Does pfSense support multi-wan routing across, 2 or more OpenVPN or Wireguard tunnels
-
Hi,
Does pfSense support multi-wan routing across, 2 or more OpenVPN or Wireguard tunnels
meaning;
3 wan interfaces
1 - real wan
2 - ovpn1 / wg1
3 - ovpn2 / wg2load balance all traffic between 2 and 3
I looked at this doc, but I believe this refers to multi-way for more of a physical WAN connections vs VPN connections;
https://docs.netgate.com/pfsense/en/latest/multiwan/policy-route.html
Thankyou
-
@network-stack-445 If your talking about openVPN clients connected to a VPN provider and utilizing the VPN connections in a load balance/failover capacity. Then yes, ( I currently do this with 4 tunnels) However, this only works for me with 2.5 and older. it seems that with 2.51 & above the more tunnels you have results in VPN gateway packet loss Some will connect and some simply stay disconnected with 100% packet loss. As a result I'm still on 2.4.5p1 which works with no problems. I'm not sure If this is an OpenVPN issue or how or when it will be fixed. Wireguard on the other hand was removed in 2.5.1 due to kernel security issues and is currently being developed as a package for versions 2.6 line. I do not know what issues still exist but I did have the configuration running with 2.5 before it's removal.
-
@townsenk64
Thankyou I appreciate the insight, so with 4OVPN tunnels, the WAN access is load balanced ok?I have a 1G Internet, tried to get the most out of it
-
@network-stack-445 Well, It's more of a load distribution than a true balance, If all four tunnel gateways are set at the same priority level in the gateway group it will rotate through them. tunnels can be excluded from this rotation based on the tunnel connection being down, high latency and or packet loss.
please keep in mind that the Advanced setting "Sticky Connections" has an effect on this as well. -
@townsenk64 Thankyou really appreciate all the insight