RE: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-29 Thread Frimmel, Ivan \(ISS South Africa\)
HI 

Firstly I didn't have time yet to do another update_file.sh so the problem may 
already be fixed.. but in the interim:

After the update_file.sh I did yesterday morning .. I have an intermittent 
issue which I think is also related.. ng0 goes down, AND stays down, even after 
reboots. Doing another upgrade(downgrade) via the web interface to 
085.6(.tar.gz) fixed the ng0 down problem. Although I could manually ifconfig 
ng0 up to bring the route up again but after reboot it would go down again. I 
suspect carp is not coming up because ng0 doesn't come up?

Tx all.
Ivan.


-Original Message-
From: Scott Ullrich [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, September 28, 2005 4:19 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] 050.2 CARP won't go Master or Backup

You need to update_file.sh /etc/rc.bootup as well.   The carp
interfacs are brought up at the very end now.

Scott


On 9/28/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
 Ok, so I spent sometime on this, this morning.

 One of the problems I had yesterday during update_file.sh (on 085.4).. it 
 somehow broke OPT1(sync) and kept making it disabled. So carp would never 
 come up, once I got this sorted by going to 085.6 I could go forward.

 So ..
 1) I brought router2 back up and did all upgrades and reconfigured CARP;
 2) CARP still behaves badly
 3) Did another update_file.sh after 085.6, CARP haves badly.

 It may go master/backup first time, but when doing disable/enable it stays 
 init on BOTH routers.

 I dropped to a shell .. and simply did a ifconfig carp0 up on both. CARP 
 comes up in the appropriate mode(master/backup) and virtual IPs work again as 
 expected. i.e. this fixes the issue. Disable/enable button breaks it again. 
 i.e. a working server as Master will go back to init after hitting 
 enable/disable.

 Hope this helps?
 Ivan.



 -Original Message-
 From: Holger Bauer [mailto:[EMAIL PROTECTED]
 Sent: Wednesday, September 28, 2005 1:49 AM
 To: support@pfsense.com
 Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup

 ok, I have experienced some strange problems bringing up CARP-Interfaces here 
 as well (quite reproducable but also a bit sporadic). Scott did several 
 changes and he finally came up with something that now is running on my 
 systems without any problems any more (my systems are also syncing via a 
 crossover-cable, no switch in between).

 Ivan, if you can please crosslink your systems again and do a update_file.sh 
 /etc/inc/interfaces.inc on both system before testing again.

 To have a switch between two machines is needed if you have more than 2 
 machines in the cluster but with only two machines it's an additional point 
 of failure if the switch dies or only has powerfailure. Syncing should work 
 with crosslink-cables too. So if you can give it a try and report back we 
 would appreciate it.

 Thank you in advance,
 Holger

 -Ursprüngliche Nachricht-
 Von: Bill Marquette [mailto:[EMAIL PROTECTED]
 Gesendet: Dienstag, 27. September 2005 20:20
 An: support@pfsense.com
 Betreff: Re: [pfSense Support] 050.2 CARP won't go Master or Backup


 On 9/27/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
  HI
 
  PPPoe is on WAN .. CARP is on LAN with carp sync on OPT1.
 
  OK so you guys are going to laugh at me. I do feel stupid. As a fault 
  finding procedure and just to get connectivity back I halted router2, which 
  is UTP crossed over connected to router 1 on OPT1. So OPT1 (carp sync) is 
  down. (no link since you need both nic up to have link). CARP will NOT come 
  up without link on OPT1. My suggestion in terms of best practice is to have 
  a switch on OPT(sync) when using CARP. It has wasted a lot of my time and 
  it IS my fault cause I was cheap just using cross over cable.

  Tx all ..

 Hrm...I'll have to test this out at home :-/  At work everything is
 always plugged into a switch (the machines are miles apart), but at
 home I'm using a crossover cable for the dedicated sync network.  But
 I didn't think that CARP would stay down forever if the sync interface
 was down :-/

 --Bill

 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]


 
 Virus checked by G DATA AntiVirusKit


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]



-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


-
To unsubscribe, e-mail: [EMAIL PROTECTED

RE: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-29 Thread Frimmel, Ivan \(ISS South Africa\)
No, CARP is on LAN.

-Original Message-
From: Bill Marquette [mailto:[EMAIL PROTECTED] 
Sent: Thursday, September 29, 2005 4:22 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] 050.2 CARP won't go Master or Backup

On 9/29/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED]
wrote:
 HI

 Firstly I didn't have time yet to do another update_file.sh so the
problem may already be fixed.. but in the interim:

 After the update_file.sh I did yesterday morning .. I have an
intermittent issue which I think is also related.. ng0 goes down, AND
stays down, even after reboots. Doing another upgrade(downgrade) via
the web interface to 085.6(.tar.gz) fixed the ng0 down problem. Although
I could manually ifconfig ng0 up to bring the route up again but after
reboot it would go down again. I suspect carp is not coming up because
ng0 doesn't come up?

Are you running carp on an ng interface?  I'm surprised this ever works.

--Bill

-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



RE: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-28 Thread Frimmel, Ivan \(ISS South Africa\)
Ok, so I spent sometime on this, this morning. 

One of the problems I had yesterday during update_file.sh (on 085.4).. it 
somehow broke OPT1(sync) and kept making it disabled. So carp would never come 
up, once I got this sorted by going to 085.6 I could go forward.

So .. 
1) I brought router2 back up and did all upgrades and reconfigured CARP;
2) CARP still behaves badly
3) Did another update_file.sh after 085.6, CARP haves badly. 

It may go master/backup first time, but when doing disable/enable it stays init 
on BOTH routers. 

I dropped to a shell .. and simply did a ifconfig carp0 up on both. CARP 
comes up in the appropriate mode(master/backup) and virtual IPs work again as 
expected. i.e. this fixes the issue. Disable/enable button breaks it again. 
i.e. a working server as Master will go back to init after hitting 
enable/disable. 

Hope this helps?
Ivan.



-Original Message-
From: Holger Bauer [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, September 28, 2005 1:49 AM
To: support@pfsense.com
Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup

ok, I have experienced some strange problems bringing up CARP-Interfaces here 
as well (quite reproducable but also a bit sporadic). Scott did several changes 
and he finally came up with something that now is running on my systems without 
any problems any more (my systems are also syncing via a crossover-cable, no 
switch in between).

Ivan, if you can please crosslink your systems again and do a update_file.sh 
/etc/inc/interfaces.inc on both system before testing again.

To have a switch between two machines is needed if you have more than 2 
machines in the cluster but with only two machines it's an additional point of 
failure if the switch dies or only has powerfailure. Syncing should work with 
crosslink-cables too. So if you can give it a try and report back we would 
appreciate it.

Thank you in advance,
Holger 

-Ursprüngliche Nachricht-
Von: Bill Marquette [mailto:[EMAIL PROTECTED]
Gesendet: Dienstag, 27. September 2005 20:20
An: support@pfsense.com
Betreff: Re: [pfSense Support] 050.2 CARP won't go Master or Backup


On 9/27/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
 HI

 PPPoe is on WAN .. CARP is on LAN with carp sync on OPT1.

 OK so you guys are going to laugh at me. I do feel stupid. As a fault finding 
 procedure and just to get connectivity back I halted router2, which is UTP 
 crossed over connected to router 1 on OPT1. So OPT1 (carp sync) is down. (no 
 link since you need both nic up to have link). CARP will NOT come up without 
 link on OPT1. My suggestion in terms of best practice is to have a switch on 
 OPT(sync) when using CARP. It has wasted a lot of my time and it IS my fault 
 cause I was cheap just using cross over cable.
 Tx all ..

Hrm...I'll have to test this out at home :-/  At work everything is
always plugged into a switch (the machines are miles apart), but at
home I'm using a crossover cable for the dedicated sync network.  But
I didn't think that CARP would stay down forever if the sync interface
was down :-/

--Bill

-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Virus checked by G DATA AntiVirusKit


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Re: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-28 Thread Scott Ullrich
You need to update_file.sh /etc/rc.bootup as well.   The carp
interfacs are brought up at the very end now.

Scott


On 9/28/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
 Ok, so I spent sometime on this, this morning.

 One of the problems I had yesterday during update_file.sh (on 085.4).. it 
 somehow broke OPT1(sync) and kept making it disabled. So carp would never 
 come up, once I got this sorted by going to 085.6 I could go forward.

 So ..
 1) I brought router2 back up and did all upgrades and reconfigured CARP;
 2) CARP still behaves badly
 3) Did another update_file.sh after 085.6, CARP haves badly.

 It may go master/backup first time, but when doing disable/enable it stays 
 init on BOTH routers.

 I dropped to a shell .. and simply did a ifconfig carp0 up on both. CARP 
 comes up in the appropriate mode(master/backup) and virtual IPs work again as 
 expected. i.e. this fixes the issue. Disable/enable button breaks it again. 
 i.e. a working server as Master will go back to init after hitting 
 enable/disable.

 Hope this helps?
 Ivan.



 -Original Message-
 From: Holger Bauer [mailto:[EMAIL PROTECTED]
 Sent: Wednesday, September 28, 2005 1:49 AM
 To: support@pfsense.com
 Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup

 ok, I have experienced some strange problems bringing up CARP-Interfaces here 
 as well (quite reproducable but also a bit sporadic). Scott did several 
 changes and he finally came up with something that now is running on my 
 systems without any problems any more (my systems are also syncing via a 
 crossover-cable, no switch in between).

 Ivan, if you can please crosslink your systems again and do a update_file.sh 
 /etc/inc/interfaces.inc on both system before testing again.

 To have a switch between two machines is needed if you have more than 2 
 machines in the cluster but with only two machines it's an additional point 
 of failure if the switch dies or only has powerfailure. Syncing should work 
 with crosslink-cables too. So if you can give it a try and report back we 
 would appreciate it.

 Thank you in advance,
 Holger

 -Ursprüngliche Nachricht-
 Von: Bill Marquette [mailto:[EMAIL PROTECTED]
 Gesendet: Dienstag, 27. September 2005 20:20
 An: support@pfsense.com
 Betreff: Re: [pfSense Support] 050.2 CARP won't go Master or Backup


 On 9/27/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
  HI
 
  PPPoe is on WAN .. CARP is on LAN with carp sync on OPT1.
 
  OK so you guys are going to laugh at me. I do feel stupid. As a fault 
  finding procedure and just to get connectivity back I halted router2, which 
  is UTP crossed over connected to router 1 on OPT1. So OPT1 (carp sync) is 
  down. (no link since you need both nic up to have link). CARP will NOT come 
  up without link on OPT1. My suggestion in terms of best practice is to have 
  a switch on OPT(sync) when using CARP. It has wasted a lot of my time and 
  it IS my fault cause I was cheap just using cross over cable.
  Tx all ..

 Hrm...I'll have to test this out at home :-/  At work everything is
 always plugged into a switch (the machines are miles apart), but at
 home I'm using a crossover cable for the dedicated sync network.  But
 I didn't think that CARP would stay down forever if the sync interface
 was down :-/

 --Bill

 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]


 
 Virus checked by G DATA AntiVirusKit


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]



-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



AW: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Holger Bauer
I have a working carp config at home. Have failed over several times the last 
days, with 0.85.2 and 0.85.4 no session was dropped (I even was tunnelling from 
a client behind the carpmachines to the office). DNS and DHCP is configured for 
failover as well. I haven't seen any issues so far. Anybody else seeing having 
problems? Strange.

Holger



-Ursprüngliche Nachricht-
Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
Gesendet: Dienstag, 27. September 2005 11:47
An: support@pfsense.com
Betreff: RE: [pfSense Support] 050.2 CARP won't go Master or Backup 


HI 

Yes .. 085.2 .. 085.4 does the same too. Enable / disable does not work ... 
goes to init always. 0.85 worked.. did an upgrade to 085.2 it stopped working. 
I deleted all carp entries and re-setup from scratch. I will try update_file.sh 
and let you know results. 

Tx
Ivan


-Original Message-
From: Holger Bauer [mailto:[EMAIL PROTECTED] 
Sent: Monday, September 26, 2005 10:55 AM
To: support@pfsense.com
Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup 

0.50.2? I guess you are talking about 0.85.2, if not upgrade! ;-)

I only have experienced such problems if the carpinterfaces didn't match the 
real ip/subnet-range of the real interface the carp interface is running on. 
Another thing to try is to manually disable and enable CARP at 
StatusCARP(failover) in the webgui. If it's working after that there might be 
a problem bringing up everything in the right order. 

There also have been some changes to CARP lately. You might want to run 
update_file.sh -all from the shell to grab the latest changes.

Holger



-Ursprüngliche Nachricht-
Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
Gesendet: Montag, 26. September 2005 09:34
An: support@pfsense.com
Betreff: [pfSense Support] 050.2 CARP won't go Master or Backup 


HI 

I have Carp running successfully on 0.50. Upgraded yesterday to 050.2
and CARP absolutely refuses to start. OPT1 is up. PPPoE is UP. CARP goes
to INIT and does not ever go master or backup. 

I deleted all CARP configs and recreated everything from scratch. On
both boxes CARP will not start. Hitting Disable / enable makes it go
from disable to INIT.. but never starts. Even tried doing everything
with the second box physically turned off. No difference.

Any ideas? 
Tx
Ivan.


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


Virus checked by G DATA AntiVirusKit


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Virus checked by G DATA AntiVirusKit


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Re: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Mojo Jojo

I am just curious why you failed over twice.. Why did your primary go down?

Todd

- Original Message - 
From: Holger Bauer [EMAIL PROTECTED]

To: support@pfsense.com
Sent: Tuesday, September 27, 2005 6:41 AM
Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup


I have a working carp config at home. Have failed over several times the 
last days, with 0.85.2 and 0.85.4 no session was dropped (I even was 
tunnelling from a client behind the carpmachines to the office). DNS and 
DHCP is configured for failover as well. I haven't seen any issues so far. 
Anybody else seeing having problems? Strange.


Holger



-Ursprüngliche Nachricht-
Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
Gesendet: Dienstag, 27. September 2005 11:47
An: support@pfsense.com
Betreff: RE: [pfSense Support] 050.2 CARP won't go Master or Backup


HI

Yes .. 085.2 .. 085.4 does the same too. Enable / disable does not work ... 
goes to init always. 0.85 worked.. did an upgrade to 085.2 it stopped 
working. I deleted all carp entries and re-setup from scratch. I will try 
update_file.sh and let you know results.


Tx
Ivan


-Original Message-
From: Holger Bauer [mailto:[EMAIL PROTECTED]
Sent: Monday, September 26, 2005 10:55 AM
To: support@pfsense.com
Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup

0.50.2? I guess you are talking about 0.85.2, if not upgrade! ;-)

I only have experienced such problems if the carpinterfaces didn't match the 
real ip/subnet-range of the real interface the carp interface is running on. 
Another thing to try is to manually disable and enable CARP at 
StatusCARP(failover) in the webgui. If it's working after that there might 
be a problem bringing up everything in the right order.


There also have been some changes to CARP lately. You might want to run 
update_file.sh -all from the shell to grab the latest changes.


Holger



-Ursprüngliche Nachricht-
Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
Gesendet: Montag, 26. September 2005 09:34
An: support@pfsense.com
Betreff: [pfSense Support] 050.2 CARP won't go Master or Backup


HI

I have Carp running successfully on 0.50. Upgraded yesterday to 050.2
and CARP absolutely refuses to start. OPT1 is up. PPPoE is UP. CARP goes
to INIT and does not ever go master or backup.

I deleted all CARP configs and recreated everything from scratch. On
both boxes CARP will not start. Hitting Disable / enable makes it go
from disable to INIT.. but never starts. Even tried doing everything
with the second box physically turned off. No difference.

Any ideas?
Tx
Ivan.


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


Virus checked by G DATA AntiVirusKit


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Virus checked by G DATA AntiVirusKit


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Re: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Bill Marquette
Only problems I've had with carp recently weren't actually due to
carp, but the dhcp daemon.  There's a hold down timer somewhere that
won't let it come up as primary for 300 or 360 seconds (my bet is
there two different timeouts, a  60 second timeout and a 300 second
one).  So if you're running a highly available DHCP server on your
pfSense box, keep this in mind - don't reboot both within about 10
minutes of each other for now.

--Bill

On 9/27/05, Holger Bauer [EMAIL PROTECTED] wrote:
 I have a working carp config at home. Have failed over several times the last 
 days, with 0.85.2 and 0.85.4 no session was dropped (I even was tunnelling 
 from a client behind the carpmachines to the office). DNS and DHCP is 
 configured for failover as well. I haven't seen any issues so far. Anybody 
 else seeing having problems? Strange.

 Holger



 -Ursprüngliche Nachricht-
 Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
 Gesendet: Dienstag, 27. September 2005 11:47
 An: support@pfsense.com
 Betreff: RE: [pfSense Support] 050.2 CARP won't go Master or Backup


 HI

 Yes .. 085.2 .. 085.4 does the same too. Enable / disable does not work ... 
 goes to init always. 0.85 worked.. did an upgrade to 085.2 it stopped 
 working. I deleted all carp entries and re-setup from scratch. I will try 
 update_file.sh and let you know results.

 Tx
 Ivan


 -Original Message-
 From: Holger Bauer [mailto:[EMAIL PROTECTED]
 Sent: Monday, September 26, 2005 10:55 AM
 To: support@pfsense.com
 Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup

 0.50.2? I guess you are talking about 0.85.2, if not upgrade! ;-)

 I only have experienced such problems if the carpinterfaces didn't match the 
 real ip/subnet-range of the real interface the carp interface is running on. 
 Another thing to try is to manually disable and enable CARP at 
 StatusCARP(failover) in the webgui. If it's working after that there might 
 be a problem bringing up everything in the right order.

 There also have been some changes to CARP lately. You might want to run 
 update_file.sh -all from the shell to grab the latest changes.

 Holger



 -Ursprüngliche Nachricht-
 Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
 Gesendet: Montag, 26. September 2005 09:34
 An: support@pfsense.com
 Betreff: [pfSense Support] 050.2 CARP won't go Master or Backup


 HI

 I have Carp running successfully on 0.50. Upgraded yesterday to 050.2
 and CARP absolutely refuses to start. OPT1 is up. PPPoE is UP. CARP goes
 to INIT and does not ever go master or backup.

 I deleted all CARP configs and recreated everything from scratch. On
 both boxes CARP will not start. Hitting Disable / enable makes it go
 from disable to INIT.. but never starts. Even tried doing everything
 with the second box physically turned off. No difference.

 Any ideas?
 Tx
 Ivan.


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]

 
 Virus checked by G DATA AntiVirusKit


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]


 
 Virus checked by G DATA AntiVirusKit


 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]



-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Re: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Scott Ullrich
Ivan, aren't you running carp with PPPoE?  If so, this will not work correctly.

Scott


On 9/27/05, Bill Marquette [EMAIL PROTECTED] wrote:
 Only problems I've had with carp recently weren't actually due to
 carp, but the dhcp daemon.  There's a hold down timer somewhere that
 won't let it come up as primary for 300 or 360 seconds (my bet is
 there two different timeouts, a  60 second timeout and a 300 second
 one).  So if you're running a highly available DHCP server on your
 pfSense box, keep this in mind - don't reboot both within about 10
 minutes of each other for now.

 --Bill

 On 9/27/05, Holger Bauer [EMAIL PROTECTED] wrote:
  I have a working carp config at home. Have failed over several times the 
  last days, with 0.85.2 and 0.85.4 no session was dropped (I even was 
  tunnelling from a client behind the carpmachines to the office). DNS and 
  DHCP is configured for failover as well. I haven't seen any issues so far. 
  Anybody else seeing having problems? Strange.
 
  Holger
 
 
 
  -Ursprüngliche Nachricht-
  Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
  Gesendet: Dienstag, 27. September 2005 11:47
  An: support@pfsense.com
  Betreff: RE: [pfSense Support] 050.2 CARP won't go Master or Backup
 
 
  HI
 
  Yes .. 085.2 .. 085.4 does the same too. Enable / disable does not work ... 
  goes to init always. 0.85 worked.. did an upgrade to 085.2 it stopped 
  working. I deleted all carp entries and re-setup from scratch. I will try 
  update_file.sh and let you know results.
 
  Tx
  Ivan
 
 
  -Original Message-
  From: Holger Bauer [mailto:[EMAIL PROTECTED]
  Sent: Monday, September 26, 2005 10:55 AM
  To: support@pfsense.com
  Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup
 
  0.50.2? I guess you are talking about 0.85.2, if not upgrade! ;-)
 
  I only have experienced such problems if the carpinterfaces didn't match 
  the real ip/subnet-range of the real interface the carp interface is 
  running on. Another thing to try is to manually disable and enable CARP at 
  StatusCARP(failover) in the webgui. If it's working after that there might 
  be a problem bringing up everything in the right order.
 
  There also have been some changes to CARP lately. You might want to run 
  update_file.sh -all from the shell to grab the latest changes.
 
  Holger
 
 
 
  -Ursprüngliche Nachricht-
  Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
  Gesendet: Montag, 26. September 2005 09:34
  An: support@pfsense.com
  Betreff: [pfSense Support] 050.2 CARP won't go Master or Backup
 
 
  HI
 
  I have Carp running successfully on 0.50. Upgraded yesterday to 050.2
  and CARP absolutely refuses to start. OPT1 is up. PPPoE is UP. CARP goes
  to INIT and does not ever go master or backup.
 
  I deleted all CARP configs and recreated everything from scratch. On
  both boxes CARP will not start. Hitting Disable / enable makes it go
  from disable to INIT.. but never starts. Even tried doing everything
  with the second box physically turned off. No difference.
 
  Any ideas?
  Tx
  Ivan.
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
  
  Virus checked by G DATA AntiVirusKit
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
 
  
  Virus checked by G DATA AntiVirusKit
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
 

 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED]



-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



RE: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Frimmel, Ivan \(ISS South Africa\)
HI 

PPPoe is on WAN .. CARP is on LAN with carp sync on OPT1. 

OK so you guys are going to laugh at me. I do feel stupid. As a fault finding 
procedure and just to get connectivity back I halted router2, which is UTP 
crossed over connected to router 1 on OPT1. So OPT1 (carp sync) is down. (no 
link since you need both nic up to have link). CARP will NOT come up without 
link on OPT1. My suggestion in terms of best practice is to have a switch on 
OPT(sync) when using CARP. It has wasted a lot of my time and it IS my fault 
cause I was cheap just using cross over cable.
Tx all .. 

PS .. what does the update_files.sh thing do?
Ivan.
 

-Original Message-
From: Scott Ullrich [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, September 27, 2005 4:48 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] 050.2 CARP won't go Master or Backup

Ivan, aren't you running carp with PPPoE?  If so, this will not work correctly.

Scott


On 9/27/05, Bill Marquette [EMAIL PROTECTED] wrote:
 Only problems I've had with carp recently weren't actually due to
 carp, but the dhcp daemon.  There's a hold down timer somewhere that
 won't let it come up as primary for 300 or 360 seconds (my bet is
 there two different timeouts, a  60 second timeout and a 300 second
 one).  So if you're running a highly available DHCP server on your
 pfSense box, keep this in mind - don't reboot both within about 10
 minutes of each other for now.

 --Bill

 On 9/27/05, Holger Bauer [EMAIL PROTECTED] wrote:
  I have a working carp config at home. Have failed over several times the 
  last days, with 0.85.2 and 0.85.4 no session was dropped (I even was 
  tunnelling from a client behind the carpmachines to the office). DNS and 
  DHCP is configured for failover as well. I haven't seen any issues so far. 
  Anybody else seeing having problems? Strange.
 
  Holger
 
 
 
  -Ursprüngliche Nachricht-
  Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
  Gesendet: Dienstag, 27. September 2005 11:47
  An: support@pfsense.com
  Betreff: RE: [pfSense Support] 050.2 CARP won't go Master or Backup
 
 
  HI
 
  Yes .. 085.2 .. 085.4 does the same too. Enable / disable does not work ... 
  goes to init always. 0.85 worked.. did an upgrade to 085.2 it stopped 
  working. I deleted all carp entries and re-setup from scratch. I will try 
  update_file.sh and let you know results.
 
  Tx
  Ivan
 
 
  -Original Message-
  From: Holger Bauer [mailto:[EMAIL PROTECTED]
  Sent: Monday, September 26, 2005 10:55 AM
  To: support@pfsense.com
  Subject: AW: [pfSense Support] 050.2 CARP won't go Master or Backup
 
  0.50.2? I guess you are talking about 0.85.2, if not upgrade! ;-)
 
  I only have experienced such problems if the carpinterfaces didn't match 
  the real ip/subnet-range of the real interface the carp interface is 
  running on. Another thing to try is to manually disable and enable CARP at 
  StatusCARP(failover) in the webgui. If it's working after that there might 
  be a problem bringing up everything in the right order.
 
  There also have been some changes to CARP lately. You might want to run 
  update_file.sh -all from the shell to grab the latest changes.
 
  Holger
 
 
 
  -Ursprüngliche Nachricht-
  Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
  Gesendet: Montag, 26. September 2005 09:34
  An: support@pfsense.com
  Betreff: [pfSense Support] 050.2 CARP won't go Master or Backup
 
 
  HI
 
  I have Carp running successfully on 0.50. Upgraded yesterday to 050.2
  and CARP absolutely refuses to start. OPT1 is up. PPPoE is UP. CARP goes
  to INIT and does not ever go master or backup.
 
  I deleted all CARP configs and recreated everything from scratch. On
  both boxes CARP will not start. Hitting Disable / enable makes it go
  from disable to INIT.. but never starts. Even tried doing everything
  with the second box physically turned off. No difference.
 
  Any ideas?
  Tx
  Ivan.
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
  
  Virus checked by G DATA AntiVirusKit
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
 
  
  Virus checked by G DATA AntiVirusKit
 
 
  -
  To unsubscribe, e-mail: [EMAIL PROTECTED]
  For additional commands, e-mail: [EMAIL PROTECTED]
 
 

 -
 To unsubscribe, e-mail: [EMAIL PROTECTED]
 For additional commands, e-mail: [EMAIL PROTECTED

Re: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Scott Ullrich
On 9/27/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
 PS .. what does the update_files.sh thing do?

It's a script that pulls down the latest version of a file.  It can
also be passed the -all flag to update all known files.

It's basically a upgrade mechanism for a single file to help the
developers help you :)

Scott

-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Re: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Bill Marquette
On 9/27/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
 HI

 PPPoe is on WAN .. CARP is on LAN with carp sync on OPT1.

 OK so you guys are going to laugh at me. I do feel stupid. As a fault finding 
 procedure and just to get connectivity back I halted router2, which is UTP 
 crossed over connected to router 1 on OPT1. So OPT1 (carp sync) is down. (no 
 link since you need both nic up to have link). CARP will NOT come up without 
 link on OPT1. My suggestion in terms of best practice is to have a switch on 
 OPT(sync) when using CARP. It has wasted a lot of my time and it IS my fault 
 cause I was cheap just using cross over cable.
 Tx all ..

Hrm...I'll have to test this out at home :-/  At work everything is
always plugged into a switch (the machines are miles apart), but at
home I'm using a crossover cable for the dedicated sync network.  But
I didn't think that CARP would stay down forever if the sync interface
was down :-/

--Bill

-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



AW: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-27 Thread Holger Bauer
ok, I have experienced some strange problems bringing up CARP-Interfaces here 
as well (quite reproducable but also a bit sporadic). Scott did several changes 
and he finally came up with something that now is running on my systems without 
any problems any more (my systems are also syncing via a crossover-cable, no 
switch in between).

Ivan, if you can please crosslink your systems again and do a update_file.sh 
/etc/inc/interfaces.inc on both system before testing again.

To have a switch between two machines is needed if you have more than 2 
machines in the cluster but with only two machines it's an additional point of 
failure if the switch dies or only has powerfailure. Syncing should work with 
crosslink-cables too. So if you can give it a try and report back we would 
appreciate it.

Thank you in advance,
Holger 

-Ursprüngliche Nachricht-
Von: Bill Marquette [mailto:[EMAIL PROTECTED]
Gesendet: Dienstag, 27. September 2005 20:20
An: support@pfsense.com
Betreff: Re: [pfSense Support] 050.2 CARP won't go Master or Backup


On 9/27/05, Frimmel, Ivan (ISS South Africa) [EMAIL PROTECTED] wrote:
 HI

 PPPoe is on WAN .. CARP is on LAN with carp sync on OPT1.

 OK so you guys are going to laugh at me. I do feel stupid. As a fault finding 
 procedure and just to get connectivity back I halted router2, which is UTP 
 crossed over connected to router 1 on OPT1. So OPT1 (carp sync) is down. (no 
 link since you need both nic up to have link). CARP will NOT come up without 
 link on OPT1. My suggestion in terms of best practice is to have a switch on 
 OPT(sync) when using CARP. It has wasted a lot of my time and it IS my fault 
 cause I was cheap just using cross over cable.
 Tx all ..

Hrm...I'll have to test this out at home :-/  At work everything is
always plugged into a switch (the machines are miles apart), but at
home I'm using a crossover cable for the dedicated sync network.  But
I didn't think that CARP would stay down forever if the sync interface
was down :-/

--Bill

-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Virus checked by G DATA AntiVirusKit


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



AW: [pfSense Support] 050.2 CARP won't go Master or Backup

2005-09-26 Thread Holger Bauer
0.50.2? I guess you are talking about 0.85.2, if not upgrade! ;-)

I only have experienced such problems if the carpinterfaces didn't match the 
real ip/subnet-range of the real interface the carp interface is running on. 
Another thing to try is to manually disable and enable CARP at 
StatusCARP(failover) in the webgui. If it's working after that there might be 
a problem bringing up everything in the right order. 

There also have been some changes to CARP lately. You might want to run 
update_file.sh -all from the shell to grab the latest changes.

Holger



-Ursprüngliche Nachricht-
Von: Frimmel, Ivan (ISS South Africa) [mailto:[EMAIL PROTECTED]
Gesendet: Montag, 26. September 2005 09:34
An: support@pfsense.com
Betreff: [pfSense Support] 050.2 CARP won't go Master or Backup 


HI 

I have Carp running successfully on 0.50. Upgraded yesterday to 050.2
and CARP absolutely refuses to start. OPT1 is up. PPPoE is UP. CARP goes
to INIT and does not ever go master or backup. 

I deleted all CARP configs and recreated everything from scratch. On
both boxes CARP will not start. Hitting Disable / enable makes it go
from disable to INIT.. but never starts. Even tried doing everything
with the second box physically turned off. No difference.

Any ideas? 
Tx
Ivan.


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



Virus checked by G DATA AntiVirusKit


-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]