Adding IPFire in front of an existing router

Hello, I have never tried this so I’m asking for some advice on best practices. I have an existing router connected to a cable modem that is part of a mesh network. I initially wanted to replace the router with an IPFire firewall, but then I realized I’d have to replace the entire mesh. So I thought I could put the IPFire in front of the router of the mesh network. What would be the process? I’m thinking the IPFire gets programmed with the ISP information, then the router gets changed to a GREEN IP with a different subnet than the LAN? Please correct me if I’m wrong.

Which router?
It would be preferable to change the router’s configuration to access point mode behind IPFire if possible.

I don’t have the model, but it is a Netgear router with at least one other Netgear device meshed to it.

What about setting the Netgear’s WAN to be IPFire’s address?

I see what you’re saying about setting it to access point mode. I’m not familiar enough with the device (I don’t manage it, but will have to if I add the IPFire device in front of it), but I assume the mesh will still work the same if the router becomes neutered to access point mode.

You’ll have double NAT, and your router will act as the DHCP server; therefore, IPfire’s (unbound) DNS won’t be able to handle your LAN.

2 Likes

This was the missing ingredient in my thought process. Makes more sense to set the router to AP mode for that reason alone.

Thanks again.

1 Like

Definitely set it to AP mode.

1 Like