• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

2 WAN interfaces toubleshooting on Azure

NAT
2
4
286
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    ddave421
    last edited by Feb 5, 2024, 9:23 PM

    Hello everyone,

    I have deployed pfSense on Azure with two WAN interfaces and one LAN interface. The WAN interfaces are in the front subnet (172.20.2.0/24) and have separate public IP addresses, while the LAN interface is in the back subnet (172.20.3.0/24). I configured NAT from the first WAN interface to my web server at 172.20.3.5, and the connection using the public IP works well.
    However, when attempting to set up NAT from the second WAN2 interface to my second web server, I encounter connectivity issues. I've observed incoming packets from users using tcpdump on the VM, as well as packet captures on pfSense (on both LAN and WAN2 interfaces, and also the WAN interface). I understand that this is related to asymmetric routing and the default gateway for WAN interfaces.
    The default gateway for WAN interfaces is the same for connecting to the internet, which is the Azure default gateway on the subnet (first address on the subnet - 172.20.3.1). I haven't encountered this scenario before, and I lack experience with pfSense and the specific infrastructure in Azure.
    I attempted to address the issue with some outbound rules, but I haven't achieved the expected results. I would be grateful for assistance with this problem, and I appreciate anyone willing to share their knowledge and experience.
    Kindly share your thoughts.
    Thanks

    V 1 Reply Last reply Feb 5, 2024, 10:05 PM Reply Quote 0
    • V
      viragomann @ddave421
      last edited by Feb 5, 2024, 10:05 PM

      @ddave421 said in 2 WAN interfaces toubleshooting on Azure:

      I have deployed pfSense on Azure with two WAN interfaces and one LAN interface. The WAN interfaces are in the front subnet (172.20.2.0/24) and have separate public IP addresses

      This makes no sense at all. Assign both IPs to a single interface instead.

      D 1 Reply Last reply Feb 6, 2024, 6:57 AM Reply Quote 0
      • D
        ddave421 @viragomann
        last edited by Feb 6, 2024, 6:57 AM

        @viragomann
        Do you mean assign additional interface configuration on NIC:
        🔒 Log in to view

        V 1 Reply Last reply Feb 6, 2024, 7:47 AM Reply Quote 0
        • V
          viragomann @ddave421
          last edited by Feb 6, 2024, 7:47 AM

          @ddave421
          Yes, this one.
          But this ist Just an additional IP on the NIC.

          1 Reply Last reply Reply Quote 0
          4 out of 4
          • First post
            4/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.