b) yes, thought / focussing on this already, so virtual IP in opnsense + 1:1 nat, right o n that
c) not dnsmasq, but http://shorewall.org/manpages/shorewall-snat.html - so source natting
Currently working on PCI nic passthrough to ease things up / having a better performance.
If that fails i...