Hi Chris.

Chris Buechler wrote:
On Thu, Jun 9, 2011 at 5:23 AM, Roberto Nunnari
<roberto.nunn...@supsi.ch> wrote:
Just need to add a firewall rule to allow that.
Ok. I remember I read somewhere that pfSense uses openbsd pf as firewall
even though it is based on FreeBSD. In any case I guess it's possible to do
it via the web interface, right?


Firewall>Rules, WAN.

I've been trying to set a rule there, but it doesn't seem to work.

I did it as indicate here:
http://doc.pfsense.org/index.php/Remote_firewall_Administration
saved and then applied the rules.

I also tried to change https to http and myClientIP instead of any for the source address, but didn't help.

Also, from the shell, I noticed that both pf and ipfw are active!
Is that normal?

I have some basic knowledge of ipfw, but none of pf.

listing rules with
 ipfw [table n] list
and
 pfctl -s rules

doesn't show the rule I just added..

Any hint, please?
Robi




We do not enough public IPs, so we'd rather go with the latter, ie NAT each
subnet to a unique virtual IP. That should give us a way to track down the
public ip to a classroom (mapped to a captive network).


Oh, sounded like the WAN-side was really on another private LAN, in
that case yeah I would definitely NAT each subnet to its own public
IP.


Is it possible to define the virtual ips for the wan nic via the web
interface, or is it necessary to go to the shell and/or edit files?


Firewall>Virtual IPs

---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



--
Roberto Nunnari
Servizi Informatici SUPSI-DTI
SUPSI-DTI - Via Cantonale - 6928 Manno - Switzerland
helpdesk email: mailto: helpd...@dti.supsi.ch
direct email: mailto:roberto.nunn...@supsi.ch
tel: +41-58-6666561

---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org

Reply via email to