Forcing port 21 traffic over a specific WAN
-
Hello, Friends.
I want to force traffic to/from 21 port over one specific WAN.
My pfSense has two WAN, one LAN, two Gateways (WAN1 and WAN2) and one Gateway Group (WAN1 Priority 1 + WAN2 Priority 1).
I wish all traffic from/to port 21 over only one WAN.
What is the better option? Static Route? a Firewall Rule?
Thanks in advance for any tip.
-
@hugoeyng said in Forcing port 21 traffic over a specific WAN:
I wish all traffic from/to port 21 over only one WAN.
On the local pfSense you can only affect outgoing traffic, not incoming.
For incoming you have to configure the public DNS accordingly.What is the better option? Static Route? a Firewall Rule?
Static routes cannot be applied to certain ports, so you will have to go with policy routing.
-
@hugoeyng FTP uses 2 ports 20 & 21, if it's running in active mode.
-
@NogBadTheBad what solution would you apply to my question? Firewall rule/policy routing or is there something better?
-
@hugoeyng Where are the connections originating from, just your local lan ?
If it was just the local lan, policy route port 20 & 21 on the local lan.
-
@NogBadTheBad All connections origin from local lan.