Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can Pfsense running on a virtual machine block website access from phy machine?

    Scheduled Pinned Locked Moved Firewalling
    5 Posts 3 Posters 879 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      networkinggeek
      last edited by

      Hello community I am newbie using Pfsense. I have installed Pfsense on Virtualbox and I am trying to test some firewall rules that can block certain websites. My question is whether by applying firewall rules in Pfsense which is running on Virtual machine, can it block the website access from Physical machine? I mean to ask whether those rules can be reflected in the physical machine also.

      "Mastery isn't a natural gift. Its a daily devotion"

      1 Reply Last reply Reply Quote 0
      • C
        cmb
        last edited by

        Depends on the circumstance. It's possible where your traffic is actually going through the VM.

        Sounds like you should attend our next hang out:
        https://blog.pfsense.org/?p=1367

        1 Reply Last reply Reply Quote 0
        • N
          networkinggeek
          last edited by

          So what can be the possible scenarios to make the virtual firewall concept work?

          "Mastery isn't a natural gift. Its a daily devotion"

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            I run my pfsense virtual, on its own host.

            But can be ran on 1 machine - just depends on what your phy machines points to for its gateway.  Its best done with 2 physical nics.  Your VM gets an IP on the wan interface while your physical machine does not.  Your VM and PHY machine both get an IP on the lan phy nic.  This way they can both talk to physical machines on the lan network.  And all the phy machine on this network use the VM lan IP as their gateway..

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • N
              networkinggeek
              last edited by

              Thank you so much johnpoz.

              "Mastery isn't a natural gift. Its a daily devotion"

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.