Failover is breaking my setup.



  • Hi,

    Please excuse my language English is not my native one.

    I've setup Failover gateway group for my two WAN links (different ISP).

    I've assigned WAN1 (faster link) as tier 1 and WAN2 (slower link) as tier 2.

    As soon I will modify my LAN rule in firewall to use this gateway group my pfsense starts to route traffic incorrectly.

    My outgoing traffic is going over WAN1 and incoming traffic is going over WAN2.

    It behaves like some kind of loop as amount of data send and receive over WAN links is almost the same and it increases until it will utilize whole bandwidth.

    Can some body advise me on this as I'm running out of ideas, please?

    Kind regards
    Greg



  • What you're describing should be impossible in a typical multi-WAN setup. When you send out ISP 1, it's with ISP 1's IP(s), and ISP2 out via ISP2's IP(s). You have an atypical scenario like BGP going on?

    Your firewall doesn't, generally speaking, control where traffic comes in to you.



  • Hi,

    These are my settings s and what it is going on. I have followed pfSense documentation.

    My deployment is based on ESXi and pfSense is using one physical appliance fro both WAN connections.

    Kind regards
    Greg