Re: [pfSense] Gateway on a gateway...

2014-05-17 Thread faisal.gill...@akesp.org
Thank you for replying MoJo .. So you recommend me removing pfsense acting as static routes router with real hardware routers ? Or ur asking me to add dynamic routing functionality to pfsense ? Thanks Faisal Sent from my HTC - Reply message - From: mOjO m...@thegeekclub.net To:

Re: [pfSense] Gateway on a gateway...

2014-05-17 Thread J. Echter
Am 17.05.2014 08:25, schrieb faisal.gill...@akesp.org: Thank you for replying MoJo .. So you recommend me removing pfsense acting as static routes router with real hardware routers ? Or ur asking me to add dynamic routing functionality to pfsense ? Thanks Faisal Sent from my HTC

Re: [pfSense] Gateway on a gateway...

2014-05-17 Thread Klaus Wunder
Hello, you can use pfSense as a BGP Router. There is a paket you can install. Also you can ask your ISP about the use of the Dynamic Routing Protokoll. Kind Regards Klaus Am 17.05.2014 um 20:14 schrieb J. Echter j.ech...@echter-kuechen-elektro.de: Am 17.05.2014 08:25, schrieb

Re: [pfSense] Gateway on a gateway...

2014-05-17 Thread Espen Johansen
Tell your provider to do what mojo said. Or set it up yourself if you have access to the provider routers. Third option is VPN between the pfsense boxes so you can override the routing. 17. mai 2014 21:53 skrev Klaus Wunder kl...@net-wunder.de følgende: Hello, you can use pfSense as a BGP

Re: [pfSense] Gateway on a gateway...

2014-05-16 Thread faisal.gill...@akesp.org
When i try to do this .. Pfsense gives me error that firewall is not local to my subnet which is .. 172.16.1.16 on subnet 255.255.248.0 Branch router is on 172.16.11.0/24 which connects to firewall subnet via MPLS provider router i.e 10.152.8.117/30 So what to do ? Regards Sent from my HTC

Re: [pfSense] Gateway on a gateway...

2014-05-16 Thread mOjO
On the pfSense firewall? Nothing. You need to change your routers. Ideally, your MPLS routers are using BGP. Then on the site 1 router under the BGP section you can tell it to advertise the 0.0.0.0 route by adding network 0.0.0.0 and make sure you have a static route on that router for 0.0.0.0