• Multi-WAN with same Gateway

    11
    0 Votes
    11 Posts
    1k Views
    mohkhalifaM
    @rico said in Multi-WAN with same Gateway: Nice....would you mind share? -Rico 1- You must have router with a Multi-NAT option 2- You have to configure 1:1 Multi-NAT in your router with any IPs from your router's subnet ex: WAN IP-01 x.x.x.x = 192.168.1.11 WAN IP-02 x.x.x.x = 192.168.1.12 WAN IP-03 x.x.x.x = 192.168.1.13 3- If needed, Forward the ports for IPs we already made in step 2 and at the same time allow the ports from the router's interface in pfSense 4- Create a Virtual IPs for each IP we already made in the Multi-NAT configuration "Private IPs". 5- Create pfSense 1:1 NAT rules for each private IP to our desired Local Server IP ex: Private IP 192.168.1.11 = Local Server IP 172.16.10.11 Private IP 192.168.1.12 = Local Server IP 172.16.10.12 Private IP 192.168.1.13 = Local Server IP 172.16.10.13 6- Create a firewall LAN rule to pass the traffic and MUST choose the gateway for the interface we are working with. 7- check the firewall Rules for opened ports in the router's interface we allowed in step. That's all
  • ARP Table reporting routes for entire /22 subnet

    3
    1 Votes
    3 Posts
    496 Views
    johnpozJ
    If your connected to an L2 be it a /22 or a /24 or even a /8 running on it, then yes your going to see arp entries for other devices on this L2 network.. This is how networking works.. The only way to not see other mac address for devices on the same L2 as you would be for the ISP to filter that on their network..
  • Add route to host

    3
    0 Votes
    3 Posts
    562 Views
    S
    @johnpoz said in Add route to host: Under system routing, when you add a gateway - bottom of page advanced. You can set that the gateway is not local to your wan subnet Thank you, @johnpoz ! This was too simple.
  • PPPoe WAN only 100mb/s until reboot

    1
    0 Votes
    1 Posts
    155 Views
    No one has replied
  • How to manage automatic backup of the internet provider

    1
    0 Votes
    1 Posts
    124 Views
    No one has replied
  • Routing on secondary WAN not working

    5
    0 Votes
    5 Posts
    870 Views
    K
    OK, I finally found some time to dig into this. Writing this followup in case anyone runs into a similar issue in the future. Some investigation with tcpdump showed that the remote host was seeing checksum errors on the TCP packets (yet ICMP was working fine). Disabling hardware checksum offloading in pfSense resolved my issue (System -> Advanced -> Networking -> Hardware Checksum Offloading). pfSense is running under XCPng 8.1.0 on an unknown motherboard using onboard Intel 82576 Gigabit NIC. Not sure if the checksum error is creeping in due to XCP or NIC drivers, but in my case the network traffic is quite low, so I'll run with the hardware checksum disabled.
  • Periodic Drops

    7
    0 Votes
    7 Posts
    909 Views
    A
    For my wireless setup, I altered the wifi access points to allow broadcast traffic from the pfsense box. In most cases, the wiresless drops broadcast packets from the LAN side. I also increased the time for the ARP expiration. Since doing the above my network seems a bit more stable, but I still don't feel like we've gotten to "root" cause.
  • OpenVPN: Cannot ping another network on the remote server

    1
    0 Votes
    1 Posts
    118 Views
    No one has replied
  • Quad Wan Failiover

    1
    0 Votes
    1 Posts
    275 Views
    No one has replied
  • This topic is deleted!

    2
    0 Votes
    2 Posts
    19 Views
  • Can't ping VPNrouter (now with beautiful picture)

    4
    0 Votes
    4 Posts
    1k Views
    I
    i have this problem to :(
  • Dual WAN 1 Public IP

    1
    0 Votes
    1 Posts
    127 Views
    No one has replied
  • Multi-wan using separate firewalls

    4
    0 Votes
    4 Posts
    497 Views
    K
    @whosmatt Interesting, I did not know that gateway groups could span multiple devices. How do I do add a gateway from another Firewall to the group? Or do I just create a group with one Gateway on each firewall?
  • Dynamic dns multi wan

    11
    0 Votes
    11 Posts
    950 Views
    E
    Yes, I selected the second wan at the send from and at the interface to monitor, added a static route, and the cached ip is the first wans ip, but the ddns has the right ip, because the request was sent from the second wan. So it works, but it won't update when the ip changes, because te pfsense monitors the primary wan.
  • 0 Votes
    1 Posts
    314 Views
    No one has replied
  • quota by wan

    1
    0 Votes
    1 Posts
    234 Views
    No one has replied
  • Load Balancer force some devices to WAN1

    2
    0 Votes
    2 Posts
    117 Views
    RicoR
    Create a Alias for your "some devices" and use this Alias as Source in a Firewall Rule to Policy Route them out WAN1. -Rico
  • Block Mobile OpenVPN client connexion from target local network site!

    4
    0 Votes
    4 Posts
    472 Views
    bingo600B
    @M0L50N said in Block Mobile OpenVPN client connexion from target local network site!: @bingo600 That’s the first thing I though, but maybe that can cause another problem on my network? Maybe if I just block about OVPN port used for the connection?!? Yes you could do that too On "Inside Lan" - Block <OpenVPN Server Public IP> - UDP port <OpenVPN Server Port>
  • TFTP Across Subnets

    3
    0 Votes
    3 Posts
    550 Views
    Q
    @Derelict thank you, its likely something in the docker / macvlan configuration I've not wrapped my head round yet then.
  • Routing problem with IP failover

    1
    0 Votes
    1 Posts
    93 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.