Re: [pfSense Support] Trying to setup pfsense with 3 WAN connections

2005-08-19 Thread Scott Ullrich
Outgoing load balancing is not ready yet.

On 8/19/05, Moacyr Leite da Silva <[EMAIL PROTECTED]> wrote:
>  
>  
> Hi there, 
>   
> Need tips for outgoing load balance and source routing with pfsense and 2
> and 3 WAN connections. 
>   
> I tryed to config this scenario com with 2 pfsense box  and with 1 pfsense
> box. With 2 gateways and using pfSense-LiveCD-0.76.4.iso I could have
> failover work but without "sync" of pf and nat rules. Acctually when I put
> any firewall or nat rule I started to have Acknowledge messages. 
>   
>  
> After I tryed 3 WAN connections in one box just to have source routing for
> inbound connection but it also doesnt work. Or to be fair, it works with WAN
> and not for OPT1 or OPT2. 
>   
> I need at least source routing for 3 WAN and 1 LAN, if possible outgoing
> load balance. Any tip or trick? 
>   
> rules.debug and config.xml is attached for your verify. 
>   
> My Best Regards, 
>   
> Thanks 
> Moacyr 
>   
> -
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
> 
> 
>

-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



[pfSense Support] Trying to setup pfsense with 3 WAN connections

2005-08-19 Thread Moacyr Leite da Silva




Hi there,
 
Need tips for outgoing load balance and source routing with pfsense and 2 
and 3 WAN connections.
 
I tryed to config this scenario com with 2 pfsense box  and with 
1 pfsense box. With 2 gateways and using pfSense-LiveCD-0.76.4.iso I could have failover work but without 
"sync" of pf and nat rules. Acctually when I put any firewall or nat rule I 
started to have Acknowledge messages. 
 

After I tryed 3 WAN connections in one box just to have source 
routing for inbound connection but it also doesnt work. Or to be fair, it 
works with WAN and not for OPT1 or OPT2.
 
I need at least source routing for 3 WAN and 1 LAN, if 
possible outgoing load balance. Any tip or 
trick?
 
rules.debug and config.xml is attached for your 
verify.
 
My Best Regards,
 
Thanks
Moacyr
 


sargon.rules.debug
Description: Binary data


	1.9
	
	metallic
	
		
		normal
		priq
		sargon
		caprioli.com.br
		
		admin
		$1$ezf5Q3eo$0qtZnpwULuwZa56/65fRp/
		America/Sao_Paulo
		300
		pool.ntp.org
		
			http
		
		200.204.0.10
		200.204.0.138
		200.158.122.1
	
	
		
			vr0
			192.168.0.18
			24
			
			
			100
			Mb
		
		
			rl0
			
			200.158.122.28
			26
			
			on
			
			
			
			512
			
			
			priq
		
		
			rl1
			WANT
			
			
			201.28.106.114
			29
			201.28.106.113
			
			
		
		
			rl2
			WANE
			
			
			200.231.8.10
			26
			200.231.8.1
			
			
		
	
	
	
		
		
		
	
	
		
		
		
		
		
	
	
		
		
		
		
		
	
	
		dyndns
		
		
		
		
	
	
		
			
192.168.0.50
192.168.0.254
			
		
	
	
		
		
		
		
	
	
	
		
	
	
		
		
		public
	
	
		
			
		
	
	
	
	
		
		
			

	192.168.0.0/24


Auto created rule for lan

wan

	


			
			

	192.168.0.0/24




opt1

	


			
			

	192.168.0.0/24




opt2

	


			
			
		
		
			tcp
			5900
			192.168.0.29
			5900
			opt1
			
		
		
			tcp
			5900
			192.168.0.29
			5900
			wan
			
		
		
			tcp
			5900
			192.168.0.29
			5900
			opt2
			
		
	
	
		
			wan
			tcp
			

			
			
192.168.0.29
5900
			
			NAT 
		
		
			opt2
			tcp
			

			
			
192.168.0.29
5900
			
			NAT 
		
		
			opt1
			tcp
			

			
			
192.168.0.29
5900
			
			NAT 
		
		
			pass
			lan
			
			
			
			keep state
			
			
			
			udp
			
lan
			
			

500
			
			
		
		
			pass
			lan
			
			
			
			keep state
			
			
			
			ah
			
lan
			
			

			
			
		
		
			pass
			lan
			
			
			
			keep state
			
			
			
			esp
			
lan
			
			

			
			
		
		
			pass
			lan
			
			
			
			keep state
			
			
			
			
lan
			
			

			
			Default LAN -> any
		
		
			pass
			lan
			
			
			
			keep state
			
			
			
			
lan
			
			

			
			
			201.28.106.113
		
		
			pass
			lan
			
			
			
			keep state
			
			
			
			
lan
			
			

			
			
			200.231.8.1
		
	
	
	
		
		
	
	
	
	
	
	
		/firewall_nat_out.php made unknown change
		1124327274
	


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]