DMZ which has

    INET_IP='x.x.x.1' <------ 255.255.255.255, public IP
    INET_IFACE="eth0"

    DMZ_IP="x.x.x.1"  <----- 255.255.255.0, public IP
    DMZ_IFACE="eth1"

    This rule allows traffic to the internet

    $IPTABLES -A FORWARD -i $DMZ_IFACE -j ACCEPT

    Can I replicate this setup in PFSense? I have tried adding these addresses to WAN and OPT1, but PFSense complains that the address is in use by another interface.


Log in to reply