OPNsense Forum

English Forums => High availability => Topic started by: harrouchi on June 11, 2024, 04:55:10 PM

Title: CARP : Both firewall marked as master
Post by: harrouchi on June 11, 2024, 04:55:10 PM
Hi everyone,

I have configured two firewalls with the aim of achieving high availability. Both firewalls are working well, and PfSync between them is also working correctly. However, I'm facing the following issue:

One interface is marked as Master on both firewalls, while the other 16 interfaces are working as expected (Master on firewall 1 and Backup on firewall 2). When I checked the log files, I saw that when I start the HA, all interfaces are initially Master on firewall 1, then switch to Master on firewall 2, and then switch back to Master on firewall 1 (all within less than a second). However, the problematic interface does not follow this pattern, as if there is no communication between the two firewalls on this interface.

CARP is well configured, and there is a rule in place to allow CARP packets to pass through this interface. I'm running OpnSense 24.1.8.

Thanks for your help!
Title: Re: CARP : Both firewall marked as master
Post by: mimugmail on June 11, 2024, 06:56:42 PM
Then the vlan of the affected interface is not on the ports and/or uplink
Title: Re: CARP : Both firewall marked as master
Post by: harrouchi on June 12, 2024, 10:03:41 AM
The interface and VLAN are well configured. This interface is working well, except for CARP.