Re: Number of static IP addresses needed for CARP

2010-11-18 Thread Jan Johansson
Jeff Ross jr...@openvistas.net wrote: What can one then use for the IP addresses for the $ext_if of the firewalls? For connection testing. With only one IP assigned to the CARP interface. When it is in BACKUP state you do not have an address on the network and as such you can't check

Re: Number of static IP addresses needed for CARP

2010-11-18 Thread Stuart Henderson
On 2010-11-18, Jan Johansson janj+open...@wenf.org wrote: Jeff Ross jr...@openvistas.net wrote: What can one then use for the IP addresses for the $ext_if of the firewalls? For connection testing. With only one IP assigned to the CARP interface. When it is in BACKUP state you do not have an

Re: Number of static IP addresses needed for CARP

2010-11-18 Thread Steven Surdock
-Original Message- From: owner-m...@openbsd.org [mailto:owner-m...@openbsd.org] On Behalf Of Stuart Henderson On 2010-11-18, Jan Johansson janj+open...@wenf.org wrote: Jeff Ross jr...@openvistas.net wrote: What can one then use for the IP addresses for the $ext_if of the

Re: Number of static IP addresses needed for CARP

2010-11-18 Thread Jeremy Chase
On Thu, Nov 18, 2010 at 2:15 PM, Steven Surdock ssurd...@engineered-net.com wrote: -Original Message- From: owner-m...@openbsd.org [mailto:owner-m...@openbsd.org] On Behalf Of Stuart Henderson On 2010-11-18, Jan Johansson janj+open...@wenf.org wrote: Jeff Ross

Number of static IP addresses needed for CARP

2010-11-17 Thread Jeff Ross
Hi all, I know this is a dumb-ass question but I've read the FM (including the new Book of PF 2) and there is a basic something I still don't understand about CARP. Right now I have a small network with 1 static IP and 1 firewall. I have a cat5 cable running directly from the cable modem

Re: Number of static IP addresses needed for CARP

2010-11-17 Thread Steven Surdock
-Original Message- From: owner-m...@openbsd.org [mailto:owner-m...@openbsd.org] On Behalf Of Jeff Ross Subject: Number of static IP addresses needed for CARP ... I understand that I'll need to drop a small switch between the cable modem and the redundant firewalls but what

Re: Number of static IP addresses needed for CARP

2010-11-17 Thread Jeff Ross
On 11/17/10 13:15, Steven Surdock wrote: -Original Message- From: owner-m...@openbsd.org [mailto:owner-m...@openbsd.org] On Behalf Of Jeff Ross Subject: Number of static IP addresses needed for CARP ... I understand that I'll need to drop a small switch between the cable modem

Re: Number of static IP addresses needed for CARP

2010-11-17 Thread Luca Corti
Il giorno 17/nov/2010, alle ore 22.49, Jeff Ross ha scritto: I don't think Bresnan is going to take kindly to me just grabbing a couple of IPs next to my static IP. If it really doesn't matter then *that's* the source of my confusion. You don't need to assign an IP address to each physical

Re: Number of static IP addresses needed for CARP

2010-11-17 Thread Jeff Ross
On 11/17/10 15:22, Luca Corti wrote: Il giorno 17/nov/2010, alle ore 22.49, Jeff Ross ha scritto: I don't think Bresnan is going to take kindly to me just grabbing a couple of IPs next to my static IP. If it really doesn't matter then *that's* the source of my confusion. You don't need to

Re: Number of static IP addresses needed for CARP

2010-11-17 Thread Rod Whitworth
On Wed, 17 Nov 2010 23:23:16 +0100, Luca Corti wrote: Il giorno 17/nov/2010, alle ore 22.49, Jeff Ross ha scritto: I don't think Bresnan is going to take kindly to me just grabbing a couple of IPs next to my static IP. If it really doesn't matter then *that's* the source of my confusion. You

Re: Number of static IP addresses needed for CARP

2010-11-17 Thread Luca Corti
Il giorno 17/nov/2010, alle ore 23.43, Rod Whitworth ha scritto: I've used RFC1918 addresses for each on the WAN facing NICs and let carp assign the global IP to whichever one should have it. That let me access the individual hosts from the LAN. Why not just assign LAN addresses on the LAN