@JKnott:
Does your ADSL modem include a router? If so, have you placed it in bridge mode, to bypass that router?
thanks for answer, but router have disabled this option, any other option?
[image: Captura.PNG]
[image: Captura.PNG_thumb]
If I'm understanding your question correctly, the way to do this is to connect via the external IP instead of the internal IP that presumably routes thru the tunnel. But then you'd have to allow ssh connections thru the WAN interface, which seems like a bad idea. Why don't you want ssh connections to go thru the tunnel?
Then they are broken or improperly-configured if they are passing broadcasts between VLANs.
And proper configuration should not require anything such as "port isolation."
I did this with 8 modems each with 250 Mbps down and 10 and 20 Mbps up and I was able to achieve about 960 Mbps download speed and 120 Mbps upload speed. The reason I didn't see a greater speed increase was two issues, first my computer and router only have gigabit ports on them. I also I was using two cable nodes and that was the physical limitation of their downstream and upstream channels. While this works great on bandwidth speed test sites in real-world scenarios like VoIP and TLS connections it is better to using one WAN which I believe there is a setting for. One of the issues that I had was I had to manually increment the MAC address on each interface as I was using a switch as a wan aggregator using VLANs and the ISP (My Job) that I was testing this on assigns IPs to customers by MAC addresses. I later took the modems out of bridge mode and just used the ISP provided modems in gateway mode and just added my PfSense box to the DMZ of each gateway. In the end like others have mentioned it is probably best to use policy based routing and give each over your subnets it's own WAN.
On a side note I was seeing near perfect scaling. I believe I posted about this I will try to find that post. If I find it I will add the link below.
https://forum.pfsense.org/index.php?topic=126468.msg698424#msg698424
@BlueKobold:
Possible to get to that html file and add 3 simple characters?
And what will be shown then on the page? How it is looking then
I was going to put my firewall hostname.
Now that i have turned on the option for hostname and set unique color for each site I'm quite happy. Just what I wanted to do and both already features of the software.
Roveer
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.