Hi there,

We currently have two OpenBSD 4.1 boxes acting in failover mode to
serve some of our firewalling needs.

We are also using pfSense 2.0.1 and 1.2.2 for other firewalling needs.

I'm planning to consolidate all these firewalls onto two pfSense 2.1
acting in failover mode, and finally shut down all these old boxes. We
need to use 2.1 snapshots because our boxes are Dell PowerEdge R610 with
the Perc H200 controller, unsupported in earlier releases.

I didn't setup the two OpenBSD boxes, but I've noticed that for some
vlans, their configuration doesn't seem to be complete wrt the following
pfSense related documentation :

http://doc.pfsense.org/index.php/Configuring_pfSense_Hardware_Redundancy_(CARP)

While for most vlans each of two OpenBSD boxes has a distinct IP address
and they share a third distinct IP address as the virtual one (for the
carp interface), on a few vlans only the carp interface is assigned an
IP address : each box doesn't have a distinct IP address.

According to the documentation mentionned above, this configuration is
incorrect. However I can attest that it works, at least when the two
OpenBSD boxes are both online.

So now that I'm trying to replicate the OpenBSD configuration on my
pfSense 2.1 boxes, I'm wondering if I really need 3 distinct IP
addresses on each vlan and what are the consequences of using only one
on the carp interface ?

Thanks for your advice.

bye

--
Jérôme Alet - <jerome.a...@univ-nc.nc> - Direction du Système d'Information
      Université de la Nouvelle-Calédonie - BPR4 - 98851 NOUMEA CEDEX
   Tél : +687 290081                                  Fax : +687 254829
_______________________________________________
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to