Ok so I created 3 Linux Bridge connections in PVE as per below and enabled VLAN aware. vmbr0 is the dedicated IP for PVE.
Then for the pfAdmin VM, i did this; I add the 3 Linux Bridge cards (WAN, LAN, SYNC interface for CARP) On the unifi switch side these 3 ports are set to default untagged...