CGNAT Link and Proxmox VLANS

thicouto

New Member
Oct 16, 2022
1
0
1
Hi!

I'm going through a strange situation in my infrastructure and I would like to share to understand if anyone has gone through something similar.

I currently have a physical machine with pfSense. This pfSense has 3 ports:

Port A: WAN_1
Port B: WAN_2
Port C: LAN

ISP WAN_1 link is with valid ip.
ISP WAN_2 link is CGNAT.

The LAN port carries the LAN and some VLANs.

The LAN port is being distributed among all nodes of the Proxmox cluster with a simple Port and Forward (unmanaged) switch.

In each VM of Proxmox I insert the TAG of the VLAN created in pfSense and everything works perfectly, I can separate the VMs between the VLANs in a very easy way.

The problem appears when I change the outbound gateway in pfSense...

When the outgoing gateway is WAN_1, everything works perfectly, when it is WAN_2, internet browsing on the VMs is unstable (The VMs are all Windows 10). If I connect a physical machine to the same switch port and forward of the proxmox cluster this problem does not happen.

The only suspicion I have at this moment is because the WAN_2 link is in CGNAT, has anyone faced a similar situation?

Thank you very much!
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!