• How to ensure Tiers / Load Balancing is working?

    4
    0 Votes
    4 Posts
    678 Views
    K

    Send screenshots

  • Routing with 2 pfsense VMs

    5
    0 Votes
    5 Posts
    907 Views
    DerelictD

    If the latter you are going to need a third router. One that has both WAN subnets on interfaces and freely routes between them. It would be taking the place of "The Internet."

  • Download Quagga OSPF Module

    3
    0 Votes
    3 Posts
    1k Views
    S

    Hi Derelict,

    Thank you so much. It works.
    Cheers

  • 3 wan load balancinghink

    3
    0 Votes
    3 Posts
    861 Views
    O

    when either 1 or 2 of the 3 wan is/are down, still the remaining wan should work

  • Multi WAN - Route Traffic Via One WAN Link

    13
    0 Votes
    13 Posts
    2k Views
    A

    Will do  Derelict, thanx very much for your Expert Help…....  :)

  • Multi WAN 3 site VPN with VoIP

    2
    0 Votes
    2 Posts
    687 Views
    K

    Do you have any 1to1 nat setup?  If you assign that gateway to a pc and do a whatismyip which gateway shows up.  You really need to provide a detailed representation of your setup if you want someone to help.  People are not going to waste their time playing 20 questions.

  • Multi-WAN failover with access restrictions

    4
    0 Votes
    4 Posts
    1k Views
    ?

    It will be even the best method to ask one thing and then the next one, that all things would be able to be clear
    as possible to all users here in the forum. To ask all questions in one thread would be nice to in some situations
    but often it makes things more complicated for everybody that is involved except your self. Only my 2 cents.

    If you have three WAN interfaces and one LAN interface and you would not lead the LAN clients over specific
    WAN gateways, auth. by their MAC addresses, this will be two different things in my eyes, but able to realize
    for sure, but what I not understood is the following, why you want to filter at the WAN interface the MAC
    addresses coming from outside? As I was understanding it you will be identifying your LAN clients by
    their MAC addresses and route them then over a specific WAN interface or gateway. Can you please tell
    something more about that.

    In normal you will be setting up pfSense as the following for that actions in my eyes;

    create three WAN interfaces and gateways chose a proper load balancing method for that
    – Policy based routing
    -- service based routing
    -- session based routing Install Squid with user auth. and create for each user an account and set up there the MAC address.
    (alternatively you will be able to deal with internal static IP addresses, thats also able to do) set up the failover rules
    (please note, if both other WAN connections will be stopping their work all your traffic will be running over
    the last one and also the Apple TV over the SAT connection if this will be last working one)

    I would try out policy based routing in your case and then over MAC auth. and then if one or more WAN
    connections are failing all the clients would be able to route over the last one, that will be not able to do
    if the MAC address is bounded to one specific WAN interface as I know it.

    sample rules for load balancing and fail over (over the forum search function)
    nice HowTo for a multi WAN setup (little bit old but good explained with many pictures)

  • Multi-LAN / Single WAN - Can't ping single host

    5
    0 Votes
    5 Posts
    1k Views
    DerelictD

    Of course.

    You can get around this by doing an outbound NAT on the 10.0.14.1 (VLAN1) interface so traffic to 10.0.14.6 appears to come from 10.0.14.1 which eliminates the need for the return traffic to be routed.

  • [ FO / LB ] Default GW ?

    3
    0 Votes
    3 Posts
    832 Views
    luckman212L

    @chocoboss:

    But don't know why I can not unset default route, is that normal ?
    Every time I unstick default getway boom it automaticly reset as default.

    There is no such thing as having "no default route" using the GUI in pfSense AFAIK.  The default gw would only affect traffic originating from the firewall itself as long as you are using Gateway groups (Policy-based Routing). So if you uncheck your default gw it will assign another gw as your default.  This is expected and normal behavior.

  • 0 Votes
    2 Posts
    780 Views
    DerelictD

    Have your ISP route a subnet to one of your WAN addresses.

    You can then assign that subnet to the DMZ interface and firewall on WAN as desired.

  • How to make loadbalancing work from the pfSense box itself?

    8
    0 Votes
    8 Posts
    2k Views
    K

    Hmm.  I wonder if gateway switching would resolve my issue of not getting syslog notifications when my primary wan goes down at one client.

  • Need help with a reverse proxy feeding into an SSH tunnel

    1
    0 Votes
    1 Posts
    645 Views
    No one has replied
  • Redirect Host?

    6
    0 Votes
    6 Posts
    4k Views
    P

    10.0.0.0 10.10.10.2 UGS 230404981 1500 bge1
    10.10.10.0/29 link#2 U 10388774 1500 bge1
    pfSense link#2 UHS 0 16384 lo0
    localhost link#5 UH 178 16384 lo0

    That is how the routing table looks.  What does Link# correspond to?

  • Multi Wans - Dual routers - Carp

    1
    0 Votes
    1 Posts
    522 Views
    No one has replied
  • Multi Wan and OSPF Routing

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Multiple Vlan WAN

    1
    0 Votes
    1 Posts
    881 Views
    No one has replied
  • Does pfsense support this multiwan configuration?

    5
    0 Votes
    5 Posts
    1k Views
    K

    Just make sure to assign the gateway group to the rule!

  • Route showing up I did not ask for.

    1
    0 Votes
    1 Posts
    548 Views
    No one has replied
  • Directional radio, tinc and routing

    1
    0 Votes
    1 Posts
    608 Views
    No one has replied
  • Configuring "the same tunnel" on two different wan interfaces.

    4
    0 Votes
    4 Posts
    787 Views
    dotdashD

    Not currently. You can create a parallel tunnel on the second wan and disable it for manual failover.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.