IMHO you don't need CARP for a redundant Bridge when you enable stp (which is enabled in PFSense) I testet a "Failoverbridge" with an older version and it worked for me...

Am 26.06.2006 um 15:59 schrieb Scott Ullrich:

CARP and bridging currently do not work together.

On 6/26/06, Tristan DEFERT <[EMAIL PROTECTED]> wrote:
Hi list,

I recently moved from Linux/Debian/IPtables(shorewall) to pfSense
because of redundancy possibility with pfsync+carp.

I got two computers with the same hardware and 5 Ethernet interfaces
each.

So i set up the 5 interfaces as following:

Master FW:
LAN (private IP 192.168.33.2)
WAN (public IP my.ip.class.3)
DMZCORPORATE (bridged with WAN)
DMZCLIENTS (bridged with WAN)
SYNC (10.10.10.100 dedicaced to CARP)


Slave FW:
LAN (private IP 192.168.33.3)
WAN (public IP my.ip.class.4)
DMZCORPORATE (bridged with WAN)
DMZCLIENTS (bridged with WAN)
SYNC (10.10.10.101 dedicaced to CARP)

And Virtual IPs like this:

Virtual LAN (private IP 192.168.33.1, acting as gateway for LAN network)
Virtual WAN (public IP my.ip.class.2 with gateway my.ip.class.1
[provider router] )

My question is:
how do i setup the bridge together with virtual IPs ?
i want the Virtual WAN IP to be bridged to DMZCORPORATE and DMZCLIENTS

I'm a bit confused, and want to know if someone has already realised
such a setup.

Thx a lot for support!

Regards,

Tristan






---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]



---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


--
kommunity GmbH & Co.KG
Tom Müller-Kortkamp
Netzwerke & Internet
Goseriede 4
D-30159 Hannover

Phone +49 (0)5 11 - 80 72 58 0
Fax +49 (0)5 11 - 80 72 58 10
http://www.kommunity.net



---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to