It's not completely clear - 4) - is the IP 10.1.1.2 on a separate interface? What did you configure carp2 on?
Can you restate your question and/or describe how you want the traffic to flow, as well as your network topology? - Igor On 2/27/17 6:07 AM, Frank White wrote: > hi, > I have 2 firewall in cluster with carp. The following is my configuration > (8.x.x.x are examples for wan ip): > first firewall > 1) bnx0 8.8.8.7 (internet) > 2) bge0 192.168.100.2 (lan) > 3) bnx1 pfsync > 4) 10.1.1.2 dmz > > carp0 8.8.8.8 (internet) > carp1 192.168.100.1 (gateway for the lan) > carp2 10.1.1.1 (gateway for the dmz) > > now I want add the ip 8.8.8.10 to redirect all traffic from it to the dmz... > how should I configure it ? > I know how to redirect the traffic with pf.. my question concern how to > configure carp and the nic.. > for example should I create a new carp with ip 8.8.8.10 and an alias for > the bnx0 with ip 8.8.8.11 ?