Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - ArbosIT

#1
After correctly* configuring MultiWAN and change the Gateway on the LAN-Rule from Default to this MultiWAN Gateway, some of the Clients (and Servers) can randomly not communicate with the Internet at all.
(* i hope correctly - I used the manual: https://docs.opnsense.org/manual/how-tos/multiwan.html)

This is the only opnsense Firewall I have with MultiWAN / two Internet Lines connected, so I can not check this on any other Opnsense.

I get this failure messages in the Gateway Log File:
2022-10-05T07:40:36   Warning   dpinger   send_interval 1000ms loss_interval 2000ms time_period 60000ms report_interval 0ms data_len 0 alert_interval 1000ms latency_alarm 500ms loss_alarm 20% dest_addr 213.160.40.2 bind_addr 213.160.63.81 identifier "WAN_1_GGMAUR_DHCP "   
2022-10-05T07:40:36   Warning   dpinger   send_interval 1000ms loss_interval 2000ms time_period 60000ms report_interval 0ms data_len 0 alert_interval 1000ms latency_alarm 500ms loss_alarm 20% dest_addr 195.186.4.162 bind_addr 109.164.201.57 identifier "WAN_2_SWISSCOM_GW "
(GGAMAUR and Swisscom are both Internet Providers - so both WAN Interfaces named on them)

In the Firewall Rule Logs there are non packets logged from this clients that can not connect to the Internet.

If a client randomly has this problem, it could be that he can communicate again 5 minutes later and again a few minutes later he can not communicate again.

I am hoping for any help of you, I am mostly using other Firewalls than Opnsense yet, so I am not specialist on this system - but I have long knowledge of Firewalls and built MultiWAN already with Zyxel, Watchguard, SonicWall, etc.
#2
Hi Levin,

Did you ever get any answer to this or could you resolve this successfully?
We are facing an issue that could be related. We also set up gateway group with same weight(both tier 1) and Sticky Connection - and some of our clients randomly can not communicate with the internet. A client can be hit by that for 5 minutes and then it works for another 5 minutes and than it is affected again for some time....
I did not try yet to disably sticky connections yet - as I need a maintenance window first from my customer, before I turn on Multi-WAN again.
As soon as I am changing the Gateway back to "Default" again on the LAN Rule, I do not have any connection breaks anymore - but certainly also Multi-WAN not working then - as it need to have the MultiWAN Gateway set on the Firewall Rule.