Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Multi Wan with 2 seperate Firewalls

    Scheduled Pinned Locked Moved Routing and Multi WAN
    2 Posts 2 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B Offline
      Bigbluto
      last edited by

      I need help with the following setup with pfsense

      FW1–--------------------------
      Public Ip ----> WAN -----> LAN |------> Family Internet

      |
      FW2-----------------------------------
      Public Ip ----> WAN -----> LAN -----> LAB ACCESS  --------->  server1 = FW1 Public Ip Address
                                                                              --------->  Server2 = FW2 Public Ip Address
      -------------------------------------- 
      After breaking the family internet to many times to mention i decided on the above layout where in theory FW1 won't need to be touched once completed and any changes to my lab will only need changes to FW2, i have some port forwarding rules on FW1 that forward to the FW2 Lan and then on to the SERVER1 which i can see are being recieved via wireshark on server1 my issue seems to be to get the server responses to come back the way they came ie : out the fw2 lan -----> fw1 lan-------> fw1 wan-------> internet , my gut feeling is there all being sent out FW2 wan instead.

      Any help would be most appreciated.

      Regards

      Bigbluto

      1 Reply Last reply Reply Quote 0
      • X Offline
        XIII
        last edited by

        You state you want to separate the networks so you dont break the family Internet, but the LAN is shared between both firewalls. Since both firewalls get a public IP why not keep them separate? (same ports being used by both servers?)

        Depending on your setup to force server1 to respond to requests through FW1, set a static route on server1 to use FW1 as its gateway.

        Which firewall is the:
        DHCP
        gateway
        DNS

        for the servers?

        -Chris Stutzman
        Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
        Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
        freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
        Check out the pfSense Wiki

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.