Re: [pfSense-discussion] IPSEC routing hack, and CARP, leading to "arpresolve can't allocate route" errors

2010-09-01 Thread Chris Buechler
On Wed, Sep 1, 2010 at 12:23 PM, Paul Mansfield wrote: > > if you recall, to make your pfsense firewall itself be able to talk to a > remote site over an IPSEC tunnel, you need to add a hack which is a > static route to remote network via the LAN address > > if you have a firewall cluster and you

[pfSense-discussion] IPSEC routing hack, and CARP, leading to "arpresolve can't allocate route" errors

2010-09-01 Thread Paul Mansfield
if you recall, to make your pfsense firewall itself be able to talk to a remote site over an IPSEC tunnel, you need to add a hack which is a static route to remote network via the LAN address if you have a firewall cluster and you use the CARP address of the LAN, it does work, but it *seems* to c