Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    1. Home
    2. Tags
    3. multi-wan
    Log in to post
    • All categories
    • E

      Sometimes issues with OpenVPN udp via OpenVPN udp
      OpenVPN • openvpn mtu multi-wan • • Elephant

      1
      0
      Votes
      1
      Posts
      157
      Views

      No one has replied

    • L

      Enlace multiwan activo-activo
      Español • multi-wan activo-activo • • LDUT

      3
      0
      Votes
      3
      Posts
      559
      Views

      L

      @ptt Gracias por tu respuesta, pero encontré esta solución: http://www.bellera.cat/josep/pfsense2/Redundancia_y_Balanceo_de_Carga_con_MultiWAN.pdf, y ya está resuelto.
      Saludos.

    • A

      Multi WAN using USB mobile broadband with SG-1100
      Official Netgate® Hardware • broadband mobile multi-wan • • abelcallejo

      2
      0
      Votes
      2
      Posts
      159
      Views

      stephenw10

      Yes, that is possible.

    • brightwolf

      Set MAC address of OPT interface (second WAN)
      Routing and Multi WAN • multi-wan interfaces mac-address • • brightwolf

      2
      0
      Votes
      2
      Posts
      138
      Views

      A

      @brightwolf You can set a custom MAC address after you enable an interface.

      screenshot673423.png

      5th line down, under the specific interface settings screen.

      Jeff

    • D

      Multiple Gateways on same subnet
      Routing and Multi WAN • multi-wan subnet gateway routing firewall • • dr_tech

      26
      0
      Votes
      26
      Posts
      986
      Views

      D

      @JeGr said in Multiple Gateways on same subnet:

      Why not simply reconfigure those routers

      Because some devices (not mine) directly connected to router 1 have in their routing table certain rules to redirect traffic through 10.1.0.4. Hence those routers need to be on the same subnet.

      These routers are shared by around 20 people, in 4 rooms on single floor. Hence I cannot change settings on those routers.

    • B

      Multiple load-balanced VPN clients with same gateway IP
      Routing and Multi WAN • vpn client vpn loadbalance multi-wan gateways • • bgkgangani

      1
      0
      Votes
      1
      Posts
      286
      Views

      No one has replied

    • dragoangel

      IKEv2 Site-to-Site and MultiWAN on one side
      IPsec • ipsec ddns multi-wan issue • • dragoangel

      9
      0
      Votes
      9
      Posts
      384
      Views

      S

      I believe that I have a similar issue with the IPsec tunnel. My setup is as follow:
      main office
      Pfsense with Dual WAN. They are configured in a Failover group (Tier1 and 2 ). I have static public IP addresses for both of the WANs.

      Branch office:
      Pfsense with one WAN. It has a static public IP address.

      I configured one tunnel in the main office that points towards the branch office from the WAN failover group. On the branch office, I set up 2 tunnels one point towards the main WAN in the main office and the other points towards the secondary WAN.

      When the main WAN in the main office goes offline, The tunnel will be recreated with the secondary WAN. But when The main WAN comes back online there will be 2 active tunnels from the main and secondary WAN to the branch office. I don't know if this is an issue with my configuration since there is one tunnel in the main firewall and 2 tunnels in the other firewall, or it is only a limited configuration.

    • D

      Failover via wifi backbone for numerous sites
      Routing and Multi WAN • wifi wan failover routing multi-wan • • DRBOWE

      1
      0
      Votes
      1
      Posts
      109
      Views

      No one has replied

    • S

      Simple Multi WAN configuration failure to select Tier 2 Gateway
      Routing and Multi WAN • multi-wan gatewaygroup gateway offline • • SergeCaron

      4
      0
      Votes
      4
      Posts
      184
      Views

      S

      @SergeCaron This is the result of a configuration error. Mine, of course!

      The "Disable Gateway Monitoring Action" option was checked on the Tier 1 Gateway on Box #1.

      Clearing this option, everything is working as expected on both boxes.

      Regards,

    • S

      Default route disappears on simple Multi Wan configuration
      Routing and Multi WAN • multi-wan gateway offline default route • • SergeCaron

      2
      0
      Votes
      2
      Posts
      108
      Views

      S

      @SergeCaron (Sheepish grin) I figured out the "cannot uninstall cleanly" caution in Patch Manager. I installed the patch and Patch Manager happily reports it can be uninstalled cleanly.

      Unfortunately, I can no longer reproduce the disapearing Gateway issue: even if I force a complete disconnect of Tier 1, the Gateway Group does not switch to Tier 2.

      So, I will close this issue for now.

    • S

      Multi-Wan routing issue to standby WAN address
      Routing and Multi WAN • multi-wan routing assymetric • • SergeCaron

      3
      0
      Votes
      3
      Posts
      167
      Views

      S

      @jimp Thank you!

      Works perfectly as you described.

      Regards,

    • A

      Pfsense wan dan erişim web gui remote access
      Turkish • multi-wan remote access • • ares

      8
      0
      Votes
      8
      Posts
      376
      Views

      A

      @plusbil merhaba
      Denedim ama bu şekilde de erişim sağlanmadı.

    • K

      Pfsense erro dns dns_probe_finished_nxdomain
      Portuguese • dns loadbalance multi-wan • • klaucio

      2
      0
      Votes
      2
      Posts
      652
      Views

      O

      1- Vá em System -> Routing
      2- Clique para editar o Gateway
      3- Altere o campo "Data Payload" de 0 para 1
      4- Salve e aplique a modificação
      5- Reinicie o dpinger

      Em um caso parecido, comentaram sobre estarem usando apenas um DNS da emrpesa no 1º link, então quando saía pelo segundo dava erro, então o recomendado deve ser usar os dois DNS, um de cada empresa.

      Esse não é o meu cenário, por isso não sei a vericidade, mas já vi as pessoas comentando isso e deixei essa solução salva no pc para quando precisar rsrs... Mas já me confirmaram que funcionou, mas cada cenário é cada um, espero que resolva o seu também.

    • S

      GIF monitoring traffic goes via wrong parent interface on pfSense 2.4.4
      General pfSense Questions • gif ipv6 multi-wan • • Samsonov

      4
      0
      Votes
      4
      Posts
      424
      Views

      S

      Additional noteworthy observations.

      There was one strange thing about GIF configuration on pfSense 2.4.3 (and before?). I had to disable Outer Source Filtering on gif0 for the traffic to flow — otherwise even gateway monitoring pings were discarded upon reception: that is, if I remember correctly, ping replies were received on parent interface but rejected at GIF level. Those ping replies had proper source and destination addresses for both IPv4 and IPv6 and came in via proper interface. Of course, the IPv6 network for GIF tunnel itself was not the same as for overlaid network — but that is the case for all tunnels of all brokers. In particular, gif2 to the same broker was functioning well with Outer Source Filtering enabled by default, as well as gif1 to another broker.

      Right before upgrading from 2.4.3 to 2.4.4, I noticed that gif2 also needs disabling Outer Source Filtering. I had no idea on why this happened and how long ago — just switched the offending setting, and the tunnel became operational for about a couple of hours until the update took place. Same as earlier, however, gif1 to another broker was functioning with Outer Source Filtering enabled by default, and used proper parent interface even after upgrading to pfSense 2.4.4.

      Now that pfSense 2.4.4 is installed, I tried switching Outer Source Filtering back on and then off again — just in case — but observed no effect. That was expected indeed, as the primary issue is not with ingress filtering on local side: outgoing traffic is filtered by remote end because of improper source addresses caused by improper parent interface being used.

      I also tried Disable Gateway Monitoring for both gateways corresponding to gif0 and gif2. That allowed the traffic to flow out unconditionally, but only showed that any kind of traffic — not just ICMP pings — chose wrong parent interface. I once again tried changing default gateway settings, and the outcome was equally negligible. That is, sometimes I saw small bursts of legitimate traffic pass out and then in (such as my NTP server making a request and receiving a reply), but it is hard to correlate to settings change as those bursts stop soon. The other times I see legitimate inbound traffic entering proper parent interface, but somehow filtered on local side — such as incoming NTP and DNS requests with no reply from my home server [because pfSense filtered those requests out]. :puzzled:

    • I

      Tier 1 gateway not switching back after failover
      Routing and Multi WAN • multi-wan • • ibbetsion

      4
      0
      Votes
      4
      Posts
      630
      Views

      P

      @ibbetsion

      Many thanks! I'll have a look at it. Cheers!

    • K

      Hangout priority
      Traffic Shaping • voip traffic shaping multi-wan multiple-lan • • kcallis

      1
      0
      Votes
      1
      Posts
      306
      Views

      No one has replied

    • M

      Setting up pfSense with multi wan and gigabit
      Hardware • snort multi-wan gigabit • • mdahal

      4
      0
      Votes
      4
      Posts
      947
      Views

      stephenw10

      The biggest factor there is how much of that traffic will be over OpenVPN. If the majority of it is and you want to get anywhere near 2Gbps you're going to need the fastest CPU you can get hold of. Each OpenVPN process is single threaded so less cores at higher speeds wins here if you have only a few tunnels.

      Steve

    • J

      Dual WAN failover due to DNS failure , possible?
      Routing and Multi WAN • dns failover multi-wan • • jradxl

      1
      0
      Votes
      1
      Posts
      321
      Views

      No one has replied