• Where to put pfsense in a Multi-WAN one GW network?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    perikoP

    Hi JoelC707, I was a little confuse, but someone in the IRC already shake my head and looks like we got the solution. Yes is a single WAN with multiple IP's available.

    This frind request to the IPS to add some maps into the ISP dns why, he say to save "management", well we are going to work only with a single public IP and start the setup.

    Looks like I just need a small switch to connect the cisco router+pfsense wan card there and the pfsense-lan card to the lan switch.

    I think this week will be the deployment because their ISA server is down, the HD crash during the morning, he start using pfsense but not in full operation, just the firewall, I'm waiting the call to make the full deployment.

    I will let u know guys, thanks  :)

  • Selecting outbound WAN interface

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    S

    That worked beautifully, thank you.

  • SQUID in 1.2.3

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    H

    afaik it is not easily done in 1.2.3 …. i don't believe it is possible using the gui

    i'd suggest running 2.0 as it's nearing completion

  • Help with routing over private interconnection.

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Weighted Round Robin - Is it Possible?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    X

    Sorry, didnt see the 2.0 reference in your code sample. Several features are implemented differently in 2.0 from 1.2.3, this is one of them.

  • Can't Access WAN Modem Through Pfsense

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    M

    Is your modem in bridge or routing mode?
    if in bridging you can't access it, if in router mode you can access it.
    Here might be some more info: http://doc.pfsense.org/index.php/Accessing_modem_from_inside_firewall#For_2.0

  • 0 Votes
    3 Posts
    2k Views
    S

    @jimp:

    No, it's done on a per-connection basis and there is no relationship between them in terms of bandwidth used.

    The only way that could likely happen would be if you enabled the traffic shaper and set that bandwidth on each WAN.

    Ok thanks jimp. I have my Traffic Shaper off, so I guess it's just a coincidence that my WAN's are averaging at 4Mbps. I guess I still have some little more headroom.

  • Did I find a bug? Load Balancer Issue - Can't round robin 3 hosts [SOLVED]

    Locked
    13
    0 Votes
    13 Posts
    4k Views
    C

    Testing a load balancer with a web browser is really hit and miss, with persistent TCP connections and caching. Always use wget or similar for load balancer testing.

  • Pfsense multi-lan setup

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    M

    My apologies for the late reply  :( I didn't mean to ignore you guys. Thanks for your input, it turns out the switch was bad that the interface was plugging into, so once we replaced it everything worked perfectly! thanks for all your help.

  • Can't acess LAN (server) with domain name from DMZ

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    jimpJ

    You need to setup split DNS so that your internal interfaces resolve the hostname to the private IP, not the public IP.

    NAT reflection may help, but it is not going to fix everything (especially not ping).

    http://doc.pfsense.org/index.php/Why_can%27t_I_access_forwarded_ports_on_my_WAN_IP_from_my_LAN/OPTx_networks%3F

  • Default Route issues with MultiWan (2.0-RC3 32bit)

    Locked
    1
    0 Votes
    1 Posts
    3k Views
    No one has replied
  • Return to WAN from OPT1

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    C

    A downed WAN will always come back on its own. May be issues in 1.2.2 with that, though I don't recall any offhand, shouldn't be running 1.2.2 anymore. Upgrade to 1.2.3 at a minimum if not 2.0-RC3.

  • Interface routing

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    C

    @u571kills:

    Will PfSense by default return packets from the WAN interface that they originated?

    Yes. No other means of routing will work (in most multi-WAN scenarios) as you can't send one ISP's IP out a different ISP. There is one possibility for doing that by wrongly using policy routing rules on WAN2 specifying WAN1's gateway, that would break things in that kind of setup and force traffic in WAN2 out WAN1.

  • 0 Votes
    2 Posts
    2k Views
    C

    Is it actually two WANs, or one WAN with two IPs?

  • Dualwan - Routing+failover+loadbalancing

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    pttP

    Check here:

    http://doc.pfsense.org/index.php/Main_Page

    http://doc.pfsense.org/index.php/What_is_policy_routing%3F

    http://doc.pfsense.org/index.php/Category:Howto

  • Wireless associated, but not receiving an IP?

    Locked
    1
    0 Votes
    1 Posts
    885 Views
    No one has replied
  • Routing problem with interfaces and gateways

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Load balancing and failover in pfsense 2.0 RC3

    Locked
    14
    0 Votes
    14 Posts
    5k Views
    P

    sure here it is…both opt1 and wan

    opt1.jpg_thumb
    wan.jpg
    opt1.jpg
    wan.jpg_thumb

  • Apinger: ALARM: GW_WAN(x.x.x.x) *** down ***

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    jimpJ

    The log messages you posted suggest that vr0 and vr2 are sharing the same physical network somehow - you might want to double check your switch configuration.

  • Lan into DMZ interface doesn't show true source IP

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    M

    How about next test:
    Manual outbound nat rule with following settings:
    Do not nat: choose
    Interface: opt1
    Protocol: what ever traffic you want
    Source: LAN subnet
    Destination: choose network and you can specify mask bit to 32(applies only one machine)
    Description: best solution so far

    hint.png
    hint.png_thumb

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.