Setting up PFsense with one NIC

WABAM

New Member
Apr 6, 2020
1
0
1
25
I have a Dell optiplex 7010 that I use as a server with only one network adapter. I want to install a pfsense VM in front of all my other VM's in order to block certain IP's, country's and so on. How can I configure my network in order that all trafic goes through pfsense.
Setup i want: Router ---- pfsense ---- other vm's

Note that the pfsense and other vm's are all on proxmox on the same device.
 
You can either assign your NIC to the VM directly using PCI passthrough - or simply create two bridges (vmbr0, vmbr1), have your NIC as slave to vmbr0 and assign only vmbr1 to your other VMs. Your pfsense then has both assigned and uses vmbr0 as WAN and vmbr1 as LAN sides. Make sure your pfSense has NAT set up to allow your VMs to access outside networks.

Keep in mind that the first variant is only a good idea if you can always ensure physical access to your PVE host, as otherwise you might lose access to your host in case the pfsense fails. With the second you can give your PVE host an IP address on vmbr0 and reach it that way.
 
  • Like
Reactions: WABAM

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!