• Amazon VPC Routing: OSPF and IPsec Backup

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • L2 Transparent Inspection server

    1
    0 Votes
    1 Posts
    572 Views
    No one has replied
  • 0 Votes
    2 Posts
    1k Views
    M
    Managed to solve outgoing pings with an explicit allow ICMP echo request on the tunnel interface, seems those were being blocked even though I have an allow * on the LAN. I'm still seeing echo reply being sent out my WAN if I ping the tunnel IP externally. Is there any way to have a rule apply to packets coming from the pfsense box itself and set the gateway if src==tunnel ip? Since everything else seems to be working now, I can live without external ping.
  • RIP is not working between pfsense and ddwrt

    1
    0 Votes
    1 Posts
    723 Views
    No one has replied
  • Gateways and dynamic IP addresses

    Locked
    13
    0 Votes
    13 Posts
    7k Views
    S
    This thread made my day!!!!
  • Having another go at setting up a lan lagg on pfsense

    12
    0 Votes
    12 Posts
    8k Views
    DerelictD
    Make what will be the second LACP interface an OPT interface, IP it, and connect to pfSense using a laptop plugged into that. Create a two-port LACP group on your switch. Create the LACP group using the first pfSense LAGG interface, assign it to LAN, and connect it to the first LACP port on the switch and make sure it works. Connect to pfSense over LAN, add the other interface to the LAGG and connect it to the switch. It should just be added to the group.
  • Load balance (both ethernet and wifi sources)

    6
    0 Votes
    6 Posts
    1k Views
    C
    @leo_1988: Also i really thought it’s going to be the sum of two lines (28mbps)… isn’t any other way to do this? I’m sure I saw some YouTube videos with this feature! 28 = 20 + 8 I can't deny this  ;D What must be understood is that if you open one single connection from your device to one single external server, the max throughput will be the one allowed by the gateway used by THIS unique connection. There is no aggregation here. As a result, if you have multiple parallel protocols, one using one gateway and the other using the other gateway, benefit will be that total throughput may reach 28 Mbps. So there is some potential benefit but only if having the 2 connections on same gateway would have faced bottleneck.
  • [ Help ]1 NiC Vlan Setup

    3
    0 Votes
    3 Posts
    1k Views
    ZedfulZ
    Thank you , worked with these configurations .
  • Static route issue - pfSense and Avaya ERS5500

    1
    0 Votes
    1 Posts
    698 Views
    No one has replied
  • Multiple WAN, single IP each. Port forward to different LAN IPs

    1
    0 Votes
    1 Posts
    687 Views
    No one has replied
  • Routing Issues to another router

    14
    0 Votes
    14 Posts
    2k Views
    J
    I checked the box and it seems to be working now. I also verified with the vendor of there settings and he added routes for the  pcs that only use the software and so far so good.
  • Proxy goes through wrong gateway??

    2
    0 Votes
    2 Posts
    567 Views
    H
    proxy always goes through the default route. if you setup pia , then most likely, this is your default route. you can change this behavior by using the 'dont pull routes' option on your openvpn server …. you will have to assign an interface to openvpn to make it work again
  • Adding new WAN Connection - Ping Yes, Use No

    6
    0 Votes
    6 Posts
    963 Views
    D
    You need an additional outbound NAT rule to get traffic for the gateway router UI originating from the correct subnet. | Interface: | USB_VZN_WWAN | | Protocol: | any | | Source: | any | | Destination: | Network: 10.1.1.1/32, Port:<leave blank=""></leave> | | Translation: | Address: Interface address, Port: <leave blank="">, Static port:</leave> | You might have to make this rule higher priority (i.e. above) the automatically created rule to get everything working correctly.
  • Why does my WAN2-Gateway show as offline?

    7
    0 Votes
    7 Posts
    2k Views
    B
    that's really stange.. Have you tried to restart apinger service? execute this command from GUI or SSH: netstat -rn -f inet
  • [BUG]Problem with second WAN PPPOE

    7
    0 Votes
    7 Posts
    1k Views
    M
    @awebster: I tried auto, 100 full duplex –> no ok. But I do https://forum.pfsense.org/index.php?topic=100447.0 –> ok
  • Multi-Wan - Secondary WAN Gateway is reported Offline

    3
    0 Votes
    3 Posts
    879 Views
    Z
    I'm also having problems with Gateway monitoring via ping, but I'm not sure that it is the same problem as yours. You would not necessarily be able to ping that gateway from your LAN, depending on which WAN is used to do the ping. Since you have multi-WAN, a ping might go LAN -> WAN1, or it might go LAN -> WAN2. When you do your ping test from the pfsense box, you need to specify that the ping go out the same WAN that is using the gateway you are trying to ping.
  • Another routing issue - help please

    3
    0 Votes
    3 Posts
    541 Views
    D
    Thank you. I knew I had seen this somewhere but just couldn't remember. Anyway thanks for your help
  • Routing Public IP from pfSense through second pfSense instance

    2
    0 Votes
    2 Posts
    421 Views
    V
    @walls6176: My problem is routing a public IP from firewall1 via firewall2 to the Internet. For example, from firewall1, I am unable to route 8.8.8.8 via firewall2, and on to the Internet via the second ISP. If the other routes work this will work in the same way. However, I think you'll have an asymmetric routing issue, if you do that. To resolve, you have to add an outbound NAT rule for that traffic.
  • Wan IP does not recover after reboot

    5
    0 Votes
    5 Posts
    780 Views
    I
    Well, I removed the avahi package, and the problem is now history. I will retry installing the package at another time and retest.
  • Access LAN through WAN (ping, shared folders etc)

    3
    0 Votes
    3 Posts
    1k Views
    A
    @doktornotor: And how exactly is this suppose to work? The traffic will never hit pfSense unless the "government router" knows to send the traffic there. You have a point there but i forgot to mention the reason i use the pfsense, Where i work (govermental position) happens a great internet misuse (almost abuse) like facebook, youtube, online radio streaming etc. We were ordered to find a way to block all these sites from our local pcs. So i don't mind about the incoming traffic so much, the only thing i want is to stop requests for some sites. The problem is that some old static ips are used for the govermental site so i cannot change them into my lan. That's why i want all the wan computers and all the lan computers in touch. Maybe i have thought it the wrong way, but I'm not that expert. The thing is that the 10.217.75.1-255 has to stay that way and that all others must be on 10.217.76.1-255 in order to be filtered away. Do i have a false thinking here?!?!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.