Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Anyone here testing "Interface Bound States" on Dual WAN?

    Scheduled Pinned Locked Moved Plus 24.03 Development Snapshots (Retired)
    4 Posts 2 Posters 702 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      rpotter28
      last edited by rpotter28

      And care to offer any feedback? Unfortunately, I don't have Dual WAN at home, but all my installs do.

      I used to have Dual WAN here, but my fibre has been so reliable I decided to save a few bucks, which I am
      sorta kinda regretting.

      Thanks!

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        I've tested a bunch of different scenarios with multi-wan and interface bound states. Everything works as expected now. I didn't initially!

        Anything in particular?

        Steve

        R 1 Reply Last reply Reply Quote 0
        • R
          rpotter28 @stephenw10
          last edited by rpotter28

          @stephenw10 No nothing in particular. I read this State Policy Default Change blog post, but real life can sometimes be different and I have no way to test dual wan! So I was looking for others that are.

          Since many home users don't have dual WAN or CARP, maybe it's not being thoroughly tested in the wild? Which is what I expect, and again no problem but I will be cautious to when I upgrade upon release just to see. It's all good.

          Thanks!

          Edit: I forgot to add that I know you can switch back, but the more secure policy sounds like a good thing and I want to do it! :-)

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            Yup interface bound is definitely more secure. The floating states have surprised a few people in the past. I'm sure there will be some obscure setups that are unknowingly relying on them though. Even though they are almost certainly bad configurations 😉

            1 Reply Last reply Reply Quote 1
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.