CGNAT Link and Proxmox VLANS

mainoffice

Member
Oct 16, 2022
1
0
6
Hi!

I'm going through a strange situation in my infrastructure and I would like to share to understand if anyone has gone through something similar.

I currently have a physical machine with pfSense. This pfSense has 3 ports:

Port A: WAN_1
Port B: WAN_2
Port C: LAN

ISP WAN_1 link is with valid ip.
ISP WAN_2 link is CGNAT.

The LAN port carries the LAN and some VLANs.

The LAN port is being distributed among all nodes of the Proxmox cluster with a simple Port and Forward (unmanaged) switch.

In each VM of Proxmox I insert the TAG of the VLAN created in pfSense and everything works perfectly, I can separate the VMs between the VLANs in a very easy way.

The problem appears when I change the outbound gateway in pfSense...

When the outgoing gateway is WAN_1, everything works perfectly, when it is WAN_2, internet browsing on the VMs is unstable (The VMs are all Windows 10). If I connect a physical machine to the same switch port and forward of the proxmox cluster this problem does not happen.

The only suspicion I have at this moment is because the WAN_2 link is in CGNAT, has anyone faced a similar situation?

Thank you very much!