Re: [pfSense Support] IPsec tunnels and failover.

2010-12-22 Thread Vincent Hoffman
On 22/12/2010 15:25, Seth Mos wrote: > Op 22-12-2010 16:15, Vincent Hoffman schreef: > >> I'm already using a CARP address as the VPN endpoint. So the failover >> will fire up racoon on the backup node, or do i need to have racoon >> started on the backup node already and it just wont negotiate unt

Re: [pfSense Support] IPsec tunnels and failover.

2010-12-22 Thread Seth Mos
Op 22-12-2010 16:15, Vincent Hoffman schreef: I'm already using a CARP address as the VPN endpoint. So the failover will fire up racoon on the backup node, or do i need to have racoon started on the backup node already and it just wont negotiate until its master for that CARP interface? The ca

Re: [pfSense Support] IPsec tunnels and failover.

2010-12-22 Thread Vincent Hoffman
On 22/12/2010 12:42, Seth Mos wrote: > Op 22-12-2010 11:22, Vincent Hoffman schreef: >> At work we've a couple of servers running a synced pfsense >> cluster with IPsec tunnels to 2 other pfsense firewalls. While I can see >> that CARP syncs the configs across within the cluster I cant find >> anyt

Re: [pfSense Support] IPsec tunnels and failover.

2010-12-22 Thread Seth Mos
Op 22-12-2010 11:22, Vincent Hoffman schreef: At work we've a couple of servers running a synced pfsense cluster with IPsec tunnels to 2 other pfsense firewalls. While I can see that CARP syncs the configs across within the cluster I cant find anything that specifically says that if the primary

[pfSense Support] IPsec tunnels and failover.

2010-12-22 Thread Vincent Hoffman
Hi, At work we've a couple of servers running a synced pfsense cluster with IPsec tunnels to 2 other pfsense firewalls. While I can see that CARP syncs the configs across within the cluster I cant find anything that specifically says that if the primary node dies the ipsec (racoon) demon wi