Hi,

We'd like to setup 2.1 with two different WAN interfaces, each being
exclusively used by two sets of several LAN's.

So what we've done is create first WAN (WAN1) and set its gateway (GW1)
as the default one.

And now we've added second WAN (WAN2) and its gateway (GW2)

So we've got NETS1 as LAN1+LAN2+DMZ and NETS2 as LAN4+LAN5

Since GW1 is the default gateway, without doing anything all traffic
will go through it.

We'd like to have NETS1 to never go through GW2, but NETS2 to never go
through GW1, and always go through GW2.

NETS2 should use the pfSense box as its DNS server, which in turn uses DNS
servers located in NETS1, and NETS2 should be able to access to some
machines in DMZ without going through GW2, but directly through pfSense.

On top of that we want to use manual NAT outbound rules and use NATNETS2
IP Address (which is a CARP type interface address) as the NAT address
when NATting clients from NETS2. This address is also defined as the
tcp_outgoing_address for clients from NETS2 in pfSense's Squid
configuration.

Is there an HOWTO about doing this sort of things, or could anyone give
us some hints ?

What we've found so far are only documents about multi-wan with load
balancing or failover, and while we want failover on all our LANs, we
specifically don't want this on our WANS : because of legal reasons
clients from NETS2 are now allowed to use GW1.

Thanks in advance for any help on this matter

--
Jérôme Alet - <[email protected]> - Direction du Système d'Information
      Université de la Nouvelle-Calédonie - BPR4 - 98851 NOUMEA CEDEX
   Tél : +687 290081                                  Fax : +687 254829
_______________________________________________
List mailing list
[email protected]
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to