Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Policy base routing not working traffic is not forwarded to specified gateway and always go to the default gw

    Scheduled Pinned Locked Moved Routing and Multi WAN
    36 Posts 4 Posters 3.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • I
      iamhomer @Derelict
      last edited by

      @derelict all is working my pfsense setup except the policy routing.

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by Derelict

        What WANs are supposed to be active? You have WAN WAN1 and WAN2 but you said you only have 2 WANs. I think you need to delete the WAN gateway and policy route to WAN1 instead. But I'm kind of just guessing because you seem to not be reading what I am saying.

        In other words, change the policy routing on PRESIDENT to GWWAN1GW instead of GWWAN_DHCP and test again.

        I 1 Reply Last reply Reply Quote 0
        • I
          iamhomer @Derelict
          last edited by

          @derelict my friend all of those is active. Yeah on start of the topic i mention 2 wans but just summarize my issue so its more direct. But now i showed you the real scenario.

          So what i wanted is to have that president vlan use the wan as its gateway.

          1 Reply Last reply Reply Quote 0
          • I
            iamhomer
            last edited by

            And the wan1 im using it for my web and outside communication. Wan and wan2 is for surfing

            1 Reply Last reply Reply Quote 0
            • I
              iamhomer
              last edited by

              Just for testing before i use the wan1 for president gateway before but its still the same it did not work also.

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                And that is what it will do. Not sure what you are doing wrong. Maybe a testing flaw.

                Policy routing pretty much just works.

                What is the source IP address you are testing from? How are you testing?

                Are you getting any alerts at the top of the dashboard that the filter rules can't load or anything?

                I 1 Reply Last reply Reply Quote 0
                • H
                  heper
                  last edited by

                  Has anyone verified that the vlan setup on lagg0 is working as intended?

                  I 1 Reply Last reply Reply Quote 0
                  • I
                    iamhomer @heper
                    last edited by

                    @heper Yes man its working all vlans its working. they can browse internet but only through default gateway.

                    1 Reply Last reply Reply Quote 0
                    • I
                      iamhomer
                      last edited by

                      0_1535620160354_40919467-6c0c-4a3e-9892-5fd9d8a66b62-image.png i'm using the XG-7100

                      1 Reply Last reply Reply Quote 0
                      • DerelictD
                        Derelict LAYER 8 Netgate
                        last edited by

                        Hardware does not matter in this case.

                        1 Reply Last reply Reply Quote 0
                        • I
                          iamhomer @Derelict
                          last edited by

                          @derelict i use the pres network to test, making tracert and compare. I also observe the traffic on both wan and wan2.

                          1 Reply Last reply Reply Quote 0
                          • DerelictD
                            Derelict LAYER 8 Netgate
                            last edited by

                            @derelict said in Policy base routing not working traffic is not forwarded to specified gateway and always go to the default gw:

                            What is the source IP address you are testing from? How are you testing?

                            You did not answer that question. What is the Source IP address of the host you are testing from? I am really not asking for these details to waste your time. Honest.

                            We need to figure out what you are doing wrong - from a distance - and if we ask for details it's because we are trying to figure out where the mistake you made is. Because if there was not a mistake made, it would be working.

                            1 Reply Last reply Reply Quote 0
                            • I
                              iamhomer
                              last edited by

                              Thank you for helping i appreciate it guys. The source ip address is the vlan 8 which is the vlan of pres. And testing using traceroute example to google.com to see where i am passing through.

                              During the testing also i run streaming on vlan 8 and then compare it with vlan 5 and 4 to view the usage traffic.

                              By the way i replied on this question.

                              Thanks again.

                              1 Reply Last reply Reply Quote 0
                              • DerelictD
                                Derelict LAYER 8 Netgate
                                last edited by Derelict

                                Sigh - looking for the actual host IP address of the host you are testing from, not the interface.

                                1 Reply Last reply Reply Quote 0
                                • I
                                  iamhomer
                                  last edited by

                                  Hi Derelicit,

                                  On vlan 8 i sometime use the 10.10.8.26 to check if its going through WAN.

                                  Thank you,

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    Did you clear the firewall states between running tests?

                                    Do you see any alerts shown on the dashboard indicating the ruleset might not loading as expected?

                                    Steve

                                    1 Reply Last reply Reply Quote 0
                                    • I
                                      iamhomer
                                      last edited by

                                      Hi guys,

                                      Thank you for the support. I finally manage to find the issue and resolve it.

                                      The problem was in my L3 switch since i configure the svi on it and then forward all traffic to fw " 0.0.0
                                      0 0.0.0.0 10.10.2.1" Doing this the fw always sees that the packets came in a single vlan.

                                      Again thank you

                                      1 Reply Last reply Reply Quote 0
                                      • DerelictD
                                        Derelict LAYER 8 Netgate
                                        last edited by

                                        This post is deleted!
                                        1 Reply Last reply Reply Quote 0
                                        • H
                                          heper
                                          last edited by

                                          Only 23days to find a problem.... I wish my bosses were as nice

                                          1 Reply Last reply Reply Quote 0
                                          • First post
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.