Hello all,

just curious on a strange behaviour of an active/active firewall configuration:

when I do a "tcpdump -nei pfsync0" to watch what sort of state updates are passed and do a "tail -f /var/log/messages" I see that in the moment the command is issued the VHID CARP interfaces on that firewall are demoted from MASTER to BACKUP, just to go back from BACKUP to MASTER a second later.

   When I stop the tcpdump the same behaviour happens.

Doing the tcpdump on the physical interface does not have such an effect.

   What am I missing?

Marcus

Reply via email to