Re: psync for sshguard table sync on several hosts

2016-10-11 Thread mxb
Use BGP to distribute list of IP addresses. Like it is done at http://bgp-spamd.net/ <http://bgp-spamd.net/> //mxb > On 11 okt. 2016, at 19:59, Zeus Panchenko wrote: > > Signed PGP part > hi, > > please advise > > I think of pfsync-ing sshguard table content am

Re: pfsync for sshguard table sync on several hosts

2016-10-12 Thread mxb
> On 12 okt. 2016, at 09:05, Zeus Panchenko wrote: > > isn't psync aimed for the tasks like this one? No, it is not. PFSync is for replicating states between two or more nodes(firewalls). ___ freebsd-pf@freebsd.org mailing list https://lists.freebsd

Re: FreeBSD 10-STABLE and CARP states

2014-04-02 Thread mxb
Moving this to freebsd-pf. On 31 mar 2014, at 22:21, mxb wrote: > > Manually setting net.inet.carp.demotion brought BOTH VHIDs in desired state. > pfsync bulk update seems to not put everything back as it should. > > lagg0: flags=8943 metric 0 > mtu 9000 >

Re: FreeBSD 10-STABLE and CARP states

2014-04-02 Thread mxb
options=29 media: Ethernet autoselect status: active vlan: 2 parent interface: lagg0 carp: BACKUP vhid 12 advbase 1 advskew 100 //mxb On 2 apr 2014, at 09:35, mxb wrote: > > Moving this to freebsd-pf. > > On 31 mar 2014, at 22:21, mxb wrote: >

Re: LACP lagg and CARP - ENETDOWN (was: FreeBSD 10-STABLE and CARP states)

2014-04-04 Thread mxb
According my own research around this problem ip_output() at line 839 of ip_carp.c returns ENETDOWN then lagg is configured in LACP mode. On 2 apr 2014, at 15:13, mxb wrote: > > OK, thanks everyone whom replayed. E.g. NONE. > > The problem seems to be related to LACP trunking.