Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Dual WAN, 2 ISPs, no load-balancing

    Scheduled Pinned Locked Moved Routing and Multi WAN
    3 Posts 2 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      rpalladino
      last edited by

      Hello,
      I'm looking at getting a second WAN connection with different ISP. I want to keep my existing connection and would like to split my internet traffic. I don't want to load-balance or do any failover.

      (Drawing included)

      Here is the scenario :

      • all my inbound public traffic to my servers go through ISP 1 and the PIX only.
      • all my outbound traffic from my LAN goes through pfsense and ISP 2 only.
      • my internal traffic ( LAN -> DMZ ) goes straight to the servers without leaving through ISP 2 and re-entering through ISP 1.

      Basically, I want to use ISP 1 for my server traffic only, and ISP 2 for my LAN traffic. The EXCEPTION being for when my LAN machines need to talk to my servers.

      Thank you.
      DualWan.jpg
      DualWan.jpg_thumb

      1 Reply Last reply Reply Quote 0
      • P
        Pootle
        last edited by

        That looks pretty straightforward, you can set up pfsense with a second WAN connection on OPT1, which connects to a 3rd port on the pix, then put DNS entries in the DNS forwarder to give the servers behind the pix off-internet addresses (10.x or 192.168.x) that you can set up firewall rules for in pfsense.

        Then traffic for the local servers goes to the pix, everything else goes out through the second ISP connection - just to keep it simple I would set up the pix connection as OPT1.

        1 Reply Last reply Reply Quote 0
        • R
          rpalladino
          last edited by

          Thank you, I'll give it a try.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.