My client is a landlord that provides internet to their tenants. We have always just used vlans to separate the tenants as they did not need public IPs.
One of their tenants needs to put in their own firewall and needs a public IP address. They want an open line to the Internet with no filtering or restrictions. (we have additional public IP addresses that are not being used)
My first thought was to put a small switch in front of the untangle and just give them a direct line to the modem, provide them with one of the additional public IPs info and they would be all set. The more I think about this it seems like a horrible idea as I would have no insight into anything and they would have the potential to hog the bandwidth, etc..
I think I can do this with the Untangle and gain some insight in case they start to use lots of bandwidth, etc.
Is below the correct way to do this? Anything I am missing?
Add the additional public IP as an alias to the WAN I already have setup, bridge the wan to an open internal interface, patch them into the internal interface and provide them with the additional public IP info.
Thanks for any and all help!!