Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Multi WAN, unique public IP

    Scheduled Pinned Locked Moved Routing and Multi WAN
    16 Posts 5 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      viragomann @spillek
      last edited by

      @spillek
      That won't be possible just like that, even not if your lines are from different internet providers.
      Consider that the IP must be routed to you. From the internet it is only routed to a specific ISP.

      if the first is down, I go out on the second.
      Is it possible to "go out" with a third public ip regardless of the used connection

      You can get this by connecting to the vpn service provider in an easy way.
      However, if you also need incoming connections, its a bit more complicated and will take more costs.

      S 1 Reply Last reply Reply Quote 0
      • S
        spillek @viragomann
        last edited by

        @viragomann
        thanks fo suggestion;
        my basic problem is that I have IP phones (yealink) that go out correctly based on failover to a remote PBX: if first WAN is down, the phones go out correctly by WAN 2 (ping ..) but continue to give the old IP to the PBX, probably stored in their cache.. so the PBX see down old IP, and consider offline the phone

        chpalmerC 1 Reply Last reply Reply Quote 0
        • chpalmerC
          chpalmer @spillek
          last edited by

          @spillek

          When you phone registers via SIP the PBX will remember that registration for the time period the phone tells it to. How long do you have the phones set to stay registered? Maybe set that to something much shorter??

          If you somehow cause the phones to see a disconnect from their ethernet connection when a WAN changes then they should re-register with the PBX. Im not sure how you would do that though unless you have all your interfaces directly connected to your pfsense box..

          I wonder if the SIProxd package would re-new registrations on the fly with a WAN change?? That may be something I can test..

          Triggering snowflakes one by one..
          Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

          V 1 Reply Last reply Reply Quote 0
          • V
            viragomann @chpalmer
            last edited by

            @chpalmer said in Multi WAN, unique public IP:

            If you somehow cause the phones to see a disconnect from their ethernet connection when a WAN changes then they should re-register with the PBX.

            This should be achieved by checking System > Advanced > Miscellaneous > State Killing on Gateway Failure in pfSense. So on failover it drops the connection and the phones need to reconnect again.
            However, this will also drop a call, presumably.

            chpalmerC 1 Reply Last reply Reply Quote 0
            • chpalmerC
              chpalmer @viragomann
              last edited by chpalmer

              @viragomann

              That is just the state.. The interface light on the phone needs to go out.

              Triggering snowflakes one by one..
              Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

              V 1 Reply Last reply Reply Quote 0
              • V
                viragomann @chpalmer
                last edited by

                @chpalmer said in Multi WAN, unique public IP:

                The interface light on the phone needs to go out.

                I see. Didn't know that.
                Reconnecting to the PBX is not sufficient for renewing their public IP?

                chpalmerC 1 Reply Last reply Reply Quote 0
                • chpalmerC
                  chpalmer @viragomann
                  last edited by

                  @viragomann said in Multi WAN, unique public IP:

                  Reconnecting to the PBX is not sufficient for renewing their public IP?

                  There actually is not any continuous traffic to the SIP server.. Unless you are making and receiving phone calls (of which the RTP does not actually have to touch the same SIP server) the only time traffic goes back and forth is when the phone attempts to re-register. The SIP server may never know that your phone is offline until it stops getting reg data.

                  Look at the expiration data below.. Until that time comes the phone wont say a peep to the SIP server unless you are making a call.

                  siproxd.jpg

                  Triggering snowflakes one by one..
                  Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                  V 1 Reply Last reply Reply Quote 0
                  • V
                    viragomann @chpalmer
                    last edited by

                    @chpalmer
                    So the pones also don't notice when your WAN connection goes down, I guess?
                    I'm not familiar with SIP.

                    chpalmerC 1 Reply Last reply Reply Quote 0
                    • chpalmerC
                      chpalmer @viragomann
                      last edited by

                      @viragomann said in Multi WAN, unique public IP:

                      @chpalmer
                      So the pones also don't notice when your WAN connection goes down, I guess?
                      I'm not familiar with SIP.

                      Nope. Not until they try to make a call at least..

                      SIP was never originally designed for the type of use it sees today and has had allot of changes to allow things like the addition to work with NAT.. Vonage changed all that.

                      Triggering snowflakes one by one..
                      Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                      1 Reply Last reply Reply Quote 1
                      • S
                        SteveITS Galactic Empire @spillek
                        last edited by SteveITS

                        @spillek said in Multi WAN, unique public IP:

                        Is it possible to "go out" with a third public ip regardless of the used connection, so that it is always the same?

                        It sounds like you are looking for an SD-WAN service. Basically the IP is from them, and they adjust routing between/among ISPs. I looked into it briefly a while back. Not sure how it interacts with pfSense since they seem to provide a router, then the ISP routers connect to that. Perhaps one can bridge to pfSense.

                        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                        Upvote 👍 helpful posts!

                        S 1 Reply Last reply Reply Quote 0
                        • S
                          spillek @SteveITS
                          last edited by

                          I do not understand of voip and pbx, and I have not configured the phones, I only did some tests: the technician who installed it says that with other firewalls (watchguard) they have no problems with failover rule, .. I try to report your indications ...many thanks!

                          ? 1 Reply Last reply Reply Quote 0
                          • ?
                            A Former User @spillek
                            last edited by

                            This post is deleted!
                            S 1 Reply Last reply Reply Quote 0
                            • S
                              spillek @A Former User
                              last edited by

                              @silence
                              domain? in pfsense ? I don't understand, can you explain me better?

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.