Muti-site pfsense with AD in the cloud (AWS)



  • Hi all,

    I've done much reading, but am still having some issues with my design. I have pfsense running at multiple sites with ipsec VPNs connecting each site to AWS where my Active Directory Domain and file server resides.

    I want to have my clients using pfsense as their DNS where I'm doing some content filtering, etc. They need to be able to reach the internet even if the VPN to AWS is down; however, I need them to be able to see and join my AWS hosted AD domain.

    I'm running DNS resolver on pfsense and thinking I need to create some SRV entries in the custom section. ?? I have also added my domain controllers to the domain override section in pfsense.

    Thanks for any guidance you may have.