Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Routing not working for additional public IPs

    Scheduled Pinned Locked Moved Routing and Multi WAN
    23 Posts 3 Posters 2.1k Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      SteveITS Galactic Empire @cubits
      last edited by

      @cubits It should be. If the inbound traceroutes use different paths, maybe your ISP is not routing your entire /24 block to you?

      Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
      When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
      Upvote ๐Ÿ‘ helpful posts!

      C 2 Replies Last reply Reply Quote 0
      • C Offline
        cubits @SteveITS
        last edited by

        @SteveITS It should be very well correct. It is just one IP in the subnet and other users might be using other IPs from the same subnet.

        1 Reply Last reply Reply Quote 0
        • C Offline
          cubits @SteveITS
          last edited by

          @SteveITS how to get around this?

          S 1 Reply Last reply Reply Quote 0
          • S Offline
            SteveITS Galactic Empire @cubits
            last edited by

            @cubits said in Routing not working for additional public IPs:

            other users might be using other IPs from the same subnet.

            ? They can't if it's your subnet. Are these only two unrelated/not-consecutive IPs and not a subnet block? I suppose that would work but the inbound routing still needs to go through the same router as your original IP, to get to you.

            Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
            Upvote ๐Ÿ‘ helpful posts!

            C 3 Replies Last reply Reply Quote 0
            • C Offline
              cubits @SteveITS
              last edited by

              @SteveITS just wanted to confirm that, and that's exactly what I thought about it, at least it should route new IP until the original IP, I will contact them and discuss further and post back later.

              1 Reply Last reply Reply Quote 0
              • C Offline
                cubits @SteveITS
                last edited by

                @SteveITS spoke to the network engineer from ISP and he asked to place a switch between wan and pfsense, and connect them to separate NIC as the whole block of IP is not forwarded. I have orderd the hardware and will test and let know here.

                1 Reply Last reply Reply Quote 0
                • C Offline
                  cubits @SteveITS
                  last edited by

                  @SteveITS I have updated my setup like below. I had to use a router as both IPs since they are on the same subnet couldnt be used in the PFSENSE. As it is now, I can ping the router default gateway from within PFSENSE, but not from my LAN or by any OpenVPN client.

                  5003c2e4-b6aa-46ff-86af-60e64883a7f0-image.png

                  S 1 Reply Last reply Reply Quote 0
                  • S Offline
                    SteveITS Galactic Empire @cubits
                    last edited by

                    @cubits Hmm, that shouldn't be necessary. One can't have the same subnet on two physical interfaces, but aliases should work fine:
                    efdf47de-5a68-4013-af0a-7994d126bf10-image.png

                    Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                    When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
                    Upvote ๐Ÿ‘ helpful posts!

                    C 1 Reply Last reply Reply Quote 0
                    • C Offline
                      cubits @SteveITS
                      last edited by

                      @SteveITS we discussed this already, ISP does not forward the entire block, but only has two IPs which I have to statically assign to some NIC, so virtual IP does not work.

                      S 1 Reply Last reply Reply Quote 0
                      • S Offline
                        SteveITS Galactic Empire @cubits
                        last edited by

                        @cubits we did, too many threads, sorry. Itโ€™s an uncommon situation to be sure.

                        Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                        When upgrading, allow 10-15 minutes to reboot, or more depending on packages, CPU, and/or disk speed.
                        Upvote ๐Ÿ‘ helpful posts!

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.