Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Best Instalation for single wan network + farm server

    Scheduled Pinned Locked Moved Firewalling
    4 Posts 4 Posters 743 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A Offline
      amartini
      last edited by

      Hey guys!

      I am working with a new client that has a really mess up configuration.

      He doesnt have a firewall on his network, he has all his public network configured as front end network on his servers.

      Now he wants to do something like that:

      datacenter switch
              l          l
              l          l
            pfs01–-pfs02
              l          l
              l          l
            local switch
              l          l
              l          l
            F. End      B. End

      He want to use the pfsense to protect his farm server (with public address), and also the wan with public address.

      On my mind, this is going to use 6 public address just to configure the pfsenses (2 for the WANs, 2 for the LANs, 2 for CARPs).

      Is there another way to do this without using that much of public IP?

      1 Reply Last reply Reply Quote 0
      • johnpozJ Offline
        johnpoz LAYER 8 Global Moderator
        last edited by

        why would his servers need public once you put behind pfsense.. Just port forward the ports he needs.. If needs a lot of them just do a 1:1 nat.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 26.03 | Lab VMs 2.8.1, 26.03

        1 Reply Last reply Reply Quote 0
        • C Offline
          cistech
          last edited by

          And BTW, CARP can't be used with private IPs? or is necessary to use public IPs?

          1 Reply Last reply Reply Quote 0
          • KOMK Offline
            KOM
            last edited by

            Of course you can use CARP with private IPs or you would never get a HA config working.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.