PFSync question

2012-10-17 Thread Bennett Samowich
I just had an event that I'm having trouble identifying the root cause. I'm hoping that someone might have encountered this or might be able to point me toward some things to check. Yesterday we had an event where our primary firewall would stop passing traffic. The only thing short of a reboot

Re: PFSync question

2012-10-17 Thread Tyler Morgan
On 10/17/2012 8:51 AM, Bennett Samowich wrote: I just had an event that I'm having trouble identifying the root cause. I'm hoping that someone might have encountered this or might be able to point me toward some things to check. Yesterday we had an event where our primary firewall would stop

Re: PFSync question

2012-10-17 Thread Bennett Samowich
Thanks ... dmesg attached for both firewalls. Basic network configuration is: * 10Gb LR to external-1 ( default route ) * 1Gb to external-2 ( specific routes ) * 10Gb to dmz * 10Gb to internal network 1 * 1Gb to internal network 2 * 1Gb pfsync ( currently x-over cable ) * 10Gb trunked to 9 other

Re: PFSync question

2012-10-17 Thread Bennett Samowich
bah! I missed conveying this point in my haste to send the original post ( many apologies ). When the firewalls stopped passing traffic they didn't stop all together but rather it seemed that anything with established state continued to pass but anything seeking new state was not passed even

Re: PFSync question

2012-10-17 Thread Bennett Samowich
Our main traffic is 10Gb here so we do move a lot of data. I just changed the pfsync interface from using a direct cable leveraging 1Gb's autosense to connecting to a switch. The interesting thing is that I seem to have recovered some of my lost throughput performance since making that change.

pfsync question

2010-05-28 Thread Alessandro Baggi
Hi list. I've a question about pfsync. Suppose that I've two openbsd firewall with carp e pfsync with this scenario: fw 1:fw 2: em0 rl0WAN rl0 rl1 LAN rl1

Re: pfsync question

2010-05-28 Thread Henning Brauer
* Alessandro Baggi alessandro.ba...@gmail.com [2010-05-28 14:36]: Hi list. I've a question about pfsync. Suppose that I've two openbsd firewall with carp e pfsync with this scenario: fw 1:fw 2: em0 rl0WAN rl0