Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Sticky Connection Alternatives

    Scheduled Pinned Locked Moved Routing and Multi WAN
    5 Posts 3 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R Offline
      rt050
      last edited by

      Hello all,

      I was wondering if anybody could advise me wether Pfsense offers an alternative to Sticky Connections?

      My network consists of 2 x WAN and 1 x LAN. The network benefitted greatly with the load balanced WAN connections however a user a user was having issues with his emails which forced me to enable sticky connections. However as far as I understand this, IPs will only ever be routed to one of the gateways now meaning my load balance isn't really as effective and speeds have been affected somewhat.

      I was wondering if there was a way of going back to keep maximum speeds but to be able to keep the sticky connection for authentication purposes for some email providers?

      1 Reply Last reply Reply Quote 0
      • jimpJ Offline
        jimp Rebel Alliance Developer Netgate
        last edited by

        Unfortunately, no. It's all or nothing with sticky.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • luckman212L Offline
          luckman212 LAYER 8
          last edited by

          What about using policy based routing and define a port- or host-based alias for these troublesome mail providers? Then just force them to use a failover gateway group instead of a load balanced one (use LAN firewall rules). This is what I do for HTTPS sites that don't like sessions originating from multiple IPs.

          1 Reply Last reply Reply Quote 0
          • R Offline
            rt050
            last edited by

            @luckman212:

            What about using policy based routing and define a port- or host-based alias for these troublesome mail providers? Then just force them to use a failover gateway group instead of a load balanced one (use LAN firewall rules). This is what I do for HTTS sites that don't like sessions originating from multiple IPs.

            Thanks, I'll give this a try when I'm next on site. Sorry for the late reply. This issue only popped into my head again today after thinking, "if only I didn't have that Sticky Connections issue!"

            1 Reply Last reply Reply Quote 0
            • R Offline
              rt050
              last edited by

              So I tried luckman212's suggestion and it worked! :)

              I think something like this should be commented on within Sticky Connection topic.

              Cheers all  ;D

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.