August 31, 2015

1937 words 10 mins read

Tutorial: Using VMWare ESXi and PFsense as a network firewall/router

In most networks, you will have dedicated hardware to function as your “edge” (firewall/router). This is typically for the best, but there are always cases where you can’t put out that dedicated hardware. Sometimes it’s for cost reasons and sometimes it’s for complexity. In my particular case, I was installing an

ESXi server in a datacenter and only had 2 amps of power to work with, of which my server took up ~1.8amps at peak load. So cost came into play and we simply couldn’t afford to put in dedicated hardware that could push enough bits. In such cases, it is possible the setup ESXi on the network edge, in a reasonably secure fashion, with PFSense acting as a firewall.

The most important requirement to this project is that your VMWare ESXi server has at least two network ports on it. One will be the WAN port, one will be the LAN port. Also throughout this tutorial I will use

PFSense as my firewall/router OS of choice, however it is just an example that can be easily swapped out with any other virtualized firewall product. Some options include Palo Alto Networks, Fortinet, and even generic *NIX operating systems with the right forwarding/firewall setup.

Section 1 – VMWare Setup

Step 1 – Install & Connect to ESXi

  <ul>
    <li>
      You should already have ESXi setup and connected via the VSphere client on Windows. <li>
        It&#8217;s recommended that you static the IP address of the VMWare Management interface, if you&#8217;ve not done so already. <li>
          Go to Configuration > Networking <li>
            Rename the vSwitch interface you&#8217;re using to &#8220;LAN&#8221; </ul> </td> <td width="150px">
              <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_23_50-esxi1.png"><img data-attachment-id="6393" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_23_50-esxi1/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_23_50-esxi1.png" data-orig-size="722,534" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_23_50-esxi1" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_23_50-esxi1-300x222.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_23_50-esxi1.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_23_50-esxi1-150x150.png" alt="2015-08-25 18_23_50-esxi1" width="150" height="150" class="alignnone size-thumbnail wp-image-6393" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_23_50-esxi1-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_23_50-esxi1-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
            </td></tr> 
            
            <tr>
              <td>
                Step 2 &#8211; Add new interface<br /> You want &#8220;Virtual Machine&#8221; type
              </td>
              
              <td>
                <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_24_15-Add-Network-Wizard.png"><img data-attachment-id="6396" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_24_15-add-network-wizard/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_24_15-Add-Network-Wizard.png" data-orig-size="786,585" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_24_15-Add Network Wizard" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_24_15-Add-Network-Wizard-300x223.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_24_15-Add-Network-Wizard.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_24_15-Add-Network-Wizard-150x150.png" alt="2015-08-25 18_24_15-Add Network Wizard" width="150" height="150" class="alignnone size-thumbnail wp-image-6396" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_24_15-Add-Network-Wizard-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_24_15-Add-Network-Wizard-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
              </td>
            </tr>
            
            <tr>
              <td>
                Step 3 &#8211; Select NIC<br /> You want to select your unused NIC (assuming you only have two)
              </td>
              
              <td>
                <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_11-Add-Network-Wizard.png"><img data-attachment-id="6397" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_25_11-add-network-wizard/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_11-Add-Network-Wizard.png" data-orig-size="786,585" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_25_11-Add Network Wizard" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_11-Add-Network-Wizard-300x223.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_11-Add-Network-Wizard.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_11-Add-Network-Wizard-150x150.png" alt="2015-08-25 18_25_11-Add Network Wizard" width="150" height="150" class="alignnone size-thumbnail wp-image-6397" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_11-Add-Network-Wizard-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_11-Add-Network-Wizard-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
              </td>
            </tr>
            
            <tr>
              <td>
                Step 4 &#8211; Name it<br /> This is your &#8220;WAN&#8221; interface
              </td>
              
              <td>
                <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_35-Add-Network-Wizard.png"><img data-attachment-id="6398" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_25_35-add-network-wizard/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_35-Add-Network-Wizard.png" data-orig-size="786,585" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_25_35-Add Network Wizard" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_35-Add-Network-Wizard-300x223.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_35-Add-Network-Wizard.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_35-Add-Network-Wizard-150x150.png" alt="2015-08-25 18_25_35-Add Network Wizard" width="150" height="150" class="alignnone size-thumbnail wp-image-6398" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_35-Add-Network-Wizard-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_25_35-Add-Network-Wizard-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
              </td>
            </tr>
            
            <tr>
              <td>
                Step 5 &#8211; Confirm you&#8217;ve got two networks<br /> You&#8217;ll notice that we&#8217;ve got two vSwitches now. The &#8220;LAN&#8221; switch has the Management network and is connected currently. The &#8220;WAN&#8221; switch has nothing, and the adapter is disconnected.
              </td>
              
              <td>
                <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_26_06-VMware.png"><img data-attachment-id="6399" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_26_06-vmware/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_26_06-VMware.png" data-orig-size="756,521" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_26_06-VMware" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_26_06-VMware-300x207.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_26_06-VMware.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_26_06-VMware-150x150.png" alt="2015-08-25 18_26_06-VMware" width="150" height="150" class="alignnone size-thumbnail wp-image-6399" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_26_06-VMware-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_26_06-VMware-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
              </td>
            </tr></table> 
            
            <p>
              <strong>Section 2 &#8211; Virtual Machine Setup</strong>
            </p>
            
            <table class="tutorial">
              <tr>
                <td>
                  Step 1 &#8211; New VM
                </td>
                
                <td width="150px">
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_17-New-VM.png"><img data-attachment-id="6400" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_29_17-new-vm/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_17-New-VM.png" data-orig-size="729,418" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_29_17-New VM" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_17-New-VM-300x172.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_17-New-VM.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_17-New-VM-150x150.png" alt="2015-08-25 18_29_17-New VM" width="150" height="150" class="alignnone size-thumbnail wp-image-6400" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_17-New-VM-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_17-New-VM-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 2 &#8211; Typical Setup
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_31-Create-New-Virtual-Machine.png"><img data-attachment-id="6401" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_29_31-create-new-virtual-machine/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_31-Create-New-Virtual-Machine.png" data-orig-size="714,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_29_31-Create New Virtual Machine" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_31-Create-New-Virtual-Machine-300x288.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_31-Create-New-Virtual-Machine.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_31-Create-New-Virtual-Machine-150x150.png" alt="2015-08-25 18_29_31-Create New Virtual Machine" width="150" height="150" class="alignnone size-thumbnail wp-image-6401" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_31-Create-New-Virtual-Machine-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_31-Create-New-Virtual-Machine-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 3 &#8211; Name your VM
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_39-Create-New-Virtual-Machine.png"><img data-attachment-id="6402" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_29_39-create-new-virtual-machine/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_39-Create-New-Virtual-Machine.png" data-orig-size="714,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_29_39-Create New Virtual Machine" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_39-Create-New-Virtual-Machine-300x288.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_39-Create-New-Virtual-Machine.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_39-Create-New-Virtual-Machine-150x150.png" alt="2015-08-25 18_29_39-Create New Virtual Machine" width="150" height="150" class="alignnone size-thumbnail wp-image-6402" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_39-Create-New-Virtual-Machine-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_39-Create-New-Virtual-Machine-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 4 &#8211; Select Datastore
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_46-Create-New-Virtual-Machine.png"><img data-attachment-id="6403" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_29_46-create-new-virtual-machine/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_46-Create-New-Virtual-Machine.png" data-orig-size="714,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_29_46-Create New Virtual Machine" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_46-Create-New-Virtual-Machine-300x288.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_46-Create-New-Virtual-Machine.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_46-Create-New-Virtual-Machine-150x150.png" alt="2015-08-25 18_29_46-Create New Virtual Machine" width="150" height="150" class="alignnone size-thumbnail wp-image-6403" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_46-Create-New-Virtual-Machine-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_46-Create-New-Virtual-Machine-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 5 &#8211; OS Type<br /> If you&#8217;re using PFSense, select &#8220;Other&#8221; and &#8220;FreeBSD 64bit&#8221;
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_57-Create-New-Virtual-Machine.png"><img data-attachment-id="6404" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_29_57-create-new-virtual-machine/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_57-Create-New-Virtual-Machine.png" data-orig-size="714,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_29_57-Create New Virtual Machine" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_57-Create-New-Virtual-Machine-300x288.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_57-Create-New-Virtual-Machine.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_57-Create-New-Virtual-Machine-150x150.png" alt="2015-08-25 18_29_57-Create New Virtual Machine" width="150" height="150" class="alignnone size-thumbnail wp-image-6404" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_57-Create-New-Virtual-Machine-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_29_57-Create-New-Virtual-Machine-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 6 &#8211; Two NICs<br /> Unlike most VMs with 1 NIC, add 2 NICs to this VM.<br /> Make sure one adapter is on &#8220;WAN&#8221; network and one adapter is on &#8220;LAN&#8221; network.
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_18-Create-New-Virtual-Machine.png"><img data-attachment-id="6405" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_30_18-create-new-virtual-machine/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_18-Create-New-Virtual-Machine.png" data-orig-size="714,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_30_18-Create New Virtual Machine" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_18-Create-New-Virtual-Machine-300x288.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_18-Create-New-Virtual-Machine.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_18-Create-New-Virtual-Machine-150x150.png" alt="2015-08-25 18_30_18-Create New Virtual Machine" width="150" height="150" class="alignnone size-thumbnail wp-image-6405" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_18-Create-New-Virtual-Machine-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_18-Create-New-Virtual-Machine-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 7 &#8211; Allocated HD<br /> PFSense doesn&#8217;t need much space, but it should be allocated a 2:1 for swap (e.g. 4096 MB swap file for 2048 MB of RAM), plus some extra space for packages and logs may be useful.
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_38-Create-New-Virtual-Machine.png"><img data-attachment-id="6406" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_30_38-create-new-virtual-machine/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_38-Create-New-Virtual-Machine.png" data-orig-size="714,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_30_38-Create New Virtual Machine" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_38-Create-New-Virtual-Machine-300x288.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_38-Create-New-Virtual-Machine.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_38-Create-New-Virtual-Machine-150x150.png" alt="2015-08-25 18_30_38-Create New Virtual Machine" width="150" height="150" class="alignnone size-thumbnail wp-image-6406" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_38-Create-New-Virtual-Machine-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_38-Create-New-Virtual-Machine-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 8 &#8211; Edit before completion
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_46-Create-New-Virtual-Machine.png"><img data-attachment-id="6407" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_30_46-create-new-virtual-machine/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_46-Create-New-Virtual-Machine.png" data-orig-size="714,685" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_30_46-Create New Virtual Machine" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_46-Create-New-Virtual-Machine-300x288.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_46-Create-New-Virtual-Machine.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_46-Create-New-Virtual-Machine-150x150.png" alt="2015-08-25 18_30_46-Create New Virtual Machine" width="150" height="150" class="alignnone size-thumbnail wp-image-6407" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_46-Create-New-Virtual-Machine-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_30_46-Create-New-Virtual-Machine-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 9 &#8211; Final settings<br /> As this is my firewall, I want to make sure it is plenty fast. So I opted for 4 cores and 2 GB RAM. Also attach the CD drive to PFSense installer (be it datastore ISO or real USB/Optical drive).
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_31_54-pfsense-Virtual-Machine-Properties.png"><img data-attachment-id="6408" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_31_54-pfsense-virtual-machine-properties/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_31_54-pfsense-Virtual-Machine-Properties.png" data-orig-size="694,625" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_31_54-pfsense &#8211; Virtual Machine Properties" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_31_54-pfsense-Virtual-Machine-Properties-300x270.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_31_54-pfsense-Virtual-Machine-Properties.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_31_54-pfsense-Virtual-Machine-Properties-150x150.png" alt="2015-08-25 18_31_54-pfsense - Virtual Machine Properties" width="150" height="150" class="alignnone size-thumbnail wp-image-6408" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_31_54-pfsense-Virtual-Machine-Properties-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_31_54-pfsense-Virtual-Machine-Properties-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 8 &#8211; Verify Network<br /> Hop back to Configuration > Networking and you should see something like this. Note: various VMs are all attached to the LAN vSwitch, however only PFsense VM is attached to both WAN & LAN (just like a real firewall).
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_33_31-VMWare-Verify.png"><img data-attachment-id="6409" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-25-18_33_31-vmware-verify/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_33_31-VMWare-Verify.png" data-orig-size="969,557" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-25 18_33_31-VMWare Verify" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_33_31-VMWare-Verify-300x172.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_33_31-VMWare-Verify.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_33_31-VMWare-Verify-150x150.png" alt="2015-08-25 18_33_31-VMWare Verify" width="150" height="150" class="alignnone size-thumbnail wp-image-6409" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_33_31-VMWare-Verify-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-25-18_33_31-VMWare-Verify-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                </td>
              </tr>
              
              <tr>
                <td>
                  Step 9 &#8211; VM Startup<br /> Go to Configuration > VM Startup/Shutdown<br /> Click Properties
                </td>
                
                <td>
                  <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_30_32-Store.png"><img data-attachment-id="6423" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-31-12_30_32-store/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_30_32-Store.png" data-orig-size="730,511" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-31 12_30_32-Store" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_30_32-Store-300x210.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_30_32-Store.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_30_32-Store-150x150.png" alt="2015-08-31 12_30_32-Store" width="150" height="150" class="alignnone size-thumbnail wp-image-6423" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_30_32-Store-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_30_32-Store-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a> </tr> 
                  
                  <tr>
                    <td>
                      Step 10 &#8211; Set PFSense to first boot order<br /> You may have other VMs that you want to auto-start, but as this is your firewall, it should be the first to start.
                    </td>
                    
                    <td>
                      <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_31_05-Virtual-Machine-Startup-and-Shutdown.png"><img data-attachment-id="6424" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-31-12_31_05-virtual-machine-startup-and-shutdown/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_31_05-Virtual-Machine-Startup-and-Shutdown.png" data-orig-size="708,456" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-31 12_31_05-Virtual Machine Startup and Shutdown" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_31_05-Virtual-Machine-Startup-and-Shutdown-300x193.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_31_05-Virtual-Machine-Startup-and-Shutdown.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_31_05-Virtual-Machine-Startup-and-Shutdown-150x150.png" alt="2015-08-31 12_31_05-Virtual Machine Startup and Shutdown" width="150" height="150" class="alignnone size-thumbnail wp-image-6424" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_31_05-Virtual-Machine-Startup-and-Shutdown-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_31_05-Virtual-Machine-Startup-and-Shutdown-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a> </tr> </table> 
                      
                      <p>
                        <strong>Section 3 &#8211; PFSense</strong>
                      </p>
                      
                      <table class="tutorial">
                        <tr>
                          <td>
                            Step 1 &#8211; Install PFSense<br /> Once you&#8217;ve installed PFSense, it will automatically configure its local interface to 192.168.1.1
                          </td>
                          
                          <td width="150px">
                            <a href="https://obviate.io/wp-content/uploads/2015/08/pfsense-install1.png"><img data-attachment-id="6415" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/pfsense-install1/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/pfsense-install1.png" data-orig-size="720,447" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="pfsense install1" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/pfsense-install1-300x186.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/pfsense-install1.png" src="https://obviate.io/wp-content/uploads/2015/08/pfsense-install1-150x150.png" alt="pfsense install1" width="150" height="150" class="alignnone size-thumbnail wp-image-6415" srcset="https://obviate.io/wp-content/uploads/2015/08/pfsense-install1-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/pfsense-install1-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                          </td>
                        </tr>
                        
                        <tr>
                          <td>
                            Step 2 (Optional) &#8211; Change local network<br /> You can reconfigure the local network either via web interface (at the aforementioned IP: http://192.168.1.1) or <a href="https://doc.pfsense.org/index.php/Installing_pfSense#Assign_Interfaces_on_the_Console">command line</a>
                          </td>
                          
                          <td>
                            <a href="https://obviate.io/wp-content/uploads/2015/08/pfsense-installer.png"><img data-attachment-id="6414" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/pfsense-installer/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/pfsense-installer.png" data-orig-size="720,390" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="pfsense installer" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/pfsense-installer-300x163.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/pfsense-installer.png" src="https://obviate.io/wp-content/uploads/2015/08/pfsense-installer-150x150.png" alt="pfsense installer" width="150" height="150" class="alignnone size-thumbnail wp-image-6414" srcset="https://obviate.io/wp-content/uploads/2015/08/pfsense-installer-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/pfsense-installer-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                          </td>
                        </tr>
                        
                        <tr>
                          <td>
                            Step 3 &#8211; Configure WAN<br /> Again, this can be configured either via the web, or command line.
                          </td>
                          
                          <td>
                            <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_19_39-pfSense-Interfaces_-WAN.png"><img data-attachment-id="6419" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-31-12_19_39-pfsense-interfaces_-wan/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_19_39-pfSense-Interfaces_-WAN.png" data-orig-size="786,652" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-31 12_19_39-pfSense &#8211; Interfaces_ WAN" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_19_39-pfSense-Interfaces_-WAN-300x249.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_19_39-pfSense-Interfaces_-WAN.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_19_39-pfSense-Interfaces_-WAN-150x150.png" alt="2015-08-31 12_19_39-pfSense - Interfaces_ WAN" width="150" height="150" class="alignnone size-thumbnail wp-image-6419" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_19_39-pfSense-Interfaces_-WAN-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_19_39-pfSense-Interfaces_-WAN-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                          </td>
                        </tr>
                        
                        <tr>
                          <td>
                            Step 4 &#8211; Plug in WAN cable
                          </td>
                          
                          <td>
                            <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-19-13.59.53.jpg"><img data-attachment-id="6420" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-19-13-59-53/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-19-13.59.53.jpg" data-orig-size="2448,3264" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;2.2&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;iPhone 6 Plus&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;1439992793&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;4.15&quot;,&quot;iso&quot;:&quot;200&quot;,&quot;shutter_speed&quot;:&quot;0.25&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;1&quot;}" data-image-title="2015-08-19 13.59.53" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-19-13.59.53-225x300.jpg" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-19-13.59.53-768x1024.jpg" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-19-13.59.53-150x150.jpg" alt="2015-08-19 13.59.53" width="150" height="150" class="alignnone size-thumbnail wp-image-6420" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-19-13.59.53-150x150.jpg 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-19-13.59.53-144x144.jpg 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                          </td>
                        </tr>
                        
                        <tr>
                          <td>
                            Step 5 &#8211; Test<br /> If you&#8217;ve got the ports configured properly (i.e. WAN hardware is WAN in VMWare and WAN in PFSense), you should be able to connect to the internet.
                          </td>
                          
                          <td>
                            <a href="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_27_35-pfSense-Status_-Dashboard.png"><img data-attachment-id="6421" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/2015-08-31-12_27_35-pfsense-status_-dashboard/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_27_35-pfSense-Status_-Dashboard.png" data-orig-size="925,871" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="2015-08-31 12_27_35-pfSense &#8211; Status_ Dashboard" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_27_35-pfSense-Status_-Dashboard-300x282.png" data-large-file="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_27_35-pfSense-Status_-Dashboard.png" src="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_27_35-pfSense-Status_-Dashboard-150x150.png" alt="2015-08-31 12_27_35-pfSense - Status_ Dashboard" width="150" height="150" class="alignnone size-thumbnail wp-image-6421" srcset="https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_27_35-pfSense-Status_-Dashboard-150x150.png 150w, https://obviate.io/wp-content/uploads/2015/08/2015-08-31-12_27_35-pfSense-Status_-Dashboard-144x144.png 144w" sizes="(max-width: 150px) 100vw, 150px" /></a>
                          </td>
                        </tr>
                      </table>
                      
                      <p>
                        There are two big questions after building a setup like this, the first is security. Since PFSense is the host to provide an interface on the WAN, it should be the only method of ingress into your network. With no VMware management interface on the WAN, there should be no way for an outside party to access ESXi directly. I&#8217;ve used this setup successfully (and safely) before, as have others. However, you always need to balance your particular security concerns with the cost of dedicated devices.
                      </p>
                      
                      <p>
                        The second question is remote management/maintenance/failure. Managing ESXi remotely is easy, if you setup a VPN on your PFSense VM. Without that (or similar) you will not be able to remotely manage the box (by design). But what happens if there is a failure either in the VMWare hardware or the PFSense virtual machine? That&#8217;s the big failing point of this setup &#8211; you&#8217;re down. If, for whatever reason, PFsense dies &#8211; your network is offline and you cannot remotely manage it. If this hardware is installed in a dateacenter, you&#8217;d need to either get in there yourself or remote hands reboot. Something to keep in mind when balancing the cost issue. OF course, if it&#8217;s local (say you use this at home), then it&#8217;s not such a big deal.
                      </p>
                      
                      <p>
                        <a href="https://obviate.io/wp-content/uploads/2015/08/IMG_07121.jpg"><img data-attachment-id="6429" data-permalink="https://obviate.io/2015/08/31/tutorial-using-vmware-esxi-and-pfsense-as-a-network-firewallrouter/img_0712-3/" data-orig-file="https://obviate.io/wp-content/uploads/2015/08/IMG_07121.jpg" data-orig-size="2883,2310" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;2.2&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;iPhone 6 Plus&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;1440780987&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;4.15&quot;,&quot;iso&quot;:&quot;100&quot;,&quot;shutter_speed&quot;:&quot;0.25&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;1&quot;}" data-image-title="IMG_0712" data-image-description="" data-medium-file="https://obviate.io/wp-content/uploads/2015/08/IMG_07121-300x240.jpg" data-large-file="https://obviate.io/wp-content/uploads/2015/08/IMG_07121-1024x820.jpg" src="https://obviate.io/wp-content/uploads/2015/08/IMG_07121-300x240.jpg" alt="IMG_0712" width="300" height="240" class="alignleft size-medium wp-image-6429" srcset="https://obviate.io/wp-content/uploads/2015/08/IMG_07121-300x240.jpg 300w, https://obviate.io/wp-content/uploads/2015/08/IMG_07121-1024x820.jpg 1024w, https://obviate.io/wp-content/uploads/2015/08/IMG_07121-900x721.jpg 900w" sizes="(max-width: 300px) 100vw, 300px" /></a> I will note that this is the setup I use in my home network, which doubles as my homelab. Having a VM for a firewall gives me a lot of flexibility, like adding an entirely separate vSwitched network for experimental VMs. I can also swap out the firewall VM for another one with next to no downtime. It also allows me to skip one more piece of hardware at home which would add to my otherwise hefty powerbill.
                      </p>