Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    [SOLVED] Static Routes troubles

    Scheduled Pinned Locked Moved Routing and Multi WAN
    2 Posts 1 Posters 595 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • O
      oscarivan.retailcube
      last edited by

      Hello,
      I write because I have a big problem with static routes, the connection drops. Let me explain my situation, maybe someone can help me out, I'm from three days working on this and does not come out.

      My network is 10.0.0.0/24
      Main pfSense firewall with IP 10.0.0.2 which shares the internet and its go well.
      Cisco firewall ASA5500 with 10.0.0.1 IP without DHCP, and  holding an open tunnel with a VPN with 10.1.0.0/16 network

      By setting static routes on the PC to switch from 10.0.0.1 when you go to the VPN all works very well. The set route is this "sudo add 10.1.0.0/16 via 10.0.0.1 ip r".

      The problems come out when setting the static routes on pfSense, the route seems to work because the connection is active an you can connect to remote hosts, but after less than a minute the connection drops, always.

      What I did on pfSense:

      • I went on System-> Routing-> Gateways and added the GW LAN 10.0.0.1
      • I went on System-> Routing-> Static Routes, and added the route as well: destination network: 10.1.0.0/16, GATEWAY = 10.0.0.1.
      • I went on Firewall-> Rules-> LAN and added to the first two rules:
        –------ Rule 1: Action: pass, Interface: LAN, Family: IPv4, Protocol: any, Source: LAN net, Destination: 10.1.0.0/16
        -------- Rule 2: Action: pass, Interface: LAN, Family: IPv4, Protocol: any, Source: 10.1.0.0/16, Destination: LAN net
      • I went on System-> Advanced-> Firewall & Nat and I activated the flag "bypass firewall rules for traffic on the same interface"

      As I said, a client that connects by DHCP, getting a IP from pfSense and having as default gateway (10.0.0.2), is able to enter without problems in the 10.1.0.0/16 network, but the connection drops after less than a minute.

      I hope someone knows how to help me, thank you.

      1 Reply Last reply Reply Quote 0
      • O
        oscarivan.retailcube
        last edited by

        Seems that I solved the problem changing "State type" in "none" on the "Rule 1".

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.