Dual wan setup semi succesfull, confused..



  • Dear gurus and routing masters.

    First of all, thanks to the developers, for pfsense, it rocks. ;D

    I'm puzzled with my setup. ???

    Goal.  WAN takes all the traffic, OPT1 takes only traffic from LANip 192.168.1.54 (voip pbx).

    Setup:
    WAN, is a static Point to point link with a provider, they give me public IP and gateway
    OPT1, is DHCP, comes from a linksys wrt54gs, doing PPPoE authentication and DMZs the IP given to PF sense, which is 192.168.1.101
    LAN, has DHCP on, shooting IPs from 192.168.1.60 to 254
    ipPBX, has static IP 192.168.1.54

    Firewall:
    NAT, outbound manual, duplicated the default rule, only with OPT1 in it.
    Rules, created a pass from single IP, 192.168.1.54, via  OPT1.
    Then created some inbounds for administrating and connecting to the ebpx
    FROM OPT1, port 4569, to 192.168.1.54 for inbound iax2 (voice)
    FROM OPT1, port https, to 192.168.1.54 for inbound web admin
    etc..

    Issues.
    When setting up OPT1, if I set to DHCP, and bridge with NONE.
    The firewall rules show the IP 192.168.1.101, what opt1 was given by the linksys doing the pppoe.
    But I can't get internet on 192.168.1.54
    When seting up OPT1, as DHCP, and bridge with LAN & field left blanc
    The firewall rules, show no ip at all
    Bit i CAN get internet form the 192.168.1.54 and traffic does go out via opt1

    MY problem. I can't  have remote phones or iax2 trunks enter via opt1 to 192.168.1.54 and login.
    I have 192.168.1.101 (ip given to opt1) on DMZ.

    Any clues, pointers? need more info? snapshots?
    I'm loosing hair to this one.  :(  Please share your thoughts
    thanks!



  • Okay I'd like to help. Good details but the organization and grammer of your issue as you wrote it leaves a lot to be wanted. Would you mind restating what does work and what doesn't, please?

    I see you are trying to give one WAN all to your pbx, right? The OPT1 port? And when you plug it in your WAN port hangs?



  • Apologies for the grammar, rusty english, and too much coffee.
    Setup diagram http://screencast.com/t/sjw5cQvfL
    Yes, I'm trying to give OPT1 all to the pbx inside the lan.

    When I configure OPT1 in pfsense like
    DHCP, Bridge with NONE; the PBX can't reach the internet.
    When I configure OPT1 in pfsense like
    DCHP, Bridge with LAN; the PBX can reach the internet.

    The problem is I can't reach the PBX from the outside. I need to be able to reach it so phones and trunks, register to it.
    I created rules at Firewall/NAT saying from OPT1, port 4569, pass to 192.168.1.54
    (and several other)

    If you think I'm taking the wrong path and know a simpler trick/setup, I'm all open to suggestions :)
    thanks for taking the time to reply.  8)

    looking forward to this.


Log in to reply