1
High availability / WAN Failover DNS
« on: May 01, 2023, 06:04:10 pm »
I've upgraded a site which used to be on PfSense onto Opnsense.
The site consists of 1 x FFTTP 1GBs Fibre and a backup ADSL connection (you can thank BT/Openreach for not being able to provide anything better in the city centre).
I've followed the normal instructions in configuring a WAN failover setup but my main issue is that DNS seems to come to a grinding halt after 10/20 minutes of enabling the last set in routing all traffic via the failover gateway group.
I have floating allow DNS rules in place, I'm a little stumped what it might be.
I've currently disabled the firewall rule to route all traffic via the failover gateway group, but I've also noticed regardless of this that occasionally on a normal session, a user will be browsing and their browser errors out saying no internet and then seconds later, loads the page.
As I mentioned prior, this is obviously a DNS issue but everything is configured as per the guides and basically the same as I had with the previous working PfSense install.
I have two separate DNS servers defined per WAN connection so I'm really struggling.
I'm one step away from re-installing PfSense but I really don't want to.
The site consists of 1 x FFTTP 1GBs Fibre and a backup ADSL connection (you can thank BT/Openreach for not being able to provide anything better in the city centre).
I've followed the normal instructions in configuring a WAN failover setup but my main issue is that DNS seems to come to a grinding halt after 10/20 minutes of enabling the last set in routing all traffic via the failover gateway group.
I have floating allow DNS rules in place, I'm a little stumped what it might be.
I've currently disabled the firewall rule to route all traffic via the failover gateway group, but I've also noticed regardless of this that occasionally on a normal session, a user will be browsing and their browser errors out saying no internet and then seconds later, loads the page.
As I mentioned prior, this is obviously a DNS issue but everything is configured as per the guides and basically the same as I had with the previous working PfSense install.
I have two separate DNS servers defined per WAN connection so I'm really struggling.
I'm one step away from re-installing PfSense but I really don't want to.