On Mon, 2007-05-21 at 14:01 +0200, Alberich de megres wrote: > But i got a question: carp0 for example, uses em0 to listen my shared IP, > and sends advsken on this nic ( em0 ). The same thing with internal lan carp > device. But i don't want carp advske to travel in all net. I got a third > NICs used by pfsync ( rl0 ), is it some way to send carp advskew throught > rl0?
This makes no sense. You need to exchange CARP heartbeats through the link on which you are sharing the IP address or you won't be monitoring availability of all network segments connected to the firewall. Also CARP uses authentication when exchanging messages. ciao Luca