Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Another outbound NAT issue

    Scheduled Pinned Locked Moved NAT
    4 Posts 3 Posters 949 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      geraldbrandt
      last edited by

      I didn't find an answer… maybe I missed it an someone can point me to the right thread.

      I have two WAN interfaces: WANA and WANB
      My internal network is 192.168.100/22
      WANB is my default gateway.
      I would like all traffic from 192.168.100**/24** (192.168.100.1 - 192.168.100.254) to go out WANA.

      I set up an outbound NAT to, but it still sends out the default gateway.

      Any pointers?

      Gerald

      1 Reply Last reply Reply Quote 0
      • K
        kpa
        last edited by

        Outbound NAT rules do not tell the system how to route traffic, they only apply IF the traffic gets sent out via the specified interface by the routing process. Search for "policy routing" for the proper way to redirect traffic with a multi-WAN. You do need the Outbound NAT rule on  WANB also so don't delete it.

        1 Reply Last reply Reply Quote 0
        • KOMK
          KOM
          last edited by

          The pfSense doc on policy routing is weak so I'll just paste it here:

          What is policy routing

          Policy routing in pfSense refers to the capability of routing traffic by matching it to specific firewall rules. Each firewall rule allows selection of a gateway. If none is selected, traffic goes out the default gatway or follows the routing table. If additional WAN interfaces (OPT WAN) or gateway groups are defined, these may be selected in the Gateway field when adding or editing rules to direct matching traffic as desired. This is primary used for multi-WAN, though it has other uses as well.

          tl;dr You do it via firewall rules where you pick a gateway for the rule to apply to.

          1 Reply Last reply Reply Quote 0
          • G
            geraldbrandt
            last edited by

            Some mornings it's just not worth getting out of bed. Thanks to both of you, I have it working.

            Gerald

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.