Interface routing



  • Quick question that may be followed up by a more detailed question.

    Setup:  Internet –> firewall (IPS) --> WAN1 --> PFSENSE BOX < – WAN2 <-- Internet

    When a packet enters from WAN2 will it always return back through WAN2 or can it leave through WAN1 just as easily?
    I think the IPS is blocking packets that didn't come through it first. The IPS is not managed by myself so I can't change any settings on it.

    Will PfSense by default return packets from the WAN interface that they originated?



  • @u571kills:

    Will PfSense by default return packets from the WAN interface that they originated?

    Yes. No other means of routing will work (in most multi-WAN scenarios) as you can't send one ISP's IP out a different ISP. There is one possibility for doing that by wrongly using policy routing rules on WAN2 specifying WAN1's gateway, that would break things in that kind of setup and force traffic in WAN2 out WAN1.


Locked