[pfSense Support] Pfsense problem..

2008-04-18 Thread Daniel Rapp
Hi, we have two firewalls running pfsense, theay are running version 1.2-rc2 
embedded, they have ben running like this for 6 month.

The problem started one day ago, no changes has bean made to the network.. But 
there was a peak in traffic about the same time as the backup firewall went 
down.. 
The firewalls are set up as bridges, the plan as to have failover but could not 
get that to work and dident have time to find the prolem so one (the backup) 
has the bridge function turnd off, but the master syncs the rules to it.. 

The backup firewall was inaccessable from the internet and from the lan side.. 
But there was no problem connecting a serial cable and getting the menu i could 
ping to the outside..  After i rebooted it it went down again after two hours.

Now i have upgraded the software to 1.2 embedded...

Any thoughts ? 


Some loggs:

System.log

pr 18 12:15:30 probe043 last message repeated 133 times
Apr 18 12:15:30 probe043 kernel: arp: xx.xx.3.74 is on em6 but got reply from 02
:bf:52:63:xx:xx on em0
Apr 18 12:15:31 probe043 kernel: arp: xx.xx.3.65 is on em6 but got reply from 00
:0c:db:fd:yy:yy on em0
Apr 18 12:16:04 probe043 last message repeated 18 times
Apr 18 12:18:14 probe043 last message repeated 313 times
Apr 18 12:28:17 probe043 last message repeated 918 times
Apr 18 14:28:14 probe043 last message repeated 212 times
Apr 18 14:38:13 probe043 last message repeated 864 times
Apr 18 14:48:24 probe043 last message repeated 581 times
Apr 18 14:58:14 probe043 last message repeated 857 times
Apr 18 15:08:24 probe043 last message repeated 661 times
Apr 18 15:18:18 probe043 last message repeated 897 times
Apr 18 15:28:16 probe043 last message repeated 839 times
Apr 18 15:38:23 probe043 last message repeated 945 times
Apr 18 15:48:21 probe043 last message repeated 426 times
Apr 18 15:57:40 probe043 login: login on console as root
Apr 18 15:58:25 probe043 last message repeated 470 times
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]
[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL PROTECTED]@[EMAIL 
PR

[pfSense Support] Bridge hw failover question

2007-10-26 Thread Daniel Rapp
Hi, i am having some problems with running two pfsense firewalls as bridges, 
the switches in fron and behind both support STP but it is not activated.
I have ipadresses both on the external interfaces (fo management) and the 
internal (just for fun) and i have a external carp interface.. dont think i 
need it but the rules/states seemd to sync better.. 


When i activate the filtering bridge and bridge the interface it works for a 
while then the traffic going in to the servers start going rely slow.. 
But no errors on the switches.. 

 If i disabe one of the bridges the problem fixes it self.. 


Any toughts ? maby activating STP on the ports the firewalls are on on the 
switches ?


Bytheway.. the hardware we are using NA-820 from www.axiomtek.com, some 
interrupt storms but oher then that it works great..  

pfsense version: pfSense-1.2-RC2-Embedded.img.gz




Mvh
Daniel Rapp
Incabus Systems AB
Mobil:  + 46 708 31 80 75
Växel:  + 46 8 556 964 60
[EMAIL PROTECTED]
http://www.incabus.com


smime.p7s
Description: S/MIME cryptographic signature