OPNsense Forum

English Forums => General Discussion => Topic started by: Xames81 on December 20, 2018, 09:34:49 pm

Title: MULTIWAN
Post by: Xames81 on December 20, 2018, 09:34:49 pm
I setup a multiwan scenario, all with fixed ips and different monitors for each gateway, but when i change de default all allow rule on LAN with the MULTIWAN gateway it seems all go down, dns, etc... I have the defautl gateway with unbound. I put DNS rule before LAN allow rule too. Anyone with similar issues?

Thanks.
Title: Re: MULTIWAN
Post by: mimugmail on December 20, 2018, 10:16:19 pm
What means all goes down? Need Screenshots of LAN rules and outbound nat
Title: Re: MULTIWAN
Post by: xames on December 21, 2018, 09:58:39 am
in lan rules i only have in order

the antilockout rule
then de DNS rule
then the default allow lan to any rule
then some of vpns.

In the outbound i don't to nothing there, maybe the defaults.
Title: Re: MULTIWAN
Post by: mimugmail on December 21, 2018, 03:06:08 pm
... Need Screenshots ...
Title: Re: MULTIWAN
Post by: xames on December 21, 2018, 04:20:48 pm
attach1
Title: Re: MULTIWAN
Post by: xames on December 21, 2018, 04:21:06 pm
attach2
Title: Re: MULTIWAN
Post by: xames on December 26, 2018, 09:49:57 am
What next?


Enviado desde mi iPhone utilizando Tapatalk
Title: Re: MULTIWAN
Post by: mimugmail on December 26, 2018, 10:07:02 am
Firewall IP is 1.101 and LAN 192.168.1? Can you Ping Firewall IP when Multi WAN enabled?
Title: Re: MULTIWAN
Post by: xames on December 26, 2018, 10:08:05 am
I think i can’t.


Enviado desde mi iPhone utilizando Tapatalk
Title: Re: MULTIWAN
Post by: mimugmail on December 26, 2018, 10:14:13 am
Then your LAN or 1.101 is not in the same network. More Details please for all invloved IPs
Title: Re: MULTIWAN
Post by: xames on December 26, 2018, 10:15:56 am
Lan is 192.168.1.0/24 for example in a client pc the io could be 192.168.1.61

The gateway of this pc 192.168.1.101 (firewall)


Enviado desde mi iPhone utilizando Tapatalk
Title: Re: MULTIWAN
Post by: mimugmail on December 26, 2018, 11:01:42 am
Clone the DNS rule, make it ICMP and test again ...
Then go to console of firewall and try to resolve google.com. If this doesn't work go to System : Settings : General and post screenshot of DNS. You should have two, both bound to a WAN interface
Title: Re: MULTIWAN
Post by: xames on December 26, 2018, 06:02:15 pm
nslookup over cmd on a client pc is resolving, but tracert no, it shows firewall ip, next time out. Ping to firewall ip is good too. In navigation err connection timed out.

But the most curious is that i do that post connected over vpn on the firewall from my house, then its like vpn scenario work good, but no navigation on real pc on the lan.
Title: Re: MULTIWAN
Post by: xames on December 30, 2018, 12:10:26 pm
What i'm doing wrong?
Title: Re: MULTIWAN
Post by: xames on March 06, 2019, 02:13:43 pm
any help?