I have two locations each with a pfsense 2.0 box and internet
connection. Additionally, the two locations are joined by a wireless
backhaul that carries multiple vlans. Each pfsense box acts as a
failover gateway for the other. See link for screenshot:

http://tfcg.co/pfsense.png

pfsense A has a static route to the LAN of pfsense B (192.168.4.0/24
via 192.168.6.254)
pfsense B has a static route to the LAN of pfsense A (192.168.85.0/24
via 192.168.6.101)

When host slab connects to host chunk by ssh, all is well (routed via
pfsense B static route and OPT1; routed pfsense A OPT1 to LAN).
When host pfsense B connects to host rip by ssh, all is well (layer 2
via pfsense B WAN2).
When host slab connects to host rip by ssh, the session hangs quickly,
ie, 0.1-2s (NAT via pfsense B WAN2)

rip and chunk are both Ubuntu hosts. I'm not sure offhand if slab is
running Windows/putty or Ubuntu/ssh.

pfsense B uses the "normal" Firewall Optimization option. None of the
other boxes in the Firewall:Advanced section are checked.

Do I need to disable scrub? Clear invalid DF bits? I'm not sure why I
would see this problem when doing NAT on pfsense B, but not otherwise.
If my outbound NAT were setup incorrectly I don't think the ssh
session would connect at all, would it?
_______________________________________________
List mailing list
[email protected]
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to