On 21/10/20 9:55 am, Lee Nelson wrote: >> Alternatively use a single nic with vlans, and break out to separate >> ports on a managed switch. >> > Yes, that could work too, but this is one side of a pfsync/carp > redundant firewall setup, so I want to keep it as simple as possible.
Silly question, what hardware are the USB NICs plugging into? USB trades off determinism for hot-pluggability, and it seems a firewall, you absolutely do want an interface to appear in a specific location. I'd be looking at something that plugs into the system peripheral bus somehow (PCIe, PCI, ISA, … etc). -- Stuart Longland (aka Redhatter, VK4MSL) I haven't lost my mind... ...it's backed up on a tape somewhere.