Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    small routing problem for package manager.

    Scheduled Pinned Locked Moved Routing and Multi WAN
    3 Posts 2 Posters 226 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • 4
      4o4rh
      last edited by

      I have the following setup.

      • WAN + VPN
      • Routing / Gateway Group = VPN (WAN is excluded)
      • DNS Server - localhost is included
      • All WAN firewall rules have VPN Gateway specified
      • Work laptop has a VPN exception, to go directly out WAN (using it's own VPN)
      • China Geo IPs excluded to go direct via WAN
      • NTP / DNS redirected to pfsense

      Works successfully as desired;

      • VPN down, only work laptop CAN connect via it's own VPN as well as use ICMP for diags.
        browsing does not work, until work VPN established via WAN
      • VPN down, no other clients can work.
      • VPN up, all browsing, mail, etc goes via VPN (except work laptop, goes via WAN and work VPN)

      So far so good. but now the problem.

      • VPN down, pfsense package can't find available packages
      • VPN up, pfsense packages can find available packages

      Clearly it is using the default route (which is down when it is the VPN), but this is required to lock the network down when the VPN is down.

      How can i change the route for the pfsense box to use the WAN instead of the VPN?

      Thanks

      1 Reply Last reply Reply Quote 0
      • V
        viragomann
        last edited by

        Add a static route for the package hostname directing packets to the WAN gateway.

        To do so, first add an alias of type hosts and add "pkg.pfsense.org" to it. Then add a static route and enter the name of that alias at "Destination network", select the WAN gateway from the drop-down.

        1 Reply Last reply Reply Quote 1
        • 4
          4o4rh
          last edited by

          that did the job....thanks

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.