Multi-wan failover... I can't have a Tier 1 IPv4+IPv6 gateway combo?

Started by TheLinuxGuy, March 12, 2021, 07:24:48 PM

Previous topic - Next topic
I have two WAN interfaces and looking to setup failover - I have configured an IPv4 and IPv6 gateway per each WAN... so we have a total of 2 ISP/WAN and 4 gateways.

When trying to define "Tier 1" it looks like I can't select Tier 1 more than once - how can I ensure that both IPv4/IPv6 traffic both uses WAN1 until it fails then defaults to WAN2?

Maybe I am confused because each WAN link has a gateway monitor for each IP protocol but I think what I am trying to achieve is simple. I did try to create "a gateway group of another group" but alas that isn't possible lol

What about two gateway groups, one for IPv6 and one for IPv4?
OPNsense virtual machine images
OPNsense aarch64 firmware repository

Commercial support & engineering available. PM for details (en / de).

Quote from: Maurice on March 12, 2021, 10:19:25 PM
What about two gateway groups, one for IPv6 and one for IPv4?

This is what I ended up having to do, the only drawback is that my firewall rules which are IPv6/IPv4* can't have a single gateway. I had to split it into multiple rules for each IP protocol.

Wonder if this is worth a feature request or not

Quote from: TheLinuxGuy on March 13, 2021, 01:58:54 AM
Wonder if this is worth a feature request or not

I don't think so. That's how it's meant to be configured, all good. :)

Mixing IPv6 and IPv4 in a gateway group wouldn't really make sense. You can't fail over from one protocol to the other and you can't load balance between them. So you would essentially end up with two groups within a group. And combined IPv4+IPv6 firewall rules don't support policy based routing anyway, whether you use gateway groups or not.

Cheers

Maurice
OPNsense virtual machine images
OPNsense aarch64 firmware repository

Commercial support & engineering available. PM for details (en / de).