• identical local and remote networks

    1
    0 Votes
    1 Posts
    147 Views
    No one has replied
  • Traffic not getting through internal firewall to external firewall

    5
    0 Votes
    5 Posts
    434 Views
    E
    Figured it out! Went back to check the NAT rules and the automatic ones were gone! I guess when I change the WAN interface it deletes the automatically generated outbound NAT rules?
  • FRR OSPF Default Route

    12
    0 Votes
    12 Posts
    2k Views
    K
    @smaxwell2 I forgot you were running through tunnels, so you do need that GW. Spreading the default route via OSPF may not be the right way to go for this. If there is only one tunnel from each site to the central it will be much easier just to specify the default route for the needed networks statically.
  • SSH broken pipe - asymetric routing issue?

    3
    0 Votes
    3 Posts
    715 Views
    B
    @bryon I decided the simplest and most secure way forward is to create a jumpbox with two NICs. I ssh to the jumpbox when I need to access the management LAN. I plan to add a web proxy to the jump box so I can access web-based machines in the management LAN. If anyone has alternate ideas then I'd love to hear them.
  • FRR OSPF Default route

    1
    0 Votes
    1 Posts
    125 Views
    No one has replied
  • DMZ not working

    11
    0 Votes
    11 Posts
    999 Views
    johnpozJ
    Reject or Block is fine - I use reject on many a local rule that I block, because that way you "know" instantly its blocked because the firewall send you back info - hey your not getting there, go away! ;) Reject on a wan side rule is almost always a very bad idea.. Since you rarely want the firewall to send anything in response.
  • Multi WAN Load Balancing does not work on 2.5.0

    7
    1 Votes
    7 Posts
    2k Views
    T
    I have a problem like this. Two WAN connections, one static and other DHCP. WAN DHCP is my main connection and works normally alone. I did all the configuration to work with failover but when I disconnect the DHCP WAN the other WAN does not go up. I have little knowledge in pfSense so there is probably a problem with the configuration.
  • Port Forwarding and NATing over IPsec VPN

    1
    0 Votes
    1 Posts
    155 Views
    No one has replied
  • Routing Public IP range

    18
    0 Votes
    18 Posts
    2k Views
    D
    Hi all, just thought I would report back on this one. Finally got to site today to do the config. Set the WAN up on the /30 and added a couple of the /29 range as aliases. Set Outbound-NAT to manual and configured LAN to use one of the /29 Worked a treat, so thanks for the help.
  • routing: forward vs redirect

    7
    0 Votes
    7 Posts
    628 Views
    E
    @johnpoz thanks for taking the time to suggest transit network. I've actually never heard of it before. My quick Google search only yield to definition, not practical guide. Any article you can point me to?
  • unwanted routing behavior

    2
    0 Votes
    2 Posts
    337 Views
    S
    hi i check route table and see there is one static route for 172.20.20.8 with UGHS flag traffic to wrong gateway 192.168.193.25. manually ( from shell ) delete this route and every things goes right. used command ``` route delete 172.20.20.8
  • Add a quad WAN router to my pfSense

    4
    0 Votes
    4 Posts
    484 Views
    RicoR
    Nope, you could have 5 WANs and 1 LAN with the SG-3100 if you want. -Rico
  • Routing to WAN fails when adding a LAN NIC

    2
    0 Votes
    2 Posts
    169 Views
    I
    UPDATE: Turns out it was pfBlocker. Removed it and its rules and presto the firewall is back alive. Now the bug appears to be in pfSense since pfBlockers uses its APIs to set rules....
  • 1 ISP 2 Nics 1 remote ARP

    12
    0 Votes
    12 Posts
    442 Views
    H
    It could work on the same subnet but should be easier to configure and make work with 2 as you have now. I haven't looked at the documentation here for awhile but they do seem to have what you're looking for. Would it be better for you to bond the connections? That could possibly work for you. https://docs.netgate.com/pfsense/en/latest/book/multiwan/multi-wan-caveats-and-considerations.html
  • OpenVPN and routing

    1
    0 Votes
    1 Posts
    289 Views
    No one has replied
  • 0 Votes
    1 Posts
    89 Views
    No one has replied
  • Multi-WAN gateway failover not switching back to tier 1 gw after back online

    119
    0 Votes
    119 Posts
    65k Views
    B
    @idiotzoo I'll give it a try! Always good to learn something new. All my local layer 3 is done in a stack of 3850s, firewall and NAT in pf. Literally just need a packet pusher that can do per-packet load sharing and failover.
  • Failover not killing states once Primary is back up

    2
    0 Votes
    2 Posts
    134 Views
    kiokomanK
    this is expected behavior. you can wait for old states to expire or you can manually kill states. If you search the forum there is someone who posted a script to do that automatically
  • Need advice on my Fail-Over Setup

    1
    0 Votes
    1 Posts
    100 Views
    No one has replied
  • Sprint MiFi 8000 USB WAN

    1
    0 Votes
    1 Posts
    136 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.