Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    2 WAN - 2 LAN - Portforwarding

    Scheduled Pinned Locked Moved Routing and Multi WAN
    42 Posts 4 Posters 10.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      GSianos
      last edited by

      I cant, cause my server is dedicated visualization.
      but you cant. if you connect WAN1 to LAN1 and WAN2 to LAN2, LAN1 can not see the WAN2.

      maybe you want third WAN (WAN3) as a fail-over for WAN1 and 2

      ITControl.gr
      Everything is possible

      1 Reply Last reply Reply Quote 0
      • E
        endy66
        last edited by

        No you missunderstood:). I dont want Failover. If WAN1 goes down, then it is ok, that LAN1 is offline! But my Problem is, that if WAN1 goes down, also LAN2 has no Internet Connection, because there seems to be an issue with dns Resolution. If you unplug WAN1 on your pfsense, can you Access the Internet from LAN2?

        Greetings

        1 Reply Last reply Reply Quote 0
        • G
          GSianos
          last edited by

          is you wan1 checked as default?
          in the System/Routing/Gateways

          ITControl.gr
          Everything is possible

          1 Reply Last reply Reply Quote 0
          • E
            endy66
            last edited by

            No i havent set any gateway as default. Do you set a default gateway in your setup?

            Greetings

            1 Reply Last reply Reply Quote 0
            • G
              GSianos
              last edited by

              No.
              i just tested. unchecked vlan that connect WAN1 in my vSphere to test and disable WAN2. but if i disable WAN1 all the VMs that connected in WAN2, go out from WAN1.
              that is mean in somewhere is configured WAN1 as a primary.

              You must tell us someone where or find myself  :P

              ITControl.gr
              Everything is possible

              1 Reply Last reply Reply Quote 0
              • G
                GSianos
                last edited by

                Cause i dont see any help here, maybe our solutions is PfSense Dual WAN Failover Configuration.
                im going to tested it…

                ITControl.gr
                Everything is possible

                1 Reply Last reply Reply Quote 0
                • E
                  endy66
                  last edited by

                  So if you disconnect WAN1, your WAN2 clients are also not able anymore to go online? I think there is a problem with dns resolution, because the dns servers are only listed on the WAN1 interface on Status -> Interfaces.

                  Greetings

                  1 Reply Last reply Reply Quote 0
                  • G
                    GSianos
                    last edited by

                    hmmm…maybe...

                    why no one answer us?

                    ITControl.gr
                    Everything is possible

                    1 Reply Last reply Reply Quote 0
                    • E
                      endy66
                      last edited by

                      So you have exactly the same problem?

                      1 Reply Last reply Reply Quote 0
                      • G
                        GSianos
                        last edited by

                        yes!!!

                        ITControl.gr
                        Everything is possible

                        1 Reply Last reply Reply Quote 0
                        • E
                          endy66
                          last edited by

                          Is this really not possible with pfsense?

                          Greetings

                          1 Reply Last reply Reply Quote 0
                          • E
                            endy66
                            last edited by

                            @GSianos, do you have some news? I am on testing since 3 days, but no luck…

                            Greetings

                            1 Reply Last reply Reply Quote 0
                            • G
                              GSianos
                              last edited by

                              …me too...
                              why no one answer us?????  :(

                              ITControl.gr
                              Everything is possible

                              1 Reply Last reply Reply Quote 0
                              • E
                                endy66
                                last edited by

                                @GSianos:

                                …me too...
                                why no one answer us?????  :(

                                I dont know. Look the Problem is, if i use a Gateway Group, then it works without Problems. But i dont want to do this, because i dont want to share one wan Connection for my both LANs.

                                I cant beleive, that there is no one solution for this Problem!

                                greetings

                                1 Reply Last reply Reply Quote 0
                                • ?
                                  Guest
                                  last edited by

                                  I dont know.

                                  You know it, it is based on the gateway groups.

                                  Look the Problem is, if i use a Gateway Group, then it works without Problems.

                                  You see it is based on the gateway groups.

                                  But i dont want to do this, because i dont want to share one wan Connection for my both LANs.

                                  You can realize it by using one or more load balancing methods likes;

                                  • service based routing
                                  • session based routing
                                  • policy based routing

                                  like you want, but for each WAN connection you must create a gateway group! Nothing more, but
                                  also nothing less!

                                  I cant believe, that there is no one solution for this Problem!

                                  There will be a solution, but not in that way you will walk on or in that direction you are thinking.
                                  Its a thinking trap or false you are in! Nothing more.

                                  for the LAN group 1 one or all his clients the gateway from the gateway group WAN1 should be used
                                  and in the LAN group 2 the gateway from the gateway group WAN2 should be used to set as gateway.
                                  Thats all you have to do. But without the both or two gateway groups you will be not able to realize it.
                                  Multi WAN
                                  Gateway Groups

                                  Read the entire and full links carefully word by word and solve your problem out.

                                  1 Reply Last reply Reply Quote 0
                                  • G
                                    GSianos
                                    last edited by

                                    My problem is, that the version of pfSense i used is 2.3 and i dont know how to do all of that for failover….

                                    ITControl.gr
                                    Everything is possible

                                    1 Reply Last reply Reply Quote 0
                                    • S
                                      skalvaro
                                      last edited by

                                      Hi, sorry for the late reply (work you know).
                                      I see you made some progress but still have some issues to solve so let's try to do so.

                                      Could you check via Diagnostics>Routes what interface the 'default' route points to. I know that you already mentioned you didn't select default on the Gateways but the system likely has chosen one for you  :). My guess is that it is the WAN1 interface that is set as 'default'.

                                      If this is the case you could try following: System>Advanced>Miscellaneous under Load Balancing tick 'Enable default gateway switching'.

                                      This should give following situation:
                                      Normal conditions (all WAN UP):
                                      LAN1->WAN1, LAN2->WAN2 and the firewall itself (dns) -> default=WAN1
                                      Error condition (WAN1 DOWN):
                                      LAN1->No Internet,LAN2->WAN2, firewall (dns) -> WAN2

                                      1 Reply Last reply Reply Quote 0
                                      • G
                                        GSianos
                                        last edited by

                                        WAN1 & WAN2 has the same GW. My servers is Dedicated and the two Internet that i have is the same. the only different is that they have different WAN IP.

                                        For the switching suggestion, i already check it.

                                        i can not fully understand the other thinks that you wrote…

                                        thanks a lot for your time...

                                        ITControl.gr
                                        Everything is possible

                                        1 Reply Last reply Reply Quote 0
                                        • First post
                                          Last post
                                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.