Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    1. Home
    2. Tags
    3. gateway
    Log in to post
    • All categories
    • L

      DOUBLE VPN LIKE TOR

      Watching Ignoring Scheduled Pinned Locked Moved NAT vpn gateway nat
      2
      0 Votes
      2 Posts
      228 Views
      GertjanG

      @Legal_Brick_527

      With two VPN clients running on the same pfSense ?
      I didn't really insist when testing (things start to behave very bad).
      I'm sure that a first VPN client can used as the 'gateway' for a second VPN client on the same device, but you probably have to set them up the old way : manual config file creation and all that. That's not possible on pfSense.
      I hope to be wrong of course.

      What was possible :
      Setting up a pfSense VPN client to 'some' VPN-ISP, routing all outgoing traffic over this connection, that's classic and works fine.
      Then I activated a VPN client on my NAS, used 'another' VPN-ISP, and that connected also "just fine".
      Now, I had a tunnel over a tunnel.
      As I was using some web https sites to test, I actually had a a tunnel in a tunnel in a tunnel.

      Btw : you go beyond what is needed to protect the launch codes of the nukes .... are you sure you need this protection ?

    • T

      Default Gateway

      Watching Ignoring Scheduled Pinned Locked Moved NAT gateway lans
      21
      0 Votes
      21 Posts
      1k Views
      R

      @Tiny-0

      Repeatedly ran into this and was wasting time trying to re-install and restore config each time, only to have the packages "disappear" again...

      Is there a Redmine report for this?

      Does anyone know what the root cause might be?

    • S

      How do I route outgoing email over WireGuard Tunnel?

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN wireguard tunnels routiing help gateway
      29
      0 Votes
      29 Posts
      4k Views
      Bob.DigB

      @Gertjan said in How do I route outgoing email over WireGuard Tunnel?:

      Of course I use have DANE available and set up :

      I just noticed I had to recreate the TLSA records, something with Let's Encrypt must have changed. I hope I am good now for some time...

    • C

      netgate 2100 wan2 w/ DHCP - no joy... yet

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN 2100 vlan dhcp opt1 for wan2 gateway
      4
      0 Votes
      4 Posts
      1k Views
      N

      @chrisjx Hi,
      I also have a location with two ISPs, one is the primary and the second is a Starlink.
      So I know how to setup the LAN4 as a OPT and assigned VLAN 40 to it. But how do I make sure the Starlink is on VLAN 40 then?

      Did you managed to get this working?

      BR
      Nick

    • B

      iperf Package testing of non-default gateways

      Watching Ignoring Scheduled Pinned Locked Moved Traffic Monitoring iperf gateway source address
      5
      0 Votes
      5 Posts
      779 Views
      L

      @ben_p In the UI, Diagnostics Menu | Command Prompt | Execute Shell Command

    • A

      WAN Default gateway

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN gateway wan default route
      4
      0 Votes
      4 Posts
      661 Views
      A

      so upon disabling and re enabling the WAN interface this is when i see the issue occur. the only action that can be taken it seems is to manually select the gateway removing it off the automatic option. restarting the gateway service nor reboot changes its behaviour.

      Running on 2.6.0-RELEASE (amd64) wonder if anyone else is getting the same issue?

    • crc_error_79C

      Silly VLAN information

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan gateway wan ppoe nat
      3
      0 Votes
      3 Posts
      943 Views
      crc_error_79C

      @bob-dig
      yes destination is internet.

      So this is why I get the NAT3 on the ps4 right?
      in short, because the vlan's gateway is not exposed to internet but is behind the wan.. right?

      sorry what you mean with If the destination is at your place then number 3
      another vlan or the lan?

      thanks again

    • H

      New gateway causes all traffic to be rerouted

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN gateway vpn routing
      2
      0 Votes
      2 Posts
      622 Views
      RicoR

      Make sure you have the Don't pull routes option checked in your OpenVPN Client configuration:
      pfSense_Dont_pull_routes.png

      -Rico

    • S

      Wireless clients lose ipv6 gateway

      Watching Ignoring Scheduled Pinned Locked Moved IPv6 gateway ipv6 radvd
      30
      0 Votes
      30 Posts
      6k Views
      M

      For my site the issue has been resolved now. Been running smoothly for more than a week after increasing Router Lifetime in services_router_advertisements.php?if=lan

    • A

      Advskew and Gateway Status

      Watching Ignoring Scheduled Pinned Locked Moved HA/CARP/VIPs advskew carp gateway script
      1
      0 Votes
      1 Posts
      757 Views
      No one has replied
    • J

      Firewall Rules not applying to http traffic

      Watching Ignoring Scheduled Pinned Locked Moved Firewalling firewall rules gateway routing
      9
      0 Votes
      9 Posts
      1k Views
      H

      @jack7076 transparent squid does not work with policy routing. Squid binds to wan. Policy routing is done before it reaches wan

    • semiraueS

      Route openvpn client traffic through another openvpn client

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions routing nat gateway openvpn site-to-site
      14
      0 Votes
      14 Posts
      3k Views
      stephenw10S

      Do you see it being routed in packet captures or the state table when you try to reach 1.1.1.1?

      Where does it fail?

    • D

      Multiple Gateways on same subnet

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN multi-wan subnet gateway routing firewall
      26
      0 Votes
      26 Posts
      5k Views
      D

      @JeGr said in Multiple Gateways on same subnet:

      Why not simply reconfigure those routers

      Because some devices (not mine) directly connected to router 1 have in their routing table certain rules to redirect traffic through 10.1.0.4. Hence those routers need to be on the same subnet.

      These routers are shared by around 20 people, in 4 rooms on single floor. Hence I cannot change settings on those routers.

    • L

      VMWare Install - WAN Gateway Offline

      Watching Ignoring Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software wan gateway vmware
      2
      0 Votes
      2 Posts
      604 Views
      stephenw10S

      That is a layer 2 issue. Either that NIC is not passed through to pfSense correctly or the ONT is rejecting the MAC address. Rebooting would normally reset that bit not always.

      Try some other device using the public IP directly. If that also fails and the Netgear is the only thing that works you will need to spoof the MAC address or call the ISP and have them reset it.

      Steve

    • T

      Gateway offline after adding Client Specific Overrides for OpenVPN

      Watching Ignoring Scheduled Pinned Locked Moved OpenVPN pfsense openvpn gateway
      5
      0 Votes
      5 Posts
      719 Views
      T

      Yes the netmasks are all /24. For now it is 1 peer for testing. But in the future i would like to have the possibility to add more clients. The following is what I'm trying to accomplish:

      test.png

    • C

      Routing only one port on NIC through openvpn

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions gateway openvpn
      13
      0 Votes
      13 Posts
      2k Views
      stephenw10S

      Ok, if you only have a firewall rule with the OpenVPN gateway set it will force all traffic out that way which will break connectivity to the LAN.
      Add a rule on the new interface above any rules with a gateway set to pass ping traffic to the LAN.

      Otherwise check the firewall logs. Check the state table while you're pinging.

      Steve

    • X

      VLAN question for noob moving from Cisco ASA

      Watching Ignoring Scheduled Pinned Locked Moved L2/Switching/VLANs vlan interfaces gateway cisco
      21
      0 Votes
      21 Posts
      3k Views
      GrimetonG

      @xyzzyz said in VLAN question for noob moving from Cisco ASA:

      My question: On my pfSense replacement for the ASA, is there any advantage to setting up a VLAN for the WAN port?

      No.

    • O

      Non local gateway IPv6

      Watching Ignoring Scheduled Pinned Locked Moved IPv6 ovh ipv6 vlan gateway
      25
      0 Votes
      25 Posts
      3k Views
      JKnottJ

      @Overclock said in Non local gateway IPv6:

      I let you inform about OVH response.

      Ask them how SLAAC is supposed to work with a /56. You may be able to get a single /64 to work, but the other 255 will be unusable.

    • A

      [URGENTE] Problema de perda de comunicação com o Gateway (WAN)

      Watching Ignoring Scheduled Pinned Locked Moved Portuguese gateway offline gateway help wan ipv4
      6
      0 Votes
      6 Posts
      2k Views
      M

      Olha, olhando o problema superficialmente, com as informações que você passou, já levando em consideração que você verificou cabos e etc, digo que sim o problema pode ser na placa de rede.

      Não é normal ter problema de conectividade entre o pfsense e o modem, é um cabo, não é pra perder ping nem muito menos perder o MAC da tabela.

    • M

      AWS-EC2: How to route through pfSense

      Watching Ignoring Scheduled Pinned Locked Moved Routing and Multi WAN ec2 routing gateway amazon
      1
      0 Votes
      1 Posts
      931 Views
      No one has replied