Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Multi-WAN and one LAN

    Scheduled Pinned Locked Moved Routing and Multi WAN
    5 Posts 3 Posters 3.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bicofino
      last edited by

      Hello Pfsense users,

      I'm using Pfsense almost for a year just with basic setup (one WAN link and one LAN, sometimes a WAN/WIFI/LAN setup).
      These days I got a challenge ahead, I have 3 networks cards on the server and this structure:
      LAN: 192.168.0.0/24
      WAN: DSL Link
      OPT1: Cable Link

      I want to separate the traffic, example:
      192.168.0.10-20 -> WAN
      192.168.0.90-240 -> OPT1
      192.168.0.10-15 -> WAN and OPT1

      On case 192.168.0.10-15 I need that because some sites just work with OPT1.
      What the best way to do that?
      I was thinking about configure Outbound NAT, but on the source how I add a group of IPs? I guess I can't use aliases on Address field.
      I don't need load balance, if OPT1 is down the IPs 192.168.0.90-240 isn't going use WAN.
      I hope I was clear enough to you guys help me.

      Best Regards,

      Bico_Fino

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG
        GruensFroeschli
        last edited by

        No AoN is needed.
        Just create 3 aliases:
        Alias_only_WAN: containing all the IPs (or subnets, 192.168.0.10/31, 192.168.0.12/30, 192.168.0.16/30 )
        Alias_only_OP1: containing all the IPs (or subnets, same format as above)
        Alias_balance: containing all the IPs (or subnets, same format as above)

        Then create 3 firewall rules on the LAN.
        Each rules uses one of the aliases as source, and the corresponding gateway.

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • B
          bicofino
          last edited by

          I got your point.
          But if I add the rule to IP 192.168.0.188 (example) use the gateway OPT1 it don't reach internet (ping and such). Any idea?

          1 Reply Last reply Reply Quote 0
          • B
            bicofino
            last edited by

            Nevermind.

            It's working now, I forgot to add DNS static routes.
            Thanks for the help Gruens.

            1 Reply Last reply Reply Quote 0
            • C
              chiboik
              last edited by

              GruensFroeschli
              can you help me with image upload ?

              im newbie  :'(  :'(  :'(  :'(

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.