Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




489 posts

Ultimate Geek


# 206067 8-Dec-2016 16:10
Send private message

So I have a small ESXi machine, and wanting to setup pfsense on it for my spark fibre connection. I have everything setup, but nothing happening on my WAN port.

 

ESXi - PFSense - LAN/STATIC, WAN/VLAN10/PPPoE,

 

I have read other posts here, but it seems like people are running it a barebones machine and not virtual.

 

Anyone here doing the same thing?





Balm its gone!


Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic
 1 | 2
1091 posts

Uber Geek


  # 1684911 8-Dec-2016 20:44
Send private message

How is the esxi box connected to ONT? How many nics in the esxi box? Add what kind?




418 posts

Ultimate Geek


  # 1685449 9-Dec-2016 18:30
Send private message

you may need to allocate a particular port in esxi to the vm so like eth0 is directly allocated to pf sense in esxi settings as the wan port of the virtual machine, i have a friend that runs sophos in a vm and it works fine but he had to do this to make it work


 
 
 
 


597 posts

Ultimate Geek

Trusted
Internet by Design

  # 1685454 9-Dec-2016 18:49
Send private message

You can use VLAN10 to your advantage and only need one physical network card.

 

 

 

Plug the ONT into your switch. If it's managed you'll need to tag VLAN 10 through to your ESX host, if not, most dumb switches will allow VLAN tags to pass without an issue.

 

Create a new VM network, set the VLAN to 10 and give pfsense that network as it's WAN.

 

Then don't use a VLAN inside pfsense, just dial the PPPoE directly on the interface.





Ask me about Web Servers, Wordpress and the internet in general.

 

 

 

Internet by Design


2120 posts

Uber Geek


  # 1685458 9-Dec-2016 19:08
Send private message

Don't know why you've set the IP config to static. Try automatic/DHCP from isp.

Unless of course you do have a static IP (but then usually a static IP is assigned by DHCP by most ISPs anyway)

38 posts

Geek


  # 1685469 9-Dec-2016 19:40
Send private message

I'm using pfsense on Bigpipe fibre.  Try the above ^




489 posts

Ultimate Geek


  # 1685537 9-Dec-2016 21:59
Send private message

mcraenz: How is the esxi box connected to ONT? How many nics in the esxi box? Add what kind?

 

4 Port Intel NIC. Have setup one PORT as WAN and another one as LAN with a third PORT as Management.

 

WAN Port connected to ONT. LAN Port connected to switch as with Management Port.





Balm its gone!




489 posts

Ultimate Geek


  # 1685538 9-Dec-2016 22:00
Send private message

sparkz25:

 

you may need to allocate a particular port in esxi to the vm so like eth0 is directly allocated to pf sense in esxi settings as the wan port of the virtual machine, i have a friend that runs sophos in a vm and it works fine but he had to do this to make it work

 

 

Have done this, One port of Management, One port for WAN and one port for LAN. Still not getting DHCP settings from Spark.





Balm its gone!


 
 
 
 




489 posts

Ultimate Geek


  # 1685539 9-Dec-2016 22:00
Send private message

macuser: Don't know why you've set the IP config to static. Try automatic/DHCP from isp.

Unless of course you do have a static IP (but then usually a static IP is assigned by DHCP by most ISPs anyway)

 

 

 

LAN port has STATIC, WAN port has DHCP.





Balm its gone!




489 posts

Ultimate Geek


  # 1685540 9-Dec-2016 22:02
Send private message

danielfaulknor:

 

You can use VLAN10 to your advantage and only need one physical network card.

 

 

 

Plug the ONT into your switch. If it's managed you'll need to tag VLAN 10 through to your ESX host, if not, most dumb switches will allow VLAN tags to pass without an issue.

 

Create a new VM network, set the VLAN to 10 and give pfsense that network as it's WAN.

 

Then don't use a VLAN inside pfsense, just dial the PPPoE directly on the interface.

 

 

 

 

Interesting, I have a switch that can do this. So leave out the VLAN within PFSENSE, setup VLAN on WAN Virtual Port within ESXi and on Switch and I should be good to go? Will I have to worry about any security issues on the switch, due to it being on the WAN? PFSENSE WAN Port --> SWITCH --> OTA --> Internet





Balm its gone!


418 posts

Ultimate Geek


  # 1685546 9-Dec-2016 22:32
Send private message

so for the wan port you need to assign it directly to the vm in these settings in esxi

 

 

and as every one else has said in the pf sense side of thing you need to set a vlan10 and so on and then assign a virtual nic to the pf sense vm and make that the lan port for the v switch, then its just configuring a port on the nic to act as a port from the v switch for the lan

 

 

 

 

 

i would start by working my way through and getting the nic assigned to the vm first and making sure i can connect to the internet within the console of the vm and slowely work my way around to the v switch or the lan port




489 posts

Ultimate Geek


  # 1685591 10-Dec-2016 08:29
Send private message

sparkz25:

 

so for the wan port you need to assign it directly to the vm in these settings in esxi

 

 

and as every one else has said in the pf sense side of thing you need to set a vlan10 and so on and then assign a virtual nic to the pf sense vm and make that the lan port for the v switch, then its just configuring a port on the nic to act as a port from the v switch for the lan

 

 

 

 

 

i would start by working my way through and getting the nic assigned to the vm first and making sure i can connect to the internet within the console of the vm and slowely work my way around to the v switch or the lan port

 

 

Thanks for this, I understand how ESXi works and what I need to do. Going to test it with the VLAN setup on the ESXi side of it and no VLAN within PFSENSE.





Balm its gone!


2120 posts

Uber Geek


  # 1685600 10-Dec-2016 09:20
Send private message

If you don't end up liking PFsense, I'm using Sophos UTM for my Bigpipe Gigabit connection and it works great.

 

I have server 2016 as my hypervisor though and it multi roles as a media server


'That VDSL Cat'
11013 posts

Uber Geek

Trusted
Spark
Subscriber

  # 1685623 10-Dec-2016 10:12
Send private message

Set your VLAN tag in esxi for the interface port in the vSwitch to 4095 (ALL)

 

 

 

 

 

 

This will allow you to pass any VLAN traffic from a VM inside ESXi to the Physical network.

 

Very handy to do it this way, as if you ever need to expand your network across VLANs, you can just do it in the one place (PfSense) and it is happy.





#include <std_disclaimer>

 

Any comments made are personal opinion and do not reflect directly on the position my current or past employers may have.




489 posts

Ultimate Geek


  # 1685691 10-Dec-2016 13:18
Send private message

macuser:

 

If you don't end up liking PFsense, I'm using Sophos UTM for my Bigpipe Gigabit connection and it works great.

 

I have server 2016 as my hypervisor though and it multi roles as a media server

 

 

 

 

Thanks, have just installed this and it work straight away, I did setup VLAN not he ESXI side of the things and not the VM side. I think ill give it ago, but there is a lot of learning with this.





Balm its gone!




489 posts

Ultimate Geek


  # 1685692 10-Dec-2016 13:19
Send private message

hio77:

 

Set your VLAN tag in esxi for the interface port in the vSwitch to 4095 (ALL)

 

 

 

 

 

 

This will allow you to pass any VLAN traffic from a VM inside ESXi to the Physical network.

 

Very handy to do it this way, as if you ever need to expand your network across VLANs, you can just do it in the one place (PfSense) and it is happy.

 

 

 

 

Thank you, ill try this out.





Balm its gone!


 1 | 2
Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic



Twitter and LinkedIn »



Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Logitech introduces new Made for Google keyboard and mouse devices
Posted 16-Oct-2019 13:36


MATTR launches to accelerate decentralised identity
Posted 16-Oct-2019 10:28


Vodafone X-Squad powers up for customers
Posted 16-Oct-2019 08:15


D Link ANZ launches EXO Smart Mesh Wi Fi Routers with McAfee protection
Posted 15-Oct-2019 11:31


Major Japanese retailer partners with smart New Zealand technology IMAGR
Posted 14-Oct-2019 10:29


Ola pioneers one-time passcode feature to fight rideshare fraud
Posted 14-Oct-2019 10:24


Spark Sport new home of NZC matches from 2020
Posted 10-Oct-2019 09:59


Meet Nola, Noel Leeming's new digital employee
Posted 4-Oct-2019 08:07


Registrations for Sprout Accelerator open for 2020 season
Posted 4-Oct-2019 08:02


Teletrac Navman welcomes AI tech leader Jens Meggers as new President
Posted 4-Oct-2019 07:41


Vodafone makes voice of 4G (VoLTE) official
Posted 4-Oct-2019 07:36


2degrees Reaches Milestone of 100,000 Broadband Customers
Posted 1-Oct-2019 09:17


Nokia 1 Plus available in New Zealand from 2nd October
Posted 30-Sep-2019 17:46


Ola integrates Apple Pay as payment method in New Zealand
Posted 25-Sep-2019 09:51


Facebook Portal to land in New Zealand
Posted 19-Sep-2019 18:35



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.


Support Geekzone »

Our community of supporters help make Geekzone possible. Click the button below to join them.

Support Geezone on PressPatron



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.