Chapter 5 – Network Address Translation

  1. Classless networks (CIDR), private networks (RFC 1918 networks), and IPv6. Any two would be acceptable.
  2. No; we do not need to alter the Outbound NAT settings because outbound NAT rules were generated for each of the non-WAN interfaces.
  3. Two rules (one for IPsec and the other for all other traffic).
  4. 1:1 NAT.
  5. The port forwarding traffic will be blocked by the firewall.
  6. We normally don’t care what the source of the incoming traffic is.
  7. (a) 7000; (b) 3389.
  8. (a) Multihoming and route aggregation are both valid answers. (b) DHCPv6.

Get Mastering pfSense now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.