Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    2 wans same subnet.

    Scheduled Pinned Locked Moved Routing and Multi WAN
    10 Posts 4 Posters 944 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      adalton.caldas
      last edited by

      How can i make 2 wans with same subnet, work? One for internet and the other one for VPN?

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        You cannot have two interfaces with the same subnet.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • A
          adalton.caldas
          last edited by

          Thanks @jimp for the answer.

          At previous versions, it was very doable. But at the newest it can't be done. I don't have any choice. I have 2 public IPs at the same subnet, and i need to use one to internet and the other one to VPN. Is there something else i can do ? Please!

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            yeah use one of the IPs as vip.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • A
              adalton.caldas
              last edited by

              Thanks @johnpoz . What VIP stands for? Virtual IP?

              1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator
                last edited by johnpoz

                Yes virtual IP, you can configure them under the firewall tab on the pfsense menu.

                0_1534866311399_vip.png

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.8, 24.11

                1 Reply Last reply Reply Quote 0
                • A
                  adalton.caldas
                  last edited by

                  Wonderful news! Thanks a lot for the help @johnpoz ! Is this decrease the traffic or performance of my network interface? Is there any bad news for the entire Pfsense, if i use the Virtual IP?

                  1 Reply Last reply Reply Quote 0
                  • DerelictD
                    Derelict LAYER 8 Netgate
                    last edited by Derelict

                    The same traffic will be present on the same interface. It will just have different source/destination IP addresses.

                    Your post title was this: 2 wans same subnet.

                    You don't really have that. You have one WAN with two IP addresses.

                    Chattanooga, Tennessee, USA
                    A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                    DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                    Do Not Chat For Help! NO_WAN_EGRESS(TM)

                    1 Reply Last reply Reply Quote 0
                    • A
                      adalton.caldas
                      last edited by

                      Actually , I have 3 interfaces WAN. 1 with dynamic ISP and the other 2, within same subnet but with Static Ip.. I don´t want to use the same interface to run the traffic out to the internet and the VPN at the same time toghether . I want each interface running it own traffic.
                      But thanks for the help @Derelict .

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        So your internet connection is what exactly 10ge? Multiple gig over a 10ge interface.. Multiple smartjacks... How exactly is this isp connection with multiiple IPs presented to you? Is it a 802.3bz into a switch and you want to run multiple gig interfaces into the same switch on the same L2 to be able to leverage the higher than gig connection?

                        Unless your bandwidth is higher than what your interface can handle at the physical layer - there is zero reason not to use just a vip or a vlan, etc.

                        I have 100mbps internet with /24 for ips - why would I need multiple physical interfaces to use all those IPs if I have gig interface?

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.