Multiple public IPs from WAN Interface. Bridge with other interface?

Started by sysop11, April 26, 2023, 03:25:30 AM

Previous topic - Next topic
It's my first run with OPNSense and I'm loving everything about it. Flashed it to a Sophos SG 115 and it's working amazingly. Now, I'm unsure of how to mimic the functionality of my previous firewall and am hoping someone can help.

I have a /27 block here and the servers are plugged into a switch, which used to goto my Sonicwall, which bridged to the WAN port and was able to pass the IPs (6 servers here, each have their own public IP, assigned on the device itself). Forgive me if my terminology is incorrect. I'm not exactly sure how to duplicate this on OPNSense and would appreciate some detailed guidance.

What you are looking for is NAT port forwarding, probably.
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do. (Isaac Asimov)

6 servers here, each have their own public IP =
I think you need virtual IPs on the WAN-Interface and then a 1-to-1 NAT for Incoming Traffic.

Thank you very much for the responses. I think osmom is onto something, but allow me to clarify a little.
When I used to use a Sonicwall, the feature was called Port Shield. So a port would Port Shield with the WAN, allowing any device to set any public IP in the range. So we never needed to actual specify specific IPs in the range for devices to be able to use. Is there something comparable or do I need to setup these Virtual IPs in advanced?


I am in the process of doing something similar here. I have a total of 10 LAN ports on my OPNsense box. I configured a 6 port VLAN on my switch. Then ran my fiber connection direct from the ONU to the VLAN. Now I can connect 5 of the OPNsense LAN ports to the VLAN, configure each interface with the proper IP's and gateway and have full access to all 5 public IP's