Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    VLAN over a WAN link

    Scheduled Pinned Locked Moved General pfSense Questions
    9 Posts 5 Posters 546 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Malad
      last edited by

      Hi guys, I have this situation:
      I have a VLAN between two offices in a WAN link that must have access to the internet. A layer 2 tunnel with an ISP has been hired and the internet is accessed through it. The IP of the link is fixed and the VLAN also, all the configuration is done on the VLAN. In my pfSense it shows that the WAN is down. Any suggestions
      I would also like to know about documentation to implement a VLAN on a WAN link. Thank you all. Malad

      1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator
        last edited by

        A vlan is a vlan to pfsense.. Be it a lan or wan.  If you setup a gateway for a interface/vlan pfsense will see that interface as a WAN interface.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        1 Reply Last reply Reply Quote 0
        • JKnottJ
          JKnott
          last edited by

          How is the VLAN implemented from your ISP?  It could be actual VLAN or MPLS.

          PfSense running on Qotom mini PC
          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
          UniFi AC-Lite access point

          I haven't lost my mind. It's around here...somewhere...

          1 Reply Last reply Reply Quote 0
          • jahonixJ
            jahonix
            last edited by

            Why not just run a VPN from site to site?

            1 Reply Last reply Reply Quote 0
            • JKnottJ
              JKnott
              last edited by

              @jahonix:

              Why not just run a VPN from site to site?

              Do VPNs support VLANs?  Any that work at the IP level won't.  Those that work at layer 2 would also need to support VLAN tagging.

              PfSense running on Qotom mini PC
              i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
              UniFi AC-Lite access point

              I haven't lost my mind. It's around here...somewhere...

              1 Reply Last reply Reply Quote 0
              • M
                Malad
                last edited by

                Hi guys, thanks for your answers, in addition to doc.pfsense.org, is there another way to get information about VLANs over WAN? A kind of installation guide? Thank you for your answers.

                1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator
                  last edited by

                  Your going to have explain a bit more on what your thinking a vlan over a wan is..

                  Lets go over it again - a vlan is layer 2. Pfsense doesn't care what interface you put a vlan on..l be it a local lan behind pfsense network or the network that connects pfsense to the wan…  It works exactly the same be it a lan interface or a wan interface.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  • JKnottJ
                    JKnott
                    last edited by

                    @johnpoz:

                    Your going to have explain a bit more on what your thinking a vlan over a wan is..

                    And also how the ISP is providing the VLAN.

                    PfSense running on Qotom mini PC
                    i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                    UniFi AC-Lite access point

                    I haven't lost my mind. It's around here...somewhere...

                    1 Reply Last reply Reply Quote 0
                    • M
                      mlsbraves
                      last edited by

                      @Malad:

                      Hi guys, I have this situation:
                      I have a VLAN between two offices in a WAN link that must have access to the internet. A layer 2 tunnel with an ISP has been hired and the internet is accessed through it. The IP of the link is fixed and the VLAN also, all the configuration is done on the VLAN. In my pfSense it shows that the WAN is down. Any suggestions
                      I would also like to know about documentation to implement a VLAN on a WAN link. Thank you all. Malad

                      I'd confirm with your ISP if your setup with an MPLS or VLAN for your site. We had an offer from AT&T that has layer2 site to site capability that was cheaper than an MPLS but our VPNs are running smoothly for our needs. I would think they would use different ports on their edge device, WAN(No VLAN) Site-toSite(VLAN) but it could be done either way.

                      If your sure your ISP is handing you Internet access through a VLAN then all you need to do is add the VLAN to pfsense and change your WAN network port to that VLAN. Go to Interfaces –> Assignment --> VLANs tab. Add the VLAN for your Internet connection(make sure to select the correct parent interface). Then go back to Interface Assignments and change your WAN Network Port to the Vlan you just added.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.