Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    LAN users have no internet access over second WAN

    Scheduled Pinned Locked Moved Routing and Multi WAN
    3 Posts 2 Posters 576 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      sokomm
      last edited by

      I have 2 Wan connections and one lan, pfsense can ping to internet over both connections, but when i change lan rule to use second wan gateway (WAN2) lan users have no internet access, when i set it back to default gateway (WAN) everything work fine.

      My pfSense box is setup as OpenVPN server, Client 1 and 2 vpn to and then do remote desktop to the server, Clients 3 and 4 have access to the internet over pfsense.

      I am trying to root all VPN traffic over WAN and use WAN2 for all internet traffic from lan.
      ![net (1) (1).png](/public/imported_attachments/1/net (1) (1).png)
      ![net (1) (1).png_thumb](/public/imported_attachments/1/net (1) (1).png_thumb)

      1 Reply Last reply Reply Quote 0
      • S Offline
        sokomm
        last edited by

        Here is my current setup

        1.png
        1.png_thumb
        2.png
        2.png_thumb
        3.png
        3.png_thumb
        4.png
        4.png_thumb
        5.png
        5.png_thumb
        6.png
        6.png_thumb
        7.png
        7.png_thumb
        8.png
        8.png_thumb
        9.png
        9.png_thumb

        1 Reply Last reply Reply Quote 0
        • DerelictD Offline
          Derelict LAYER 8 Netgate
          last edited by

          You need to define a gateway group and set the gateway for your default pass any rule on LAN to the group.

          https://doc.pfsense.org/index.php/Multi-WAN

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.