• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Gateway Group Priority Tier Ignored to Prefer Default Gateway

Scheduled Pinned Locked Moved Routing and Multi WAN
5 Posts 2 Posters 1.2k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    SuperTechie
    last edited by Feb 8, 2018, 10:45 PM

    Using pfSense 2.4.2P1, I have set up 2 WAN's and gateways, a LAN with NAT, a Gateway Group set to failover, and a floating firewall rule to point to the the Gateway Group.  It all works great – I can pull any WAN cable and it fails over beautifully to the other as it is supposed to (Trigger Level set to "Member down").

    The Problem:  Tier is ignored.  The gateway set as default gets the priority no matter what the tier is set to.

    Anyone else see this issue?  Is this a bug, supposed to be this way, or have I missed some setup?

    eth0=Wan1
    eth1=Wan2
    eth3=LAN
    Gateway Group1=Gateway for eth0/Wan1 and eth1/Wan2
    Floating Firewall Rule Gateway = Gateway Group1

    Used these links in my setup:
    https://doc.pfsense.org/index.php/Multi-WAN
    https://doc.pfsense.org/index.php/Gateway_Settings
    http://opensourceforu.com/2016/08/configuring-pfsense-dual-wan-failover-mode

    1 Reply Last reply Reply Quote 0
    • S
      SuperTechie
      last edited by Feb 8, 2018, 11:40 PM

      Got it to work.  Had to set the default gateway in the LAN firewall rules to the Gateway Group.  I had thought this was taken care of in the floating rules, but apparently not.  Will have to study the relationship of the floating rules to the normal firewall rules a bit more . . .

      1 Reply Last reply Reply Quote 0
      • K
        kpa
        last edited by Feb 9, 2018, 1:32 PM

        The gateway setting on the floating rules is ignored for outgoing traffic on the WANs (in fact for any interface when the direction of the traffic is out) so you have to tag that traffic for a specific gateway or gateway group with LAN rules when the traffic enters the firewall.

        1 Reply Last reply Reply Quote 0
        • S
          SuperTechie
          last edited by Feb 9, 2018, 4:15 PM

          So it looks like step 3 in the opensource link above to create a floating rule is unnecessary?  Is there any reason to keep the floating rule?  Seems to work fine without it . . .

          1 Reply Last reply Reply Quote 0
          • S
            SuperTechie
            last edited by Feb 9, 2018, 4:32 PM

            Found this had already been answered in "floating rules to switch gateway" here:
            https://forum.pfsense.org/index.php?topic=139752.0

            1 Reply Last reply Reply Quote 0
            5 out of 5
            • First post
              5/5
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
              This community forum collects and processes your personal information.
              consent.not_received