NAT and separate gateways

  • I have an existing pfSense setup - works fine, one LAN, one WAN link.

    I have a pair of new pfSense devices that I'm setting up for redundancy, to replace this existing setup - and I'm trying to wire in an extra Internet link, so Multi-WAN.  I tested it and it worked; hosts inside were able to reach the internet - but NAT, both by port and 1:1, did not work.

    I tried the "Bypassing Policy Routing" mentioned here (, but that didn't make a difference.

    Our gateway for devices on the network is a Cisco switch that forwards all traffic to the pfSense machine - my suspicion is that messes up things for NAT.  Does anyone else have a similar scenario?

