How to set up a Tap port in pfSense? (VM)

Hi everyone. :slight_smile:

I think i’m blind or I’m way to tired as i should have been in bed 4½hours ago. LOL :grin:
I wonder where in pfsense do i setup opt1 to become a Tap port on Lan?

I am setting up a Lab network with running pfsense in a VM
pfsense Wan will have a internet connection with a isolated bridge to Tun1
pfsense Lan will be occupied by four or five target VM’s…
pfsense opt1 will be a physical interface i can hook up my Kali linux laptop
And i want Opt1 to act as a tap port on Lan so all Lan traffic will possible to sniff with opt1.

either i’m blind or i am wayyyyy to tired… but doesn’t pfsense has tap port as option?
i have limited experience with pfsense and searching the docs gave no results as it was only about Vlans, span ports and internal package sniffing with suricata or wireshark…
and I’m not interesting in using the built in tools in pfsense for now as it is Kali’s tools I’m learning to use.

i need a network i can blow up and infect so to speak, so running pfsense and target computers in a VM feels a bit safer then actually setup physical machines in my network :smiley: :smiley: LOL

Sorry if my post is a bit messy, But i am really tired after have been up for 22hours… and i will hit the bed as soon i press Send on this post. :slight_smile:

Take care folks :sunglasses: :+1:

Switches have TAP port functions, pfsense is primarily a firewall router.

I thought that pfsense might have the function too, as pfsense is kind of over loaded on steroids compare to other firewall OS’s as it have so extreme many extra packages you can install.

oh well i have to look into using span port instead, that should be able to more or less do the same… i think.

openvpn has an option for tap mode - layer 2

Thanks :slight_smile: i will have that as a fallback option if i dont get pfsense to play nice :sunglasses:

i have a big problem in my life… i never take the easy way out when I have reached the point of an idea, that it should work. LOL :joy:

pfsense works well with tun … I have a lab to test stuff, pfsense on a VM.

I just got the idea of setting up a virtual cisco switch to solve the tap problem…
But i could not log in to my Cisco account… i ended up in a login loop… its not my day today… lol :crazy_face:
So i have emailed cisco support… and i have a feeling i wont hear from them until tomorrow

Edit
damn, they was fast… 6minutes to respond from i sent the email.