CARP

2011-04-04 Thread MAROUNI Abbass
Hello, We have an OpenBSD firewall and we are planning to use CARP to add redundancy. I have a question : The firewall is a production firewall so we can't take it out of production for a long time. I read somewhere that the following is possible : Use the current IP address of the main fir

CARP compatibility

2011-04-19 Thread MAROUNI Abbass
Hello, We have two openBSD installation a 4.6 and 4.8 we setup CARP between the two machines, but things are not working properly. On the internal side of the network we have this (ifconfig -A): Router 1 carp0: flags=8843 mtu 1500 lladdr 00:00:5e:00:01:01 priority: 0 ca

ifstated

2011-04-22 Thread MAROUNI Abbass
Hello, I have some problems with ifstated. First of all I understood that the main task of the default config file for ifstated (/etc/ifstated.conf) is to prevent the MASTER/BACKUP situation, and to force the MASTER/MASTER if a carp interface fails on the master firewall that uses carp. The

Re: Odd CARP behavior

2011-05-20 Thread MAROUNI Abbass
Hello, We had the same problem a few weeks ago, where one interface on the backup machine decides to become master. This will create an ARP conflict as both machines will respond to the ARP request, and that will make it very slow. The first thing to check is wether the two interfaces see eac