# Instalacja routera pfSense na Proxmox od PUQ.

**pfSense** to dystrybucja firewall/router oparta na FreeBSD.

**pfSense** jest przeznaczony do zainstalowania na komputerze, jest znany ze swojej niezawodności i oferuje funkcje, które często można znaleźć tylko w drogich komercyjnych zaporach. Ustawień można dokonać za pomocą interfejsu internetowego, który umożliwia korzystanie z niego bez znajomości podstawowych danych. Urządzenia sieciowe z pfSense są powszechnie używane jako zapory obwodowe, routery, serwery DHCP / DNS, sieci VPN.

Pobierz i wgraj obraz ISO najnowszej wersji pfSense ze strony https://www.pfsense.org/download/

  
Utwórz maszynę wirtualną z następnymi parametrami:

CPU: 4  
RAM: 2Gb  
CD/DVD: pfSense.iso  
HDD: 32 GB (virtio)  
LAN1: vmbr0 (virtio)  
LAN2: vmbr1 (virtio)

[![image-1643296852272.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296852272.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296852272.png)

Uruchom maszynę i zainstaluj system.

[![image-1643296857134.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296857134.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296857134.png)

[![image-1643296860985.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296860985.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296860985.png)

[![image-1643296865304.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296865304.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296865304.png)

[![image-1643296870734.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296870734.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296870734.png)

[![image-1643296878516.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296878516.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296878516.png)

[![image-1643296884104.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296884104.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296884104.png)

[![image-1643296891677.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296891677.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296891677.png)

[![image-1643296899875.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296899875.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296899875.png)

Po zainstalowaniu usuń napęd z konfiguracje maszyny wirtualnej, i uruchom maszynę.

Konfigurowanie pfSense przy pierwszym butowaniu.  
  
Nie używamy VLANów.

[![image-1643296908217.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296908217.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296908217.png)

Wprowadzamy interfejs WAN (sieć publiczna)

[![image-1643296915229.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296915229.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296915229.png)

Wprowadzamy interfejs LAN (sieć prywanta)

[![image-1643296923069.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296923069.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296923069.png)

Potwierdzam.

[![image-1643296929341.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296929341.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296929341.png)

Konfigurowanie statycznego adresu na interfejsie WAN.

Parametry sieci publicznej dostaniesz u usługodawcy.

[![image-1643296935734.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296935734.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296935734.png)

[![image-1643296942102.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296942102.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296942102.png)

[![image-1643296956772.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296956772.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296956772.png)

[![image-1643296964065.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296964065.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296964065.png)

[![image-1643296980870.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296980870.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296980870.png)

[![image-1643296988822.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296988822.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296988822.png)

[![image-1643296997330.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643296997330.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643296997330.png)

[![image-1643297006838.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643297006838.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643297006838.png)

[![image-1643297013403.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643297013403.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643297013403.png)

**UWAGA:**

**pfSense** blokuje dostęp do WEB interfejsu na porcie WAN.

Dla odblokowaniu dostępu trzeba dodać regułę w zaporę.

easyrule pass wan tcp any any 80

[![image-1643297019815.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643297019815.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643297019815.png)

[![image-1643297025929.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643297025929.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643297025929.png)

**Możesz zalogować się na router za pomocą przeglądarki internetowej.**

**Domyślne parametry logowania  
Username**: *admin  
**Password**: *pfsense*

[![image-1643297033325.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643297033325.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643297033325.png)

[![image-1643297039983.png](https://doc.puq.info/uploads/images/gallery/2022-01/scaled-1680-/image-1643297039983.png)](https://doc.puq.info/uploads/images/gallery/2022-01/image-1643297039983.png)