• Kill states and gateway down logging

    3
    0 Votes
    3 Posts
    1k Views
    W
    @IB: 3. How I can check gateway state externally? In Zabbix agent or SNMP monitor I can check interfaces only, no gateway. Write own script (with ping, dpinger, etc) only? Or method for check pfsense gateway state exists? By log monitoring (see #2), or some command execution? In Zabbix you could try adding a trigger for something like {pfsense:net.if.out[igb1].last()}=0 using the Template OS FreeBSD > Network Interfaces to tell if there's been no outbound traffic on an interface for a period of time.  I think you need the Zabbix agent package installed for this to work, but not positive. I have something like this monitoring both WAN interfaces and it seems to do the trick. Bill
  • FTP from LAN to WAN1 to Server behind WAN2

    3
    0 Votes
    3 Posts
    400 Views
    B
    @jbcel: Hi burnsl, from what I have been told here it will not work if you have your public IPs inside your pfSense machine, at least the data will not leave WAN1 and come back over WAN2 but will use the internal route from WAN1 to WAN2 - so this is not suitable to make a speed test. If your public IPs are not inside pfSense you should set the gateway to WAN1 in a ftp rule for LAN to WAN2 IP . Jens Understood now. I just spun up a free AWS instance and put filezilla on it.  (so much easier)
  • Ipsec vpn between Watchguard M300 to pfsense 2.3.4

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Force ISP route over WAN2 to access WAN1 IP from LAN2

    10
    0 Votes
    10 Posts
    1k Views
    johnpozJ
    don't do it on floating… policy routing should be done on the interface the traffic enters pfsense on..
  • BGP Route sharing between IPSec tunnels

    3
    0 Votes
    3 Posts
    636 Views
    A
    Yeah, that's already done. It works great with the Cisco CSR 1000v devices but I can't seem to figure out how to make it work properly within pfSense.
  • BGP: kernel arpresolve

    2
    0 Votes
    2 Posts
    716 Views
    R
    Were you ever able to figure out the cause of this? I'm experiencing the same issue.
  • Firewall Rules w/ Advanced Options: Gateway slows traffic

    1
    0 Votes
    1 Posts
    299 Views
    No one has replied
  • Unknown static route

    6
    0 Votes
    6 Posts
    870 Views
    DerelictD
    Yeah there must be something somewhere that doesn't clear that in certain cases. I have only seen the end result - never the actual event - and then only a couple of times. Glad it worked.
  • Website Access through IPSEC VPN

    6
    0 Votes
    6 Posts
    540 Views
    P
    The answer was indeed a missing NAT entry on the main offices Firewall. Tanks.
  • WAN ISP insists on DHCP for static IPs

    10
    0 Votes
    10 Posts
    2k Views
    V
    I got an idea from a reddit user: have a device on the network spoof the mac of your WAN interface and do a DHCP request on a schedule This sounds like it could work.  Could I use something like a packet squirrel that would run a script, every day it could spoof the required MACs, do a dhcp req, then go dormant until the next day? Since I have a switch on the WAN side to split the WAN to the two firewalls, I could just plug it into that switch.  It would pull all three necessary IPs once per day.
  • PfSense as a DHCP relay routing to the same subnet / network conflicts

    2
    0 Votes
    2 Posts
    554 Views
    johnpozJ
    Is this x.x.186 network public - why are you obfuscating it? Please draw your network.. Saying you have network A and network B doesn't tell us how you have it connected together.  Any router connected to another router should have a transit network, or more likely then not your going to have asymmetrical routing unless doing host routing on each device in what is the transit network.
  • Multi WAN Multi VLAN set up Internet working but ping not responding

    3
    0 Votes
    3 Posts
    625 Views
    S
    I have created Multi-Wan Gateway in pfsense Wan-1+Wan-2+Wan-3+Wan-4 = Multi-Wan default Gateway Then Vlans are created and assigned to the LAN interface -> Rules are created in each vlans as protocol ->  to destination ->any same vlans are created in an L3 switch and Trunk is configured to provide access to all the vlans All the vlans are routed to the pfsense firewall * The IP name server is the x.x.x.x(pfsense ip address) and the secondary dns is Now internet is working in all the vlans, I am able to access the pfsense firewall via browser from all the vlans. But there is no ICMP reply for the ping. No ping to firewall or any other sites. I am unable to download any package via wget. please help me out with this problem.
  • Unable to make routing(gateway) between interfaces.

    1
    0 Votes
    1 Posts
    268 Views
    No one has replied
  • 0 Votes
    1 Posts
    349 Views
    No one has replied
  • How to failover _quickly_?

    1
    0 Votes
    1 Posts
    357 Views
    No one has replied
  • 2 WAN, 1 LAN - IPTV

    2
    0 Votes
    2 Posts
    557 Views
    R
    Yes best would be separate vlan's. I think you also need to setup static routes on the pfsense box to route IPTV traffic to the separte interface. And default gateway to the internet interface.
  • Second LAN connection has no internet access

    5
    0 Votes
    5 Posts
    1k Views
    DerelictD
    At least use hybrid if you need something special. Only place manual really makes sense is HA. And even then it's easier to leave it on auto until all the interfaces are defined then switch to manual.
  • 0 Votes
    1 Posts
    343 Views
    No one has replied
  • Two gateways, how to route?

    4
    0 Votes
    4 Posts
    931 Views
    P
    Like I said, it's just hypothetical, trying to understand some things. I usually build networks with only 1 router, and let the physical devices like switches, ap's and such be in a backbone network (vlan1) while the devices and clients are on other vlans. But what if I want to offload a modest router that is being used for some high throughput backups for example, by adding a second router just for that purpose. I guess transfer network would be a solution, yes. Will consider that in my scenario. Thanks!
  • Zabbix proxy to route via a specific gateway

    4
    0 Votes
    4 Posts
    437 Views
    R
    Ok found my solution, Go at the bottom and click on the advance options There add the following SourceIP=X.X.X.X AND THEN SAVE The X.X.X.X should be the ip address of the gateway via which you want the traffic to go out of Hope this helps someone. Rajbps
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.