On 2008-10-03, Marco Matarazzo <[EMAIL PROTECTED]> wrote: > Communication between vlan[1-3] and vlan[4-6] fails, because traffic > originating from i.e. vlan1 and going to vlan4 does not get routed to FW2, > but remains on FW1 (since the vlan being up creates the local route, even if > the corresponding carp interface is down).
You could try only having an address on the carp interfaces, not the vlan interfaces, then use OSPF to announce to the other firewall...

