Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    one big WAN multiple pfSense cannot see each other on WAN

    Scheduled Pinned Locked Moved NAT
    9 Posts 3 Posters 640 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • U
      uz890ed
      last edited by

      I have a /25 WAN, where I have many pfsense VMs connecting to the internet, all of them getting their own public IPs.
      some have only one IP, but one has 15 IPs and there are quite some with 2-4 public IPs.

      my Issue now is, that I cannot connect via WAN between those pfSenses..
      so pfsense 1 cannot reach anythign hosted on pfsense 2.

      how do I fix this?

      V 1 Reply Last reply Reply Quote 0
      • V
        viragomann @uz890ed
        last edited by

        @uz890ed said in one big WAN multiple pfSense cannot see each other on WAN:

        so pfsense 1 cannot reach anythign hosted on pfsense 2.

        So what is the exact IP configuration of both on WAN and LAN?
        What are the firewall rules?

        I expect, that traffic would flow if all is configured correctly.

        U 1 Reply Last reply Reply Quote 0
        • U
          uz890ed @viragomann
          last edited by

          @viragomann

          one example:
          1pfsense:
          1 public IP -> NAT tcp port 443 -> internal host.

          now I cannot access this page from another network (on another pfsense) having his WAN-Interface on the same WAN-subnet.

          but I don't have any problems to connect to this page from anywhere else (mobile Network from my Smartphone for example)

          V 1 Reply Last reply Reply Quote 0
          • V
            viragomann @uz890ed
            last edited by

            @uz890ed
            Again, what is the exact network configuration of both devices?

            Do you try to access it via IP or host name? If host name, how is it resolved?

            U 2 Replies Last reply Reply Quote 0
            • U
              uz890ed @viragomann
              last edited by

              This post is deleted!
              1 Reply Last reply Reply Quote 0
              • U
                uz890ed @viragomann
                last edited by

                @viragomann They both use the same Upstream Gateway and both have a different public IP on their WAN-Interface but are in the same /25 subnet.

                I access via DNS and it resolves to the correct public IP.

                V johnpozJ 2 Replies Last reply Reply Quote 0
                • V
                  viragomann @uz890ed
                  last edited by

                  @uz890ed
                  The WAN IP is configured with the /25 mask on both?

                  I access via DNS and it resolves to the correct public IP.

                  To the proper WAN IP, you want to access?

                  If so and if the internal subnets are different, I'd expect, that it works.
                  Otherwise you have to provide some more details to get closer to the issue.

                  U 1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator @uz890ed
                    last edited by

                    @uz890ed you sure your isp doesn't isolate these IPs?

                    If your pfsense are on the same wan.. Do you see the mac address of pfsense 1 from pfsense 2?

                    Or is the switch setup for private vlans that your pfsense wans are connected too.

                    Do a simple test, from pfsense 1 ping pfsense 2 wan IP.. Does pfsense 2 see this traffic (via sniff on its wan).. Do you see the mac address on pfsense 1 after you ping?

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    1 Reply Last reply Reply Quote 1
                    • U
                      uz890ed @viragomann
                      last edited by

                      @viragomann it was resolved by itself. there was an issue on the ISP-side where I get the IPs from.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.