Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Multi WAN & Multi VLAN

    Scheduled Pinned Locked Moved General pfSense Questions
    28 Posts 3 Posters 9.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Hmm, OK.

      You should not have a gateway on your 'Mobile1' interface. Gateways should only be on WAN interfaces (or VPN connections).

      You should not need a static route to the ASA on WAN2. pfSense will already have a route to that box via the WAN2 interface.

      What do you have for your LocalIP alias?

      Steve

      1 Reply Last reply Reply Quote 0
      • J
        jgun98
        last edited by

        Hi,
        Gateway mobile1 is ip on layer 3 switch therefore vlan 190 can communicate with other vlan.

        and here is the capture of aliases.
        Thanks
        jgun

        Aliases.jpg
        Aliases.jpg_thumb

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          Do you have VLANs on your network other than Mobile1, Hotspot and CO? You have different subnets on the other side of your switch?

          Adding a gateway to Mobile1 causes pfSense to treat it differently. If you have not changed anything it will be NATing traffic on that interface for example which you almost certainly don't want.

          Steve

          1 Reply Last reply Reply Quote 0
          • J
            jgun98
            last edited by

            Do you have VLANs on your network other than Mobile1, Hotspot? Yes
            You have different subnets on the other side of your switch? Yes, we have many vlan, but only some vlan that we route to pfsense.
            I want mobile can connect to others vlan and also have different route to internet

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              Ok, your network is more complex than I realised.
              However you still don't want to have a gateway on Mobile1. Instead add static routes to your other subnets.
              I'm not sure how that might work with clients on the mobile1 subnet though. Traffic would have to route in and out of the same pfSense interface and I'm not sure that's possible.  :-\

              Steve

              1 Reply Last reply Reply Quote 0
              • J
                jgun98
                last edited by

                Still not working… I think I have to go to alternative, install another pfsense

                1 Reply Last reply Reply Quote 0
                • C
                  clarknova
                  last edited by

                  When creating a static route the Network should not be in the same subnet as the Gateway, ie 10.10.10.0/24 and 10.10.10.1 in your case. In a static route the Gateway is an IP address that is directly reachable from a local network, while the Network is one that is not directly reachable, hence the use of a route and gateway.

                  What type of interface is WAN2 (dhcp, static, pppoe, et)? What is WAN2's IP address?

                  db

                  1 Reply Last reply Reply Quote 0
                  • J
                    jgun98
                    last edited by

                    Hi,
                    IP Address WAN2 (Static) 10.10.10.123 /24
                    Gateway 10.10.10.1 /24

                    I have tried to remove the static route as advice by Steve
                    Regards
                    Gunawan

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by

                      I think a diagram of your network could help to clear things up here.

                      Steve

                      1 Reply Last reply Reply Quote 0
                      • J
                        jgun98
                        last edited by

                        When I setup WAN2, should I set the load balancer?
                        I have read several

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.