<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Policy based dual router]]></title><description><![CDATA[<p dir="auto">My LAN has two WAN's each coming in via a different router, one pfSense and the other a Vigor job. Currently the two routers are unaware of each other, each being the default route for some subset of the LAN's hosts. Typically, hosts using DHCP will see the pfSense router/WAN as their default route, and other hosts using a static assignment will see the Vigor as default route.</p>
<p dir="auto">It works well, but what I want to do now is to have hosts using pfSense as the default route to send some traffic out of the Vigor gateway. It seems simple enough to me: a firewall rule matching traffic from host x to address y gets redirected via the Vigor, but I can't set this in in pfSense because it seems only to want to use a WAN/OPT port as a gateway and won't allow some other LAN address to be used. Is that correct, or am I missing some (possibly well hidden) option?</p>
]]></description><link>https://forum.netgate.com/topic/5152/policy-based-dual-router</link><generator>RSS for Node</generator><lastBuildDate>Fri, 17 Apr 2026 06:58:51 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/5152.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 10 Jul 2007 21:24:28 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Policy based dual router on Thu, 12 Jul 2007 00:07:17 GMT]]></title><description><![CDATA[<p dir="auto">I'm pushing to have it changed in a future release to allow policy routing to any address you desire, but no ETA on that. Possibly for 1.3, maybe not until after that.</p>
]]></description><link>https://forum.netgate.com/post/157426</link><guid isPermaLink="true">https://forum.netgate.com/post/157426</guid><dc:creator><![CDATA[cmb]]></dc:creator><pubDate>Thu, 12 Jul 2007 00:07:17 GMT</pubDate></item><item><title><![CDATA[Reply to Policy based dual router on Wed, 11 Jul 2007 19:09:15 GMT]]></title><description><![CDATA[<p dir="auto">If an interface has a gateway then you can route traffic out of it.<br />
If the interface has no gateway then its just a LAN interface.</p>
<p dir="auto">If you want pfSense to do the routing, and you want it to sometimes send traffic through the vigor then you need to conect the two directly.</p>
]]></description><link>https://forum.netgate.com/post/157407</link><guid isPermaLink="true">https://forum.netgate.com/post/157407</guid><dc:creator><![CDATA[sai]]></dc:creator><pubDate>Wed, 11 Jul 2007 19:09:15 GMT</pubDate></item><item><title><![CDATA[Reply to Policy based dual router on Wed, 11 Jul 2007 11:16:24 GMT]]></title><description><![CDATA[<p dir="auto">OK, thanks. I don't really want to chain either router off the other, because that defeats the idea of having them separate :)</p>
<p dir="auto">Is this policy thing likely to change or is it pretty much cast in stone?</p>
]]></description><link>https://forum.netgate.com/post/157391</link><guid isPermaLink="true">https://forum.netgate.com/post/157391</guid><dc:creator><![CDATA[PurpleOfPants]]></dc:creator><pubDate>Wed, 11 Jul 2007 11:16:24 GMT</pubDate></item><item><title><![CDATA[Reply to Policy based dual router on Wed, 11 Jul 2007 03:34:08 GMT]]></title><description><![CDATA[<p dir="auto">Yeah, that's correct. Currently that's a limitation of our policy routing.</p>
<p dir="auto">What I would suggest is putting the Vigor gateway off of a dedicated OPT interface, and use pfsense for the gateway for everything, static or dynamic. Then you can use policy routing to direct traffic as you wish.</p>
]]></description><link>https://forum.netgate.com/post/157383</link><guid isPermaLink="true">https://forum.netgate.com/post/157383</guid><dc:creator><![CDATA[cmb]]></dc:creator><pubDate>Wed, 11 Jul 2007 03:34:08 GMT</pubDate></item></channel></rss>