Hi,
I’ve been trying to work out my network architecture with the pieces i have today:
- isp box with 10gig dac downlink, 4 ssd bays
- pfsense box with dual 10gig dac card
- switch with 10gig dac uplink and multi gig rj45
- main proxmox host
- other devices (laptops, iot…)
ive ran into a dilemma regarding switching my isp box to bridge mode:
- if i do, i lose wlan and nas capabilities
- if i dont, i have to contend with double nat
i’m sure that eventually i will get an ap (maybe unifi) and a dedicated nas (either home built or something like synology or asustore), but for the moment, i want to keep cost down and gradually add new pieces
i was wondering if double nat is of huge performance and maintenance implications, or if i would be okay running this setup for a few months until i get to add an ap and nas?
thank you
SpaceCadet@feddit.nl 1 year ago
Using double NAT here because my ISP won’t even support/allow putting their box in bridge mode and I don’t even have root access to it, just some limited functionality via their web GUI.
I haven’t had any issues with it.
lemmyvore@feddit.nl 1 year ago
Can you set the ISP box to designate your router as DMZ (de-militarized zone)? It’s not technically the same as bridge mode, the ISP box continues to act as a router but also exposes the your router fully to the internet so you can mostly ignore theirs afterward.
SpaceCadet@feddit.nl 1 year ago
Yes, that’s essentially what I did.
squigglycunt@lemmy.world 1 year ago
great, thanks for your input
SpaceCadet@feddit.nl 1 year ago
You’re welcome, cunt
JustEnoughDucks@feddit.nl 1 year ago
Exact same situation, but I have had issues with the shitty ISP box resetting itself on an outage and simply not forwarding traffic from the open ports to my router with a static IP. It would just say “no” and I had to change the static IP on the ISP box and reboot everything and then it would work fine. It has been fine for 3-4 months without needing anything, but sometimes it is annoying.
YIj54yALOJxEsY20eU@lemm.ee 1 year ago
I’m not sure if its applicable for you or if you are aware but duckdns really helps with this problem. I’ve moved three times since and have never worried about ip addresses.