On 2/9/2011 10:09 PM, Chris Buechler wrote:
On Wed, Feb 9, 2011 at 8:51 PM, Vaughn L. Reid III
<vaughn_reid_...@elitemail.org>  wrote:
My understanding of forwarding also was that address learning is a normal
part of switch operation.  But, I find it odd that turning that off lets the
fail-over box ping the CARP IP on the primary box, with address learning on,
I am unable to do that.

A clarification about the Carp setup -- Each PfSense server has a dedicated
interface connected to each other via a crossover cable.  This is the
interface that is configured to send and receive pfsync and its related
traffic in the carp setup page.  The firewall rules for this dedicated
interface on each server are to allow all traffic on the interface.

With a dedicated interface for the Carp related stuff to use, do the other
interfaces still send and receive multi-cast pfsync traffic?

No but they send the multicast CARP traffic on all interfaces where a
CARP IP resides.


Thanks for this clarification.
---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org


---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org

Reply via email to