I want to setup a WAN, DMZ and private LAN.
I want to do a Deny ALL and just open the 4-5 ports that I need to DMZ and a Deny all on the private LAN
on the DMZ are a web web servers, all have public IP's.
I have 3 NICS in this box.
em1 = WAN and that is a static IP provided by my ISP em3 = LAN and pfSense provided that a 192.168.x.x address.
So my connection goes INTERNET -> pfSense Box -> public switch -> public servers are plugged in here with public IP's. I then want also pfSense Box -> private switch -> private stuff like wireless, laptops, etc.
What I dont see is how to create a DMZ (if that needs to be separate)?
How does one edit the rule sets?
Anyone have a good play by play tutorial?
UPDATE 1: OK, I see that people usually create a DMZ by defining the OPT interface.