• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

PfSense 2.1 Floating rules for Multi Wan doesn't work.

Scheduled Pinned Locked Moved Routing and Multi WAN
86 Posts 35 Posters 49.6k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • N
    niebla
    last edited by Jan 27, 2014, 4:11 PM

    Created the interface group. Squid uses the default gateway only with 2.1.

    1 Reply Last reply Reply Quote 0
    • H
      hyrol
      last edited by Jan 28, 2014, 2:07 AM

      @SaFi:

      @hyrol
      Thank you ..
      I wondering what's squid version you talking about 2.7 or 3.8 or it doesn't matter?
      secondly where you use interface named "internet" I saw it has no rules, will you be more detailed

      regards
      SaFi

      • Im try for squid 2.7, you can try for squid 3.8 you can tell me later for the result.
      • If you expert configure for inbound/outbound for WANs under Interface Group.. Actually that use for WANs rules not for LANs rules.
      1 Reply Last reply Reply Quote 0
      • N
        niebla
        last edited by Jan 28, 2014, 2:56 AM

        The problem is squid is using the default route and does not care about interface groups. What am I missing?

        1 Reply Last reply Reply Quote 0
        • H
          hyrol
          last edited by Jan 29, 2014, 5:03 AM

          Actually this is not Load-Balance Round Robin, this is Load-Balance Bandwith Agreggation and you can see all the WANs its working.
          It is worth it from nothing.

          Load-Balance.jpg
          Load-Balance.jpg_thumb

          1 Reply Last reply Reply Quote 0
          • N
            niebla
            last edited by Jan 29, 2014, 5:19 AM

            How does Squid know to use the interface group instead of the default gateway?

            1 Reply Last reply Reply Quote 0
            • H
              hyrol
              last edited by Jan 29, 2014, 6:19 AM

              I do not know how Squid works, most importantly it works.  ;)

              1 Reply Last reply Reply Quote 0
              • N
                niebla
                last edited by Jan 29, 2014, 6:39 AM

                Squid works with multi-wan on 2.0.3 by using floating rules. Users have reported that it is not working with 2.1 with multi-wan even when using floating rules.

                Many users are looking for a way to use multi-wan and squid using 2.1.

                When this is solved many of us who have squid and multi wan will be able to use 2.1, and be grateful to the person who provides the solution.

                1 Reply Last reply Reply Quote 0
                • B
                  basitkhan
                  last edited by Jan 29, 2014, 11:58 AM

                  @hyrol:

                  Finally, after a long time trying pfSense Squid Package + Multi Wan and I have managed to find its way in a deadlock.
                  pfSense 2.1 Squid Package + Multi Wan, no longer using the Floating Rules, but using the Interface Groups.
                  Good Luck Everyone.

                  I have followed the same steps but all in vain,
                  squid still uses only default gateway :( does not work with Interface Group

                  still waiting to fix it…

                  1 Reply Last reply Reply Quote 0
                  • H
                    hyrol
                    last edited by Jan 30, 2014, 1:52 AM Jan 30, 2014, 1:42 AM

                    If you check whatmyip you can see only default WAN, but you can see all the WANs work together.

                    Note: This Load-Balance Bandwith Agreggation not Load-Balance Round Robin.

                    1 Reply Last reply Reply Quote 0
                    • N
                      niebla
                      last edited by Jan 30, 2014, 1:48 AM

                      My tests show that squid is only using the default gateway. I understand and have the interface group. It can be used by rules but is not being used by squid, which has a large majority of our traffic.

                      1 Reply Last reply Reply Quote 0
                      • H
                        hyrol
                        last edited by Jan 30, 2014, 1:58 AM

                        pfSense 2.1.1 soon be out, hoping the problem will be solved.

                        1 Reply Last reply Reply Quote 0
                        • A
                          afrugone
                          last edited by Jan 30, 2014, 9:13 PM

                          I'm not sure if 2.1.1 wil fix something abaout this, JIMP answer that they don't now the problem, https://forum.pfsense.org/index.php/topic,71546.msg391065.html#msg391065, perhaps any you that have a better understanding than me about this problem can add bug ticket.

                          1 Reply Last reply Reply Quote 0
                          • S
                            SaFi
                            last edited by Jan 31, 2014, 12:58 AM

                            I don't think it's an issue or bug in pfsense 2.1 multi-wans and proxy (squid), but it's seems that there is a mess-configuration in squid  to does not use multi-wan and still sticking using default gateway.

                            http://wiki.squid-cache.org/SquidFaq/NetworkOptimizations

                            1 Reply Last reply Reply Quote 0
                            • J
                              javerleo
                              last edited by Jan 31, 2014, 3:07 AM

                              Bottom line: There is no solution for this issue so far. We have to keep pfSense 2.0.3 until somebody comes with a final solution. Hope the gurus to figure this out.

                              Thanks.

                              –-----------
                              God is my best friend

                              1 Reply Last reply Reply Quote 0
                              • J
                                jimp Rebel Alliance Developer Netgate
                                last edited by Jan 31, 2014, 6:48 PM

                                compare /tmp/rules.debug on 2.0.3 where it works and on 2.1 where it doesn't, the answer may lie there. The config would have to be identical for it to be a valid comparison.

                                Remember: Upvote with the πŸ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                                Need help fast? Netgate Global Support!

                                Do not Chat/PM for help!

                                1 Reply Last reply Reply Quote 0
                                • K
                                  Kababayan
                                  last edited by Feb 5, 2014, 4:39 AM

                                  Got it working!!! Using Openvpn as Wan2 with Unofficial Lusca proxy. Should work with squid.

                                  1 Reply Last reply Reply Quote 0
                                  • H
                                    hyrol
                                    last edited by Feb 5, 2014, 5:14 AM

                                    Great and congrats .. Actually pfSense 2.1 is not stable for me sometimes it works, after reboot it does not work, a few hours later it works, sometimes it do not work.  :'( :'(

                                    1 Reply Last reply Reply Quote 0
                                    • O
                                      Oliver_
                                      last edited by Feb 5, 2014, 4:53 PM

                                      @Kababayan:

                                      Got it working!!! Using Openvpn as Wan2 with Unofficial Lusca proxy. Should work with squid.

                                      The simple Question is, How did you achieve this goal?
                                      Please share your knowledge with us!

                                      greetings Oli

                                      1 Reply Last reply Reply Quote 0
                                      • H
                                        hyrol
                                        last edited by Apr 22, 2014, 6:30 AM Feb 6, 2014, 12:50 AM

                                        Admin edit to remove harmful instructions.

                                        DO NOT USE THAT LUSCA PACKAGE!

                                        Capture6.PNG
                                        Capture6.PNG_thumb
                                        Capture4.PNG
                                        Capture4.PNG_thumb

                                        1 Reply Last reply Reply Quote 0
                                        • O
                                          Oliver_
                                          last edited by Apr 22, 2014, 6:30 AM Feb 6, 2014, 8:14 AM

                                          Admin edit to remove harmful instructions.

                                          DO NOT USE THAT LUSCA PACKAGE!

                                          1 Reply Last reply Reply Quote 0
                                          63 out of 86
                                          • First post
                                            63/86
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                                            This community forum collects and processes your personal information.
                                            consent.not_received