Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Help with multi-wan

    Scheduled Pinned Locked Moved Routing and Multi WAN
    9 Posts 2 Posters 3.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      rgomes
      last edited by

      i'm trying to setup a multi-wan configuration with a dsl and cable connection connected directly to pfsense, dsl is the main wan and uses pppoe, the cable uses dhcp and is connected to opt2. So both my public ip's are on pfsense.
      I followed the multiwan1.2 tutorial but it only explains the configuration when both wans are on router mode and pfsense accesses it through private ips.
      So i would like to know if it's possible to use the methods explained in that tutorial in this setup since i'm getting some troubles trying to setup the rules.
      Thanks

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG
        GruensFroeschli
        last edited by

        It's not different.
        You just define the gateways in the balancer pool.
        No difference if the gateway are in local address space or directly public.

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • R
          rgomes
          last edited by

          Thanks, but in the DMZ1 rule on the tutorial it says the destination should be network 192.168.0.0/24 and DMZ2 should be WAN2 subnet, the DMZ2 rule I can setup correctly with WAN2 subnet as destination but on DMZ1 rule what should I place as destination?

          1 Reply Last reply Reply Quote 0
          • GruensFroeschliG
            GruensFroeschli
            last edited by

            I dont know which tutorial you're refering to, hence i dont have a clue what you just were writing about ^^"

            We do what we must, because we can.

            Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

            1 Reply Last reply Reply Quote 0
            • R
              rgomes
              last edited by

              lol :D
              the tutorial that is available at:

              http://doc.pfsense.org/index.php/MultiWanVersion1.2#Basic_Firewall_Rules

              1 Reply Last reply Reply Quote 0
              • GruensFroeschliG
                GruensFroeschli
                last edited by

                This rule is above the balancer-rule.
                The balancer rule balances connections over both WAN's.
                If you want to access the immediate private subnet in front of pfSense you need another rule that doesnt have as gateway the balancing-pool, but the interface directly.
                The rule is just there that you still have access to the imediate private subnet in front of pfSense.

                Since you dont have private subnets in front of pfSense you dont need such a rule.

                We do what we must, because we can.

                Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

                1 Reply Last reply Reply Quote 0
                • R
                  rgomes
                  last edited by

                  Thanks, i solved the problem i was having, i had enabled advanced outbound nat according to another tutorial but it's not needed on this one, it is working now it seems.
                  Just another doubt, i'm testing failover and it seems to be working, but according to some traceroute tests, the failover takes about 1m more or less to happen, that is common right ?

                  1 Reply Last reply Reply Quote 0
                  • GruensFroeschliG
                    GruensFroeschli
                    last edited by

                    What is 1m?

                    It should be pretty immediate.
                    What do you have as monitor IPs?

                    We do what we must, because we can.

                    Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

                    1 Reply Last reply Reply Quote 0
                    • R
                      rgomes
                      last edited by

                      ok i've been testing some more and after I disconnect one of the WANs it gets marked as offline almost imediately on the load balancer status, but when I do some traceroutes, sometimes it still tries to go through the link that is down.
                      i'm using the dns servers as monitor ips.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.