• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Multi-WAN failover with web ping or similar

Scheduled Pinned Locked Moved Routing and Multi WAN
4 Posts 3 Posters 610 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M
    Mister.Deeds
    last edited by Nov 21, 2023, 9:18 AM

    Dear all

    We have a pfSense firewall with two WAN uplinks. One primary and one secondary. Both come from different providers. Both have a pre-attached router on which the pfSense WAN gateway address is located. We do not have access to these routers.

    This looks as follows:

    dacc8bba-9a60-44dc-868e-05575f45a151-Zeichnung1.png

    The problem is that the gateway address is always available, even if the Internet connection behind the provider's router fails. Since we operate the installation as active-passive, we always have to manually deactivate the primary WAN interface in the event of a failure so that the failover takes place.

    Is it possible to define an IP from the Internet as a monitor?

    f26d7873-77c9-49be-9bb0-ca45534d45c1-image.png

    I hope you understand what I mean :)

    Many thanks and best regards

    G V 2 Replies Last reply Nov 21, 2023, 11:09 AM Reply Quote 0
    • G
      greenlight @Mister.Deeds
      last edited by Nov 21, 2023, 11:09 AM

      @Mister-Deeds if you mean gateways monitor IPs, i am using dns adresses for it.

      i have 3 uplink and my monitor IPs 1.1.1.1, 8.8.8.8, 8.8.4.4. If the gateways cannot reach these addresses, it means they are not working. You cannot write the pfsense address or the IP address of a device on the same network as the Monitor IP.

      1 Reply Last reply Reply Quote 1
      • V
        viragomann @Mister.Deeds
        last edited by Nov 21, 2023, 11:14 AM

        @Mister-Deeds
        pfSense uses the information from dpinger gateway monitoring to determine if a gateway is available. It just pings the gateways by default. But since these are your local ISP routers, they are responding even if the WAN line is dead.

        So you have to go to the gateway settings (even possible with DHCP) and state a public monitoring IP. Then the gateway will only shown up as online if the public IP is really reachable.
        You have to state different monitoring IPs for both gateways.

        1 Reply Last reply Reply Quote 1
        • M
          Mister.Deeds
          last edited by Nov 21, 2023, 11:58 AM

          Dear both

          Thank you very much for your answers. This is exactly what I need. Now it works:

          21b9352e-3133-4aa6-bca5-41403ba4641f-Unbenannt.PNG

          Have a nice day and best regards

          1 Reply Last reply Reply Quote 0
          4 out of 4
          • First post
            4/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
            This community forum collects and processes your personal information.
            consent.not_received