• Multi WAN and DNS - over four gateways

    9
    0 Votes
    9 Posts
    3k Views
    jimpJ
    Which is also why we recommend using public DNS servers :-)
  • Dual WAN, Policy Based Routing, & VPN

    3
    0 Votes
    3 Posts
    1k Views
    johnpozJ
    So you think netflix uses 4 /24 networks?  Why would you not just use a /22 for those 4 networks?  How big is this alias?  Why would you not just route all traffic from your netflix media devices out the wan no matter what the dest?  Since netflix and all the others are cracking down on vpn traffic.. Your going to be fighting a loosing battle trying to keep tabs on every network that netflix uses ;)  Pretty sure its HUGE an adds addresses and removes networks on regular basis. Guess your going to have a issue trying to stream media from netflix off a pc, and vpn other traffic that is not neflix..  Vs if you were just playing netflix off your roku or HTPC, etc..
  • Multi-LAN, Multi-WAN + IPSEC tunnels, failover & routing problem

    5
    0 Votes
    5 Posts
    785 Views
    S
    Hello, I've upgraded all my pfsense to the last build 2.3.2_1 I forgot to tell you that all my pfsense are virtualized on ESXi hosts. I've also attached in this post a screenshot of my routing table on the main site. [image: routing_table.JPG] [image: routing_table.JPG_thumb]
  • Dual IP email server with LAN?

    13
    0 Votes
    13 Posts
    1k Views
    K
    Thanks for the reply, So if i understood correctly I would need to go to pfSense then go to routing and find  a way to route the LAN to use only that Gateway? What very odd this is only happens when pfSense reboots, the only way to get it the way i want, if i reboot the lSP modem a few times which its a pain Thank you
  • PfSense to get WAN from another router

    7
    0 Votes
    7 Posts
    1k Views
    D
    UDATE: Restored pfSense to factory defaults. And the only thing I changed during the wizard was the time. As I live in Sweden I want Swedish time. I choose WAN and LAN as before. Same thing happens again. My Windows 10 icon tray says that I'm online. And I can ping any IP adress. But I can not ping any URL or access any URL in my browser. pfSense can ping any IP my computer can also ping any IP
  • Two LAN gateways on same subnet ?

    5
    0 Votes
    5 Posts
    2k Views
    johnpozJ
    So your pfsense wan network or transit is on 10.0.0/24 what is psfense IP??  You can for sure point to different gateways on this transit network that your calling your wan..  There was recently a thread about this.. "Pfsense will not let me add 10.0.0.1 interface since it's in the same subnet as the other gateway" I think your confusing terms here.. If you have an INTERFACE on pfsense that has IP address 10.0.0.1, no pfsense is not going to allow you to create another interface with IP address 10.0.0.2..  That is not a GATEWAY.. If your running the phones and data on the same network.. And you want phones to come in and hit pfsense on .2 vs .1 - then that would just be a VIP you create on that network.. Why are you running data and voip on the same network.. That is a BAD idea.. Your data and voip should be on different vlans plan and simple.. You should never use more than 1 network on the same wire.. If you can not do vlans – get some vlan capable switches and do it correctly!!!
  • Snoopers charter VPN UK and exceptions gateway

    5
    0 Votes
    5 Posts
    804 Views
    W
    so yeah i thought that was the case i have done that but it doesnt seem to be working for me https://forum.pfsense.org/index.php?topic=122788.0
  • Talk between interfaces

    2
    0 Votes
    2 Posts
    688 Views
    KOMK
    LAN already has an Allow Any rule so your rule to allow to OPT1 is unnecessary.  I'm thinking your issue is local firewalls, not pfSense.  For example, Windows will block traffic out of its own subnet, so your 172.16.x.x traffic will be blocked by a Winbox on the 192.168.x.x network.
  • Can ping from pfSense but not to pfSense

    1
    0 Votes
    1 Posts
    406 Views
    No one has replied
  • Route based VPN/Weighted Routes local/VPN Failover

    3
    0 Votes
    3 Posts
    707 Views
    H
    so you basically need failover ? you could do that with tiered gateways &policy routing the wiki title is for a multi-wan setup, but the same might be of use in your situation: https://doc.pfsense.org/index.php/Multi-WAN#Failover you might have to watch out for asymetric routing issues ( send by fiber, receive by vpn = not what you would want) the other option is to run a dynamic routing protocol (like ospf or bgp) to handle the re-routing when one link goes down
  • Static route -> TCP retransmissions

    8
    0 Votes
    8 Posts
    2k Views
    S
    I ended up moving the CA and server certs to the PFsense and setup the OpenVPN server on it. Works OK now. My main point was to spread the load. The server that it used to run has a much better CPU than the router. It looks like the PFsense can saturate our 50MBIT connection, so thats fine. Thanks a lot for the insight!
  • BGP local-AS missing from Neighbor Parameters

    2
    0 Votes
    2 Posts
    492 Views
    H
    you can edit the raw file itself. Thats what we did when we setup our BGP.
  • 2 gateways with the same wan

    32
    0 Votes
    32 Posts
    4k Views
    johnpozJ
    Depending on what you want to do.. You would have to create a monitor for your default gateway that goes somewhere outbound and not just your gateway address which is the default.  You then have another gateway setup that uses your other gateway 2 address. You shouldn't have to jump through these hoops.. The company you paid that put in the fortinet needs to do their job!!
  • 2 Pfsense VMs with different subnet

    5
    0 Votes
    5 Posts
    860 Views
    johnpozJ
    Huh?  If you want redundancy then you would setup a carp..  Which is kind of pointless on the same vm host. You don't need 2 pfsense to have different devices use a proxy or not use a proxy be it http or https..
  • Use Different WAN Upstream for DMZ subnet

    1
    0 Votes
    1 Posts
    469 Views
    No one has replied
  • 0 Votes
    4 Posts
    626 Views
    U
    Just noticed the same problem occurs with any nic when the router it is connected to is rebooted: pfsense's DHCP client does not get periodically called to obtain an IP.
  • Can't get to/past pfSense on new VLAN without captive portal

    1
    0 Votes
    1 Posts
    352 Views
    No one has replied
  • Setting up Metro E Routing / Subnets from Comcast

    3
    0 Votes
    3 Posts
    2k Views
    R
    The above is correct to my knowledge as well. We run an HA setup and use CARP VIPs for everything WAN. We have a directly allocated /27 to our WAN interface as well as a routed /25. The ISP routes the /25 traffic to our primary IP on the /27 and everything works like magic. We only have one upstream gateway so there was no additional work required on our side.
  • Bridge Mode on pfsense

    1
    0 Votes
    1 Posts
    760 Views
    No one has replied
  • Home Lab Questions

    1
    0 Votes
    1 Posts
    809 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.