Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Multi wan - gateway offline

    Scheduled Pinned Locked Moved Routing and Multi WAN
    19 Posts 8 Posters 12.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Y
      youssef24eg
      last edited by

      Yes i have configured the monitor ip

      11.GIF
      11.GIF_thumb
      22.GIF
      22.GIF_thumb
      33.GIF
      33.GIF_thumb
      44.GIF
      44.GIF_thumb

      1 Reply Last reply Reply Quote 0
      • T
        tim.mcmanus
        last edited by

        If I understand the OP correctly, I think I am having a similar issue.

        I have two WANs set up–WAN and WAN2.  WAN is a residential connection that receives a dynamic public IP.  WAN2 is a business connection that has a static public IP.  WAN usually goes down for 30 minutes on Sunday night a 1AM and WAN2 is more stable.  I have a Gateway Group set up with WAN set to tier 2 and WAN2 is at tier 1.

        When WAN goes down it fails to WAN2 and that works great.  However, pfSense never fails back to WAN when it comes back up.  In fact, the line will remain down until I go to the Interfact and click the RENEW button to renew the DHCP lease.  It hasn't once in the past 4x-5x renewed the lease on it's own or indicated that the line is back up.

        Not sure if there is another setting I need to tweak to have pfSense periodically tickle the interface to see if it's alive again and/or renew the DHCP lease.

        1 Reply Last reply Reply Quote 0
        • R
          robtoronto
          last edited by

          Ok , The only thing I see that is missing is your DNS failover. You should have a rule on the floating tab, with both WAN interfaces set to DNS port I will include a screenshot of my rule.. You will also need to then go to your general settings and set the DNS to none. I will show you in the shots.

          also could you include one of the Gateway Group? Are both gateways set to Tier 1 ?

          I know in the lab I have failed over static gateways with no issues. It's static , Once it comes back online the interface should come up and new traffic should start getting routed via that gateway also.

          When you say , Physically disconnect WAN2 , let it failover to WAN1. Wait 5 minutes , Don't clear any states just let the TTL's expire in ARP table..ect..

          Now , Re-Connect WAN2 , Check PFsense to see if the gateway goes ONLINE. If the gateway goes online..

          Go to a host, Go to say.. www.dnsleak.com and Refresh until you get both your IP's to show. ( If you refresh 40 times and nothing happens…then..)

          Now the issue that Tim talks about I am not sure and unable to confirm right now , I have a lab I can try today with 2 cable modems running on different gateways with a DHCP lease. I will let you know my findings.

          WiFi

          LAN

          Got Speed?

          1 Reply Last reply Reply Quote 0
          • R
            robtoronto
            last edited by

            WiFi

            LAN

            Got Speed?

            1 Reply Last reply Reply Quote 0
            • Y
              youssef24eg
              last edited by

              i have made the dns rule but no difference at all and for the DNS gateway , i don't have the gateway tab in my pfsense beside DNS servers

              but i have noticed that from seeing the next hope after the pfsense which is a cisco router

              after i bring back the second line online no packets hits this line at all

              and all the traffic goes to the first line , and all the icmp used in monitoring is generated from one interface
              is that normal . after one line goes down all the icmp traffic used in monitoring goes to one line
              so how it could check if the second line is come back online ??

              notes: the dsl lines are not directly attached to pfsense , and their is a cisco router after the pfsense and after it the 2 dsl lines

              so why the pfsense is insisting that the wan is offline and it didn't came back online

              1 Reply Last reply Reply Quote 0
              • Y
                youssef24eg
                last edited by

                i figure out that it comes back online but after a few hours

                1 Reply Last reply Reply Quote 0
                • R
                  robtoronto
                  last edited by

                  Does it come back online if you renew the interface ? or disable and then re-enable it?

                  WiFi

                  LAN

                  Got Speed?

                  1 Reply Last reply Reply Quote 0
                  • Y
                    youssef24eg
                    last edited by

                    it comes back if i enter to the wan interface (the down one) and i just click save and apply changes without made any configuration.

                    1 Reply Last reply Reply Quote 0
                    • R
                      robtoronto
                      last edited by

                      Post a screenshot of your gateways and gateway groups.. are both tier 1?

                      WiFi

                      LAN

                      Got Speed?

                      1 Reply Last reply Reply Quote 0
                      • Y
                        youssef24eg
                        last edited by

                        YES , tier 1

                        1.GIF
                        1.GIF_thumb
                        2.GIF
                        2.GIF_thumb

                        1 Reply Last reply Reply Quote 0
                        • pttP
                          ptt Rebel Alliance
                          last edited by

                          Your WAN is on 10.24.250.x Net & your WAN2 is on 10.24.250.x Net also, are you sure that both Netwworks doesn't overlap ? Which network mask do you have on each WAN ?

                          Maybe you need to elaborate a bit more about your setup…

                          1 Reply Last reply Reply Quote 0
                          • C
                            cmb
                            last edited by

                            @ptt:

                            Your WAN is on 10.24.250.x Net & your WAN2 is on 10.24.250.x Net also, are you sure that both Netwworks doesn't overlap ? Which network mask do you have on each WAN ?

                            Internal NIC on 10.24.250.x as well. Unless those are small subnet masks, all 3 NICs may have overlapping subnets.

                            1 Reply Last reply Reply Quote 0
                            • Y
                              youssef24eg
                              last edited by

                              it's all /29 subnet mask

                              1 Reply Last reply Reply Quote 0
                              • Y
                                youssef24eg
                                last edited by

                                i have another problem now that i found that squid proxy is not working with multi wan when i enable it and i enable proxy on lan and loopback interfaces :(

                                1 Reply Last reply Reply Quote 0
                                • A
                                  Abwer
                                  last edited by

                                  I have the same problem with multi-WAN switching. Please help.

                                  1 Reply Last reply Reply Quote 0
                                  • S
                                    shavenne
                                    last edited by

                                    Same problem here.
                                    My ISP disconnects every 24 hours automatically. So WAN1 goes offline, comes back after a few seconds, but PfSense is still saying 'Offline'. I've set the monitor IP to an IP which is definitely pingable.

                                    But I have to say I'm using PfSense 2.1-BETA1 (March 28).

                                    Any ideas to solve this??

                                    1 Reply Last reply Reply Quote 0
                                    • S
                                      sawmill
                                      last edited by

                                      Have same problem here.
                                      When I dissable Gateway Monitoring it works.

                                      I have tried a high down ping time, ms and packetloss but with same problem.

                                      I am running 2.0.3

                                      1 Reply Last reply Reply Quote 0
                                      • First post
                                        Last post
                                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.