<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Help me define this setup (in pfsense terms)]]></title><description><![CDATA[<p dir="auto">I am fairly well versed in network and especially *bsd, but the pfsense gui/terminology has really thrown me for a loop.</p>
<p dir="auto">I have a pfsense box with dual wlan and one nic.  I already have an openbsd gateway elsewhere on the lan and want to use my pfsense box as a wlan AP with captive portal and the like.  I have already bridged the wlan to the lan and that worked, though you can't have a portal on that.. so now i'm off to find out how to get it going without bridging.  Take a look at the attached diagram and just point me in the right direction.  Do the WLAN clients have to be on a separate ip range?  I have RTFMed a bit and poked around the forum but I'm at a loss.</p>
<p dir="auto">Assuming they go on a diff. ip range.  I need to go from WLAN –&gt; LAN --&gt; openbsd gateway (which is elsewhere on the LAN)</p>
<p dir="auto">Am I going to have to NAT my wlan subnet to my LAN interface?</p>
<p dir="auto">Any help/direction is greatly appreciated.</p>
<p dir="auto">TIA,<br />
Chris<br />
<img src="http://pfsense.jpg" alt="" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/pfsense.jpg_thumb" alt="pfsense.jpg_thumb" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/pfsense.jpg" alt="pfsense.jpg" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/topic/8505/help-me-define-this-setup-in-pfsense-terms</link><generator>RSS for Node</generator><lastBuildDate>Mon, 13 Jul 2026 22:14:14 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/8505.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 22 Apr 2008 01:29:07 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Help me define this setup (in pfsense terms) on Wed, 23 Apr 2008 00:01:05 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/hoba">@<bdi>hoba</bdi></a>:</p>
<blockquote>
<ul>
<li>disable nat by enableing manual outbound nat (firewall&gt;nat, outbound) and deleting all autocreated rules</li>
</ul>
</blockquote>
<p dir="auto">That is all, that is needed at the pfSense to shutdown NAT. Additional to that you only need that one static route at the openbsd box.</p>
<p dir="auto">I don't get that other thought with the WLAN and nat but the above procedure is pretty simple and probably better.</p>
]]></description><link>https://forum.netgate.com/post/171807</link><guid isPermaLink="true">https://forum.netgate.com/post/171807</guid><dc:creator><![CDATA[hoba]]></dc:creator><pubDate>Wed, 23 Apr 2008 00:01:05 GMT</pubDate></item><item><title><![CDATA[Reply to Help me define this setup (in pfsense terms) on Tue, 22 Apr 2008 12:58:53 GMT]]></title><description><![CDATA[<p dir="auto">You are saying if I nat they will appear to come from my Pfsense WAN? I want them to appear to be from Pfsense LAN.  I don't really have a WAN per se on the Pfsense box.</p>
<p dir="auto">I haven't really done static routes in Openbsd.. (i know it's route add) I've always done homogeneous networks.  Sounds like a cleaner way to go but I don't follow the configuration that is required on the pfsense box.  Do I have to have a virtual interface for my Openbsd gateway that is on that subnet? If I had the space I'd add another network card to my gateway but alas that isn't an option.</p>
<p dir="auto">And the other thought is that I could connect my other wireless interface to a remote wlan and then call that my WAN, then nat my stuff over to that interface and skip my openbsd gateway.</p>
<p dir="auto">blah.</p>
<p dir="auto">::chris</p>
]]></description><link>https://forum.netgate.com/post/171758</link><guid isPermaLink="true">https://forum.netgate.com/post/171758</guid><dc:creator><![CDATA[corrumpu]]></dc:creator><pubDate>Tue, 22 Apr 2008 12:58:53 GMT</pubDate></item><item><title><![CDATA[Reply to Help me define this setup (in pfsense terms) on Tue, 22 Apr 2008 02:59:00 GMT]]></title><description><![CDATA[<p dir="auto">Yes, the wlan subnet behind the captive portal has to be on a different iprange.</p>
<p dir="auto">You then have 2 options:</p>
<ul>
<li>using nat which will make all clients appear to be coming from the pfsense wan interface IP</li>
<li>disable nat by enableing manual outbound nat (firewall&gt;nat, outbound) and deleting all autocreated rules and add a static route at your openbsd gateway through the wan ip of the pfsense to that subnet behind the cp.</li>
</ul>
]]></description><link>https://forum.netgate.com/post/171702</link><guid isPermaLink="true">https://forum.netgate.com/post/171702</guid><dc:creator><![CDATA[hoba]]></dc:creator><pubDate>Tue, 22 Apr 2008 02:59:00 GMT</pubDate></item></channel></rss>