Re: problems with carp based firewall - all connections are suspended after falling back from failover

2010-04-10 Thread tom baecker
> This can happen if the list of addresses, netmasks vhid and password > of an carp interface is not exactly the same on the two hosts. > >-Otto I'm confused, because if I reboot in this case the Secondary, all carp interfaces swiched to Master state on primary, without any packet loss. I

Re: problems with carp based firewall - all connections are suspended after falling back from failover

2010-04-10 Thread tom baecker
> net.inet.carp.preempt Allow virtual hosts to preempt each other. > Set it to 0 and give it a try. > I try it, and after the primary comes up again - the established connections stay active - great! But 1 of 3 carp interfaces dont fall back to the Master mode at the Primary: carp:

problems with carp based firewall - all connections are suspended after falling back from failover

2010-04-10 Thread tom baecker
Hello, I've setup a openbsd-ha firewall, based on the http://www.openbsd.org/faq/pf/carp.html. If the master goes down - the backup system become the Master rule. All established connections are in sync and stay active - so thats perfect. But if the original Master system comes back again and fal

problems with carp based firewall - all connections are suspended after falling back from failover

2010-04-09 Thread tom baecker
Hello, I've setup a openbsd-ha firewall, based on the http://www.openbsd.org/faq/pf/carp.html. If the master goes down - the backup system become the Master rule. All established connections are in sync and stay active - so thats perfect. But if the original Master system comes back again and fal