Example – filtering outbound NAT for a single network

To demonstrate how Outbound NAT can be used as a means to make it easier to monitor network traffic, consider a hypothetical example in which we suspect that users of a particular subnet are using a disproportionate amount of bandwidth. We want to monitor the traffic on the SALES net. There are several tools we could use to do this, but one of the easiest tools to use is pfTop, a utility built into pfSense that enables us to monitor bandwidth and traffic. We could filter the results to view only traffic whose source is the SALES net. However, this will show individual connections, whereas we might want to view the aggregate traffic for the interface. (We might even want to view aggregate ...

Get Mastering pfSense now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.