RE: [pfSense Support] CARP - failover inconsistencies

2006-07-13 Thread Alastair Stevens
Title: RE: [pfSense Support] CARP - failover inconsistencies Hi Tom - thanks for this.  I've updated my advertising frequencies, such that all interfaces on "master" are 0, and all interfaces on "backup" are 111, arbitrarily. But it's still not behaving correc

Re: [pfSense Support] CARP - failover inconsistencies

2006-07-13 Thread Scott Ullrich
On 7/13/06, Alastair Stevens <[EMAIL PROTECTED]> wrote: Hi Tom - thanks for this. I've updated my advertising frequencies, such that all interfaces on "master" are 0, and all interfaces on "backup" are 111, arbitrarily. But it's still not behaving correctly. Could this be to do with VHID

Re: [pfSense Support] CARP Load balance

2006-08-24 Thread Scott Ullrich
On 8/24/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: I have 2 ADSL lines each with it's own pfsense box. I have set up CARP to provide a common LAN address shared between the two boxes Should this configuration load balance? At the moment the traffic graphs seem to have all traffic going out

RE: [pfSense Support] CARP Load balance

2006-08-24 Thread Robert Mortimer
> On 8/24/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: > > I have 2 ADSL lines each with it's own pfsense box. > > > > I have set up CARP to provide a common LAN address shared > between the two > > boxes > > > > Should this configuration load balance? At the moment the traffic graphs > > seem to

Re: [pfSense Support] CARP Load balance

2006-08-24 Thread Scott Ullrich
On 8/24/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: No problem. Is it in Head or are you looking for volunteers? I'm still moving on with DDNS for the local DHCP server but I am away to the wilds of Wales (sans computer) for a while so it will be two weeks before I have results. No, I don't

Re: [pfSense Support] CARP Load balance

2006-08-24 Thread Bill Marquette
On 8/24/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: > On 8/24/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: > > I have 2 ADSL lines each with it's own pfsense box. > > > > I have set up CARP to provide a common LAN address shared > between the two > > boxes > > > > Should this configuration l

RE: [pfSense Support] CARP Load balance

2006-08-25 Thread Robert Mortimer
> On 8/24/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: > > > On 8/24/06, Robert Mortimer > <[EMAIL PROTECTED]> wrote: > > > > I have 2 ADSL lines each with it's own pfsense box. > > > > > > > > I have set up CARP to provide a common LAN address shared > > > between the two > > > > boxes > > > >

Re: [pfSense Support] CARP Load balance

2006-08-25 Thread Bill Marquette
On 8/25/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: Carp is the simple way to balance across this setup. Is there a way to use the load balancer on the CAP NIC instead. All examples seem to have a 1 box solution Is the ADSL PPPOE? If so, does the PPPOE terminate on the DSL modem, or the pfS

Re: [pfSense Support] CARP Load balance

2006-08-25 Thread Robert Mortimer
On 8/25/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: Carp is the simple way to balance across this setup. Is there a way to use the load balancer on the CAP NIC instead. All examples seem to have a 1 box solution Is the ADSL PPPOE? If so, does the PPPOE terminate on the DSL modem, or the pf

Re: [pfSense Support] CARP Load balance

2006-08-25 Thread Bill Marquette
On 8/25/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: > You'll want to reboot after making that change. This naturally isn't > supported, but if you understand how carp balancing works, it's still > configurable. This is the case outlined in the Docs Yeah, see, the problem is that most peopl

RE: [pfSense Support] CARP Load balance

2006-09-05 Thread Robert Mortimer
> On 8/25/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: > > > You'll want to reboot after making that change. This naturally isn't > > > supported, but if you understand how carp balancing works, it's still > > > configurable. > > > > This is the case outlined in the Docs > > Yeah, see, the probl

RE: [pfSense Support] CARP Load balance

2006-09-05 Thread Holger Bauer
pport@pfsense.com > Subject: RE: [pfSense Support] CARP Load balance > > > > On 8/25/06, Robert Mortimer > <[EMAIL PROTECTED]> wrote: > > > > You'll want to reboot after making that change. This > naturally isn't > > > > supported, but

Re: [pfSense Support] CARP Load balance

2006-09-05 Thread Bill Marquette
> -Original Message- > From: Robert Mortimer [mailto:[EMAIL PROTECTED] > Sent: Tuesday, September 05, 2006 11:14 AM > To: support@pfsense.com > Subject: RE: [pfSense Support] CARP Load balance > > > > On 8/25/06, Robert Mortimer > <[EMAIL PROTECTED]> wrote: &

Re: [pfSense Support] CARP Load balance

2006-09-05 Thread Scott Ullrich
On 9/5/06, Bill Marquette <[EMAIL PROTECTED]> wrote: Robert has about the _only_ legitimate use for this feature. And an interesting network layout to boot. I suspect we don't allow for duplicate VHIDs though which would be required to make this work. Other than that, in his case, I'd expect th

RE: [pfSense Support] CARP Load balance

2006-09-06 Thread Robert Mortimer
> On 9/5/06, Bill Marquette <[EMAIL PROTECTED]> wrote: > > Robert has about the _only_ legitimate use for this feature. And an > > interesting network layout to boot. I suspect we don't allow for > > duplicate VHIDs though which would be required to make this work. > > Other than that, in his cas

Re: [pfSense Support] CARP Load balance

2006-09-06 Thread Bill Marquette
On 9/6/06, Robert Mortimer <[EMAIL PROTECTED]> wrote: I accept that I have an unusual layout. In some ways it was based on the CARP documentation so it is not a great surprise that it includes "about the _only_ legitimate use for this feature". I am OK with the fact that what I am doing is unsupp

Re: [pfSense Support] CARP address bug

2007-02-16 Thread Scott Ullrich
On 2/16/07, Adam Armstrong <[EMAIL PROTECTED]> wrote: Hi, If I try to edit a CARP virtual IP, it tells me that the VHID is already in use and won't let me save the changes. The result is that every time I change a setting on one of the CARP virtual IPs, I have to change the VHID on every device.

[pfSense Support] CARP problem or not?

2007-03-15 Thread joseph . favia
Hi I've set up 2 PFSENSE machines with CARP and it seems to work well although I find the following messages in the system log of the BACKUP machine : "kernel : arp_rtrequest : bad gateway 111.222.333.444 (!AF_LINK)" "A communications error occurred when attempting XMLRPC sync with 111.222.333.1

[pfSense Support] CARP, pfSense latest snapshot

2007-07-16 Thread Dimitri Rodis
Just tried to replace my m0n0 with the latest snap of pf, and I uploaded the config from the m0n0 box and the upgrade was probably about 95% (Upgrade Issues: I had to fix the Outbound NAT rules due to a syntax error, the WAN interface didn't pick up the Gateway address, and the Virtual IPs were all

[pfSense Support] carp and firewall setups

2007-11-13 Thread Geoff Crompton
Hi, I'm just trying to educate myself about carp, and if pfSense can do what we want. I'm trying out an 1.2RC3-embedded on a pair of net4801 devices. We have a several servers in a datacentre, and two subnets, a /28 and a /27. Our datacenter have said that they can give us an extra /30 for our WA

Re: [pfSense Support] Carp FW Rules?

2008-01-31 Thread Scott Ullrich
On 1/31/08, William Armstrong <[EMAIL PROTECTED]> wrote: > Good Afternoon > I have configured 2 IP virtual in virtual IP as Carp mode. > > I configure the necessary ports in the Nat options for the services > that desire to use. > > In the Internet side all services function ok however I cannot co

Re: [pfSense Support] Carp FW Rules?

2008-01-31 Thread William Armstrong
Thanks a lot. I´ts works now. []´s. -- - = - = - = - = - = - = - = - = - = - <. Of course it runs William David Armstrong <|== Bio Systems Security Networking <' FreeBSD MSN / GT biosystems gmail . com -

[pfSense Support] carp status page wish

2008-02-11 Thread Paul M
Hi, would it be possible to have the carp status page also show the carp description field, as as the moment it's not very informative. AtDhVaAnNkCsE Paul - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-m

Re: [pfSense Support] CARP not working...

2008-09-18 Thread Curtis LaMasters
-Ensure that the admin passwords are the same on both firewalls. -If you have a dedicated set of NICs for sync traffic, ensure that you permit this type of traffic. -Create 2 CARP address (LAN and WAN) -Enable manual outbound NAT and specify the CARP address is your default outbound for your inboun

Re: [pfSense Support] CARP over Serial?

2009-03-18 Thread Chris Buechler
On Wed, Mar 18, 2009 at 7:55 PM, Nathan Eisenberg wrote: > > Is there any provision for doing CARP over serial/SLIP, or do I have to have > a third Ethernet interface? No, because it wouldn't work unless you have a 512 Kb Internet pipe or slower. Serial is *way* too slow to sync states with any

Re: [pfSense Support] CARP over Serial?

2009-03-18 Thread Bill Marquette
Further, CARP doesn't run on a dedicated NIC, pfsync does (and no, it's not required, however it isn't encrypted or authenticated). --Bill Sent from my iPhone On Mar 18, 2009, at 7:01 PM, Chris Buechler wrote: On Wed, Mar 18, 2009 at 7:55 PM, Nathan Eisenberg wrote: Is there any provisi

[pfSense Support] CARP Bug in 1.2.3

2009-04-08 Thread Dimitri Rodis
Currently running: 1.2.3-RC1 built on Wed Apr 1 16:59:10 EDT 2009 Changed the CARP config-- had a redundant member that I removed, so I shut pfsync off. However, I kept getting messages along the top that XMLRPC sync was failing. I checked, and it was disabled--so, I unchecked absolutely ever

Re: [pfSense Support] CARP and Bridging

2009-06-26 Thread Jim Pingle
Joseph Hardeman wrote: > One other question now that I think of it. > > Does CARP work between two firewalls that are running in full Bridge > mode, no NATing done at all, just port blocking on the WAN interface? > We have two firewalls and I want to make sure any states are kept intact > on the c

Re: [pfSense Support] CARP and OpenVPN

2009-08-21 Thread Chris Buechler
On Fri, Aug 21, 2009 at 5:13 AM, Simon Dick wrote: > Are there any plans to get openvpn working well with CARP? I currently > have a 2 pfSense CARP setup with VPN access via openvpn for support > use, but due to the firewall failover, I have to have 2 openvpn conf > files to use depending which fir

Re: [pfSense Support] CARP and OpenVPN

2009-08-21 Thread Simon Dick
2009/8/21 Chris Buechler : > On Fri, Aug 21, 2009 at 5:13 AM, Simon Dick wrote: >> Are there any plans to get openvpn working well with CARP? I currently >> have a 2 pfSense CARP setup with VPN access via openvpn for support >> use, but due to the firewall failover, I have to have 2 openvpn conf >>

[pfSense Support] CARP with captive portal

2009-10-16 Thread Roberto Greiner
Hi, I'm having trouble making captive portal and CARP work togheter. I've set CARP to use the WAN interface for synchronization, and it works fine. Problem is, the moment I enable Captive Portal, the LAN Virtual IP dies out (stops pinging), and the whole setup stops working. I've tried addi

Re: [pfSense Support] CARP and BGP

2009-11-13 Thread Chris Buechler
On Fri, Nov 13, 2009 at 9:13 PM, Glenn Kelley wrote: > Am I correct in assuming that CARP and BGP cannot work together - as CARP > pushes private ip addresses ? > CARP doesn't push private IPs, not sure what you mean by that, but it can work just the same as anything with public IPs. Though there

Re: [pfSense Support] CARP and BGP

2009-11-14 Thread Aarno Aukia
Hello, On Sat, Nov 14, 2009 at 03:36, Chris Buechler wrote: > On Fri, Nov 13, 2009 at 9:13 PM, Glenn Kelley wrote: >> Am I correct in assuming that CARP and BGP cannot work together - as CARP >> pushes private ip addresses ? >> > > CARP doesn't push private IPs, not sure what you mean by that, b

Re: [pfSense Support] CARP and BGP

2009-11-14 Thread Vick Khera
On Sat, Nov 14, 2009 at 4:53 AM, Aarno Aukia wrote: > We have this running in prodution, feel free to contact me off-list for > details. > Can people contribute these sample configurations for "how do I X" to the wiki? Having a lot of recipes on how to accomplish various scenarios is key to inc

Re: [pfSense Support] CARP and BGP

2009-11-16 Thread Evgeny Yurchenko
Aarno Aukia wrote: Hello, On Sat, Nov 14, 2009 at 03:36, Chris Buechler wrote: On Fri, Nov 13, 2009 at 9:13 PM, Glenn Kelley wrote: Am I correct in assuming that CARP and BGP cannot work together - as CARP pushes private ip addresses ? CARP doesn't push private IPs, not sure

Re: [pfSense Support] CARP and BGP

2009-11-16 Thread Aarno Aukia
Hello Evgeny, On Mon, Nov 16, 2009 at 17:31, Evgeny Yurchenko wrote: > Could you explain how it works please? I have no questions about > active(CARP) one but what about passive? bgpd on passive one will be > continuously trying to connect to peer... using what source IP? The key is to use "loca

[pfSense Support] CARP and NAT problems

2010-05-30 Thread Justin The Cynical
Greetings. I finally set up a failover box for CARP. And so far, everything seems to be working fine, with one minor detail. WAN IP range: .65 - .96 .66 - .68 are setup as CARP .65 and .69 are the WAN interfaces Port forwards on .65 and .69 The problem: When this was a single machine, I had p

Re: [pfSense Support] carp with bridge

2010-10-28 Thread Jim Pingle
On 10/28/2010 12:25 PM, Gerald Waugh wrote: > We desire to add carp to our current pfsense firewall > Purchased a second server for the slave/secondary > > Currently bridging the WAN/Opt(Servers) interfaces on the master/primary > Using pfsense 1.2.3 > > Looking for howto links and any other info

Re: [pfSense Support] carp with bridge

2010-10-28 Thread Gerald Waugh
On Thu, 2010-10-28 at 12:48 -0400, Jim Pingle wrote: > On 10/28/2010 12:25 PM, Gerald Waugh wrote: > > We desire to add carp to our current pfsense firewall > > Purchased a second server for the slave/secondary > > > > Currently bridging the WAN/Opt(Servers) interfaces on the master/primary > > U

Re: [pfSense Support] carp with bridge

2010-10-28 Thread David Burgess
On Thu, Oct 28, 2010 at 11:35 AM, Gerald Waugh wrote: > We use bridging as the pfsense machine firewalls servers with public IP > addresses. Clues on how to accomplish with routing appreciated. You have a public subnet from your ISP, 1.1.1.0/24, for example. You get a static IP from your ISP th

Re: [pfSense Support] carp with bridge

2010-10-28 Thread Gerald Waugh
On Thu, 2010-10-28 at 11:43 -0600, David Burgess wrote: > On Thu, Oct 28, 2010 at 11:35 AM, Gerald Waugh > wrote: > > > We use bridging as the pfsense machine firewalls servers with public IP > > addresses. Clues on how to accomplish with routing appreciated. > > You have a public subnet from y

Re: [pfSense Support] carp with bridge

2010-10-28 Thread Jim Pingle
On 10/28/2010 1:43 PM, David Burgess wrote: > On Thu, Oct 28, 2010 at 11:35 AM, Gerald Waugh > wrote: > >> We use bridging as the pfsense machine firewalls servers with public IP >> addresses. Clues on how to accomplish with routing appreciated. > > You have a public subnet from your ISP, 1.1.1.

Re: [pfSense Support] carp with bridge

2010-10-28 Thread Gerald Waugh
On Thu, 2010-10-28 at 14:34 -0400, Jim Pingle wrote: > On 10/28/2010 1:43 PM, David Burgess wrote: > > On Thu, Oct 28, 2010 at 11:35 AM, Gerald Waugh > > wrote: > > > >> We use bridging as the pfsense machine firewalls servers with public IP > >> addresses. Clues on how to accomplish with routi

Re: [pfSense Support] carp with bridge

2010-10-28 Thread Jim Pingle
On 10/28/2010 3:22 PM, Gerald Waugh wrote: > Appears to be ongoing expense to have to get another subnet from ISP. > We have a /24 now and the servers use this, > We use bridging to get them through the pfsense firewall, and works great. > Just looking for the redundancy carp provides. Yes, but th

Re: [pfSense Support] Carp failover time

2011-07-02 Thread Peter van der Leek
What is the average time for the carp failover to kick in... i.e. how much time does it take for the "backup" to become "master" and start serving requests and vice versa? Is the timing parameter configurable? I have both the WAN and LAN gw as carp ip. I as a human have never been faster then th

Re: [pfSense Support] Carp failover time

2011-07-02 Thread Mike Nichols
I think we're discussing timeouts related to OSI levels 2 or 3. A physical disconnect is of course immediate, but i think other factors should be considered, like watchdog style errors, ping timeouts, and transport layer failures. I hope we can document points of failure and expected delays for

Re: [pfSense Support] Carp failover time

2011-07-02 Thread Chris Buechler
On Sat, Jul 2, 2011 at 4:34 AM, Shibashish wrote: > Hi, > > What is the average time for the carp failover to kick in... i.e. how > much time does it take for the "backup" to become "master" and start > serving requests and vice versa? Immediate if it's expected (i.e. you reboot the master), 1-2

[pfSense Support] carp and rules sync 0.70.6

2005-07-20 Thread alan walters
Just wonder wheather carp is meant to be syncing the gui rules for example   Inbound NAT Firewall rules on wan and lan   Otherwise this work very well.   Regards     Alan walters -- No virus found in this outgoing message. Checked by AVG Anti-Virus. Version: 7.0.323 / Viru

Re: [pfSense Support] CARP and backup firewall

2005-07-25 Thread Scott Ullrich
I have 2 boxes at home, both on carp. Works fine. You sure your outbound rules are setup correctly? Scott On 7/25/05, alan walters <[EMAIL PROTECTED]> wrote: > > > > On version 0.70.8 I had sync working and backup lan operational when the > master was down. > > On veriosn 0.71 the sync

[pfSense Support] CARP Failover Not working correctly.

2005-11-09 Thread Lynn A. Roth
I have my two machines set up. (Thanks Scott for the kernel patch). I followed the CARP Failover tutorial to setup failover. I have a couple of problems. I'll name the two machines A and B. A is supposed to be the primary and B the backup. First, B always grabs master on the carp interfac

Re: [pfSense Support] carp cluster howto doc?

2006-02-16 Thread Luiz Vaz
Hi Simon,    it don´t need direct download...    It´s a flash movie!    Do you only need a browser with flash plugin!    Got Firefox? ;)Regards,Luiz Vaz

[pfSense Support] Carp is a bit confused...

2006-03-23 Thread Peter Curran
Well I got most of my problems of last week sorted - a couple of configuration errors is all it takes to get things badly confused. I am now left with some 'real' errors I have two boxes in parallel, running with Carp used to service 6 addresses in total - 3 on the WAN interface and the rem

Re: AW: [pfSense Support] CARP NIC overhead?

2006-06-21 Thread Brad Bendy
> > Von: Steve Harman [mailto:[EMAIL PROTECTED] > Gesendet: Mittwoch, 21. Juni 2006 18:09 > An: support@pfsense.com > Betreff: RE: [pfSense Support] CARP NIC overhead? > > > > Sorry to bother the list again - Martin; are you able to po

Re: AW: [pfSense Support] CARP NIC overhead?

2006-06-21 Thread Steve Harman
2006 18:09 An: support@pfsense.com Betreff: RE: [pfSense Support] CARP NIC overhead? Sorry to bother the list again - Martin; are you able to post the model number of the Intel multiport NICs you're using please? Just to improve my chances of success. Thanks again, Steve

Re: AW: [pfSense Support] CARP NIC overhead?

2006-06-21 Thread Scott Ullrich
cott knows how far the support for Intel GBit >is built in > now... ? ;-) > Martin > ________ > > Von: Steve Harman [mailto:[EMAIL PROTECTED] > Gesendet: Mittwoch, 21. Juni 2006 18:09 > An: support@pfsense.com > Betreff: RE: [pfSense Support] CARP NIC

Re: AW: [pfSense Support] CARP NIC overhead?

2006-06-21 Thread Chris Buechler
Steve Harman wrote: As it turns out GBit is something we need so I'd be interested if Scott has any comment on support of GBit NICs (Intel or otherwise). Look at: Intel PWLA8492MT (dual port) Intel PWLA8494MT (quad port) those should be very common and easy to come by, and will work. I

Re: AW: [pfSense Support] CARP NIC overhead?

2006-06-21 Thread Brad Bendy
nse.com/index.php?id=37 > > > there are also quad Port NICs from Intel but only with > > >GBit... so I have > > > no idea how it's supported by FreeBSD... > > > Perhaps Scott knows how far the support for Intel GBit > > >is built in > > > now.

Re: [pfSense Support] CARP+VirtualIP+Bridge question

2006-06-26 Thread Scott Ullrich
CARP and bridging currently do not work together. On 6/26/06, Tristan DEFERT <[EMAIL PROTECTED]> wrote: Hi list, I recently moved from Linux/Debian/IPtables(shorewall) to pfSense because of redundancy possibility with pfsync+carp. I got two computers with the same hardware and 5 Ethernet inter

Re: [pfSense Support] CARP+VirtualIP+Bridge question

2006-06-26 Thread Tom Müller-Kortkamp
IMHO you don't need CARP for a redundant Bridge when you enable stp (which is enabled in PFSense) I testet a "Failoverbridge" with an older version and it worked for me... Am 26.06.2006 um 15:59 schrieb Scott Ullrich: CARP and bridging currently do not work together. On 6/26/06, Tristan D

Re: [pfSense Support] CARP+VirtualIP+Bridge question

2006-06-26 Thread Bill Marquette
On 6/26/06, Tom Müller-Kortkamp <[EMAIL PROTECTED]> wrote: IMHO you don't need CARP for a redundant Bridge when you enable stp (which is enabled in PFSense) I testet a "Failoverbridge" with an older version and it worked for me... Depends on if the 45 second STP lockout is quick enough for you

[pfSense Support] CARP - battle of the firewalls

2006-07-14 Thread Alastair Stevens
Title: CARP - battle of the firewalls Hi again We're gradually getting closer to our desired setup: 2 pfSense boxes with CARP failover, each with multiple LAN interfaces and load-balanced dual WANs.  This is obviously quite a complex setup, and getting it all working at once seems elusive -

[pfSense Support] Carp failover & ISP Load balance

2007-01-23 Thread Nelu Sofrone
Hello all. I have 2 WAN connection (static IP), 1 LAN Connection and 1 DMZ connection for my PfSense box. I want to make a carp failover system with load balance between WAN connection if it is possible. Till now I make some tests. Carp failover worked, but load balancing is not working very go

RE: [pfSense Support] CARP problem or not?

2007-03-16 Thread Holger Bauer
rials/carp/carp-cluster-new.ht m Holger -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Friday, March 16, 2007 7:28 AM To: support@pfsense.com Subject: [pfSense Support] CARP problem or not? Hi I've set up 2 PFSENSE machines with CARP and it seems to work

Re: [pfSense Support] CARP problem or not?

2007-03-19 Thread Joseph Favia Jr.
olger -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Friday, March 16, 2007 7:28 AM To: support@pfsense.com Subject: [pfSense Support] CARP problem or not? Hi I've set up 2 PFSENSE machines with CARP and it seems to work well although I find the following messa

Re: [pfSense Support] CARP problem or not?

2007-03-19 Thread Scott Ullrich
On 3/19/07, Joseph Favia Jr. <[EMAIL PROTECTED]> wrote: Why is it that I can't ever load the tutorials in that .ht format ? Try firefox with Flash plugin installed. - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional co

Re: [pfSense Support] CARP, pfSense latest snapshot

2007-07-17 Thread Chris Buechler
Dimitri Rodis wrote: FWIW, this is running in a MS Virtual Server 2005 R2 SP1 virtual machine, so it shouldn’t have anything to do with the hardware, as there are 10 other virtual machines running without issue. MS VS is the hardware in this case, and can be extremely flaky with FreeBSD.

RE: [pfSense Support] CARP, pfSense latest snapshot

2007-07-17 Thread Dimitri Rodis
ck later once I get it up in VMware server. Dimitri Rodis Integrita Systems LLC -Original Message- From: Chris Buechler [mailto:[EMAIL PROTECTED] Sent: Tuesday, July 17, 2007 2:34 PM To: support@pfsense.com Subject: Re: [pfSense Support] CARP, pfSense latest snapshot Dimitri Rodis wrote:

Re: [pfSense Support] CARP, pfSense latest snapshot

2007-07-17 Thread Sean Cavanaugh
7 6:30 PM Subject: RE: [pfSense Support] CARP, pfSense latest snapshot Ok, I can do VMware on that host machine also. I will give it a shot. For what it's worth, however, I have a number of fresh installations (meaning, I didn't attempt to upload a m0n0 config, but was set up from scrat

RE: [pfSense Support] CARP, pfSense latest snapshot

2007-07-19 Thread Dimitri Rodis
Rodis Integrita Systems LLC -Original Message- From: Dimitri Rodis [mailto:[EMAIL PROTECTED] Sent: Tuesday, July 17, 2007 3:31 PM To: support@pfsense.com Subject: RE: [pfSense Support] CARP, pfSense latest snapshot Ok, I can do VMware on that host machine also. I will give it a shot. For what

Re: [pfSense Support] CARP, pfSense latest snapshot

2007-07-20 Thread Chris Buechler
o: support@pfsense.com Subject: RE: [pfSense Support] CARP, pfSense latest snapshot Ok, I can do VMware on that host machine also. I will give it a shot. For what it's worth, however, I have a number of fresh installations (meaning, I didn't attempt to upload a m0n0 config, but was set up fr

[pfSense Support] CARP + captive portal: split brain

2007-11-08 Thread RB
I'm trying to set up a fault-tolerant LAN captive portal and am running into some odd issues. During setup, CARP works perfectly - virtual services, routing, etc. all float seamlessly. However, when I turn on the Captive Portal the gateways stop talking to each other on their LAN interface (the s

Re: [pfSense Support] carp and firewall setups

2007-11-14 Thread Espen Johansen
You need a /29 on your wan to use pfsense and carp. -lsf On Nov 14, 2007 2:40 AM, Geoff Crompton <[EMAIL PROTECTED]> wrote: > Hi, > > I'm just trying to educate myself about carp, and if pfSense can do what > we want. I'm trying out an 1.2RC3-embedded on a pair of net4801 devices. > We have a se

Re: [pfSense Support] carp and firewall setups

2007-11-14 Thread Geoff Crompton
Espen Johansen wrote: > You need a /29 on your wan to use pfsense and carp. > > -lsf Thanks Espen, you've confirmed what I thought about the WAN. Any thoughts about multiple LAN subnets and carp? > > On Nov 14, 2007 2:40 AM, Geoff Crompton > <[EMAIL PROTECTED] > > wro

Re: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Scott Ullrich
On Wed, Apr 8, 2009 at 11:31 PM, Dimitri Rodis wrote: > Currently running: > > 1.2.3-RC1 > built on Wed Apr 1 16:59:10 EDT 2009 > > > > Changed the CARP config-- had a redundant member that I removed, so I shut > pfsync off. However, I kept getting messages along the top that XMLRPC sync > was fai

RE: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Dimitri Rodis
ewhere, because like I said, I didn't dupe the section myself. Dimitri Rodis Integrita Systems LLC -Original Message- From: Scott Ullrich [mailto:sullr...@gmail.com] Sent: Thursday, April 09, 2009 8:15 AM To: support@pfsense.com Subject: Re: [pfSense Support] CARP Bug in 1.2

Re: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Scott Ullrich
On Thu, Apr 9, 2009 at 12:37 PM, Dimitri Rodis wrote: > I think this is more obscure than you think-- this is on a snapshot build, > so how many people have 1) run a 1.2.3 snapshot, 2) _had_ a redundant CARP > config, and then 3) removed the redundant member and 4) added some Outbound > NAT rules

RE: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Dimitri Rodis
@gmail.com] Sent: Thursday, April 09, 2009 10:17 AM To: support@pfsense.com Subject: Re: [pfSense Support] CARP Bug in 1.2.3 On Thu, Apr 9, 2009 at 12:37 PM, Dimitri Rodis wrote: > I think this is more obscure than you think-- this is on a snapshot build, > so how many people have 1) run a 1

Re: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Scott Ullrich
On Thu, Apr 9, 2009 at 1:57 PM, Dimitri Rodis wrote: > The snapshot I'm using is dated April 1.. that's a couple of days after the > hackathon, I believe. Any idea when the xmlparse.inc from HEAD was removed? You where affected then. It was removed for causing various problems such as these. S

RE: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Dimitri Rodis
Sent: Thursday, April 09, 2009 11:37 AM To: support@pfsense.com Subject: Re: [pfSense Support] CARP Bug in 1.2.3 On Thu, Apr 9, 2009 at 1:57 PM, Dimitri Rodis wrote: > The snapshot I'm using is dated April 1.. that's a couple of days after the > hackathon, I believe. Any idea when the x

Re: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Chris Buechler
On Thu, Apr 9, 2009 at 7:00 PM, Dimitri Rodis wrote: > Good deal. I'll go to a later snapshot then. > > Are upgrades between snapshots on embedded working at the moment, or should > I just reflash? > Yeah you got hit with the xmlparse.inc issue that was in snapshots for a couple days. I know CARP

Re: [pfSense Support] CARP with captive portal

2009-10-19 Thread Roberto Greiner
Hi, no one with ideas about this? Roberto Roberto Greiner wrote: Hi, I'm having trouble making captive portal and CARP work togheter. I've set CARP to use the WAN interface for synchronization, and it works fine. Problem is, the moment I enable Captive Portal, the LAN Virtual IP dies out

Re: [pfSense Support] CARP with captive portal

2009-10-19 Thread Curtis LaMasters
Might be a long shot, but check your subnet mask for the CARP. I've seen odd things happend when that is not correct. Curtis LaMasters http://www.curtis-lamasters.com http://www.builtnetworks.com On Mon, Oct 19, 2009 at 9:33 AM, Roberto Greiner wrote: > Hi, > > no one with ideas about this? >

Re: [pfSense Support] CARP with captive portal

2009-10-19 Thread Ermal Luçi
On Fri, Oct 16, 2009 at 6:21 PM, Roberto Greiner wrote: > Hi, > > I'm having trouble making captive portal and CARP work togheter. > > I've set CARP to use the WAN interface for synchronization, and it works > fine. > > Problem is, the moment I enable Captive Portal, the LAN Virtual IP dies out >

Re: [pfSense Support] CARP with captive portal

2009-10-19 Thread Roberto Greiner
Ermal Luçi wrote: On Fri, Oct 16, 2009 at 6:21 PM, Roberto Greiner wrote: Hi, I'm having trouble making captive portal and CARP work togheter. I've set CARP to use the WAN interface for synchronization, and it works fine. Problem is, the moment I enable Captive Portal, the LAN Virtual IP

RE: [pfSense Support] CARP and NAT problems

2010-05-31 Thread Dimitri Rodis
- From: Justin The Cynical [mailto:cyni...@penguinness.org] Sent: Sunday, May 30, 2010 10:56 PM To: support@pfsense.com Subject: [pfSense Support] CARP and NAT problems Greetings. I finally set up a failover box for CARP. And so far, everything seems to be working fine, with one minor detai

Re: [pfSense Support] CARP and NAT problems

2010-05-31 Thread Chris Buechler
On Mon, May 31, 2010 at 1:56 AM, Justin The Cynical wrote: > Greetings. > > I finally set up a failover box for CARP.  And so far, everything seems > to be working fine, with one minor detail. > > WAN IP range: .65 - .96 > > .66 - .68 are setup as CARP > .65 and .69 are the WAN interfaces > Port f

Re: [pfSense Support] CARP and NAT problems

2010-05-31 Thread Justin The Cynical
On 5/31/10 1:43 PM, Dimitri Rodis wrote: > If the port forwards are on the WAN addresses themselves, to my knowledge > they will not fail over. My understanding is that all "addresses" (and port > forwards) that you intend to survive a failover must be on CARP addresses. > > Dimitri Rodis > Integr

Re: [pfSense Support] CARP and NAT problems

2010-05-31 Thread Justin The Cynical
On 5/31/10 1:58 PM, Chris Buechler wrote: *snip* >> >> The port forward to .65 works, but the .69 does not. If the machines >> failover (.69 becomes the active machine), the forward for .69 works, >> but the .65 does not. When .65 comes back up as the active box, the >> forward on .69 stops wor

Re: [pfSense Support] CARP and NAT problems

2010-05-31 Thread Chris Buechler
On Mon, May 31, 2010 at 5:49 PM, Justin The Cynical wrote: > On 5/31/10 1:58 PM, Chris Buechler wrote: > > *snip* > >>> >>> The port forward to .65 works, but the .69 does not.  If the machines >>> failover (.69 becomes the active machine), the forward for .69 works, >>> but the .65 does not.  Whe

[pfSense Support] CARP support broken in kernel?

2010-12-10 Thread st41ker
Hello, It seems like this question should be addressed to the pfSense kernel maintainer(s). I've two firewalls on 2.0-BETA4 with CARP enabled. Until the recent upgrade everything worked almost perfect. Now both routers got all CARP devices in MASTER state. Firewall 1: vip6: flags=49 metric

Re: [pfSense Support] carp and rules sync 0.70.6

2005-07-20 Thread Scott Ullrich
Just so that I fully understand your question.. Your saying that it syncs all other areas mentioned EXCEPT the firewall rules? Scott On 7/20/05, alan walters <[EMAIL PROTECTED]> wrote: > > > > Just wonder wheather carp is meant to be syncing the gui rules for example > > > > Inbound N

FW: [pfSense Support] carp and rules sync 0.70.6

2005-07-20 Thread alan walters
: [pfSense Support] carp and rules sync 0.70.6 Just so that I fully understand your question.. Your saying that it syncs all other areas mentioned EXCEPT the firewall rules? Scott On 7/20/05, alan walters <[EMAIL PROTECTED]> wrote: > > > > Just wonder wheather carp is meant to

RE: [pfSense Support] carp and rules sync 0.70.6

2005-07-20 Thread alan walters
Yes For all the sync except the advertising bit and the load balance bit -Original Message- From: Scott Ullrich [mailto:[EMAIL PROTECTED] Sent: 20 July 2005 23:38 To: alan walters Subject: Re: [pfSense Support] carp and rules sync 0.70.6 Have you enabled the syncing features in carp

Re: [pfSense Support] carp and rules sync 0.70.6

2005-07-20 Thread Scott Ullrich
OTECTED] > Sent: 20 July 2005 23:38 > To: alan walters > Subject: Re: [pfSense Support] carp and rules sync 0.70.6 > > Have you enabled the syncing features in carp settings? > > On 7/20/05, alan walters <[EMAIL PROTECTED]> wrote: > > In the gui it does not seem to

[pfSense Support] Carp Weirdness - Always reboots to INIT

2005-09-12 Thread Frimmel, Ivan \(ISS South Africa\)
CARP is very cool. 3 things ..   1) kill power on both routers .. 1 is setup with lower advert. Freq than other. Power them up together. BOTH go into INIT mode always and the virtual gateway doesn’t get created. .Only way to fix this is to disable carp on Master then enable .. it become

[pfSense Support] carp and backup to master switch

2005-10-04 Thread alan walters
Running carp on two wrap boards on 0.86. when failing over from master to backup all works fine. (my test is a ptpp connection) But when the master comes back online the ptpp connection is lost everything is ok after this again though I can reconnect to ptpp immediately on master.   Carp

Re: [pfSense Support] CARP Failover Not working correctly.

2005-11-09 Thread Scott Ullrich
I've been noticing interesting CARP problems here too. Mainly the state is INIT. I'm looking into the problem. I plan on moving back to RELENG_6 (we're now on RELENG_6_0) to see if it solves the issues. On 11/9/05, Lynn A. Roth <[EMAIL PROTECTED]> wrote: > I have my two machines set up. (Thank

Re: [pfSense Support] Carp is a bit confused...

2006-03-23 Thread Scott Ullrich
On 3/23/06, Peter Curran <[EMAIL PROTECTED]> wrote: > Well I got most of my problems of last week sorted - a couple of configuration > errors is all it takes to get things badly confused. > > I am now left with some 'real' errors > > I have two boxes in parallel, running with Carp used to servi

Re: [pfSense Support] Carp is a bit confused...

2006-03-23 Thread Peter Curran
Hi Scott On Thursday 23 March 2006 23:00, Scott Ullrich wrote: > > I have two boxes in parallel, running with Carp used to service 6 > > addresses in total - 3 on the WAN interface and the remaining 3 spread > > between 3 internal interfaces. All seems to work OK - when I check the > > Carp statu

RE: [pfSense Support] Carp is a bit confused...

2006-03-24 Thread Amorim, Nuno Alexandre \(ext\)
Hello Peter I had a similar issue. Verify the netmask of the carp interface. It is the same has the network. -Original Message- From: Peter Curran [mailto:[EMAIL PROTECTED] Sent: sexta-feira, 24 de Março de 2006 0:09 To: support@pfsense.com Subject: Re: [pfSense Support] Carp is a bit

<    1   2   3   4   >