Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Tinc, multi-wan failover, gateway switching

    Scheduled Pinned Locked Moved pfSense Packages
    4 Posts 4 Posters 1.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      Vetal
      last edited by

      I've replaced a bundle of cumbersome (OpenVPN/p2p + Quagga OSPF) to use [tink + OSPF].

      I am very happy with result. However, there is a shortcoming: no way for tinc to use gateways group, the way OpenVPN does.

      I've managed to make some intermediary solution by using a Gateway switching (System -> Advanced -> Miscellaneous -> Load Balancing -> Enable default gateway switching

      That helps, but missing more powerful failover functionality.

      I've done some tcpdump inspection, it looks like tinc works on default gateway (WAN Interface). So there is no way to reroute it's traffic with LAN firewall

      Hopefully, it works like OpenVPN does, OpenVPN -> Client -> Interface -> [Gateway group]

      Is there a way to make it in command line for now?

      C 1 Reply Last reply Reply Quote 0
      • K
        kwilliams
        last edited by

        Hi Vetal,

        Do you happen to have any screenshots of how you got OSPF working with Tinc?

        Thanks!

        1 Reply Last reply Reply Quote 0
        • C
          coreybrett @Vetal
          last edited by

          @vetal Still using tinc? Find a better multi-wan solution for it?

          1 Reply Last reply Reply Quote 0
          • K
            kraduk
            last edited by

            I'm looking into howto do this. It should be tottally possible. The GUI seems to get in the way though with its enforcements. eg you dont seem to be able to create a bridge without any interfaces in. If i could I would be able to have the ip config under pfsenses control, which would allow me to setup ospf in the gui by selecting the bridge interface. I could then just run a ifconfig addm command in the tinc interface up bit to link it all together. No joy, and why cant I have an ipless tinc setup?

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.