On 2014-07-24, Peter Hessler <phess...@theapt.org> wrote: > if the addresses on the carp interface are out of sync, then the hashes > won't mash, and the firewalls *WILL* conflict with each other. > > I recommend one IP per carp interface. Far nicer in case you screw that > bit up, and much easier to balance IPs to one system or the other.
That's going to involve a fair bit of multicast chatter for 60 addresses, if binding addresses to carp interfaces is unavoidable I'd usually try to go for the "don't screw up" option :)