Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Policy Based Routing - Dual WAN/Dual ISP, port forwarded to internal web server

    Scheduled Pinned Locked Moved Routing and Multi WAN
    2 Posts 2 Posters 881 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      dlewis_nepean
      last edited by

      Hi,

      For the last little while I've been struggling to set up some PBR configs on my pfsense box.

      I've done this in straight Linux in the past, and with juniper boxes but so far using the pfsense gui is being a challenge.

      Basically what I want is to route traffic back out the wan that it came in,  therefore allowing me to have my 2 wan connections both port forward port 80/443 into my web server and use the PBR to send the traffic back out the wan that it came in allowing me to serve pages up on both WAN connections. I don't care about load balancing or anything like that.

      Does anyone have a sample config, or a howto or wiki that shows this ? obviously I'm assuming under the firewall rules for each port I should be using the gateway setting to set the appropriate gateway but that doesn't seem to be enough, so I'm obviously missing something.

      Tks,

      Dave

      1 Reply Last reply Reply Quote 0
      • T
        tim.mcmanus
        last edited by

        It should do this with it's default setup.  I have multi-WAN and LAN, and the policies I set up on the WAN side are the same as the WAN2 connection.  Basic rules will route traffic out the same interface it arrived from.  Normally you'd need to create a rule to route out a different interface.

        See the two enclosed screen shots.  Look for port 548 being opened on both the WAN and WAN2 interfaces.  Traffic coming in from either one of these interfaces on port 548 will hit that server and it will also route out the same interface by default.

        ![Screen Shot 2015-04-30 at 9.15.30 AM.png](/public/imported_attachments/1/Screen Shot 2015-04-30 at 9.15.30 AM.png)
        ![Screen Shot 2015-04-30 at 9.15.30 AM.png_thumb](/public/imported_attachments/1/Screen Shot 2015-04-30 at 9.15.30 AM.png_thumb)
        ![Screen Shot 2015-04-30 at 9.15.43 AM.png](/public/imported_attachments/1/Screen Shot 2015-04-30 at 9.15.43 AM.png)
        ![Screen Shot 2015-04-30 at 9.15.43 AM.png_thumb](/public/imported_attachments/1/Screen Shot 2015-04-30 at 9.15.43 AM.png_thumb)

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.