OPNsense Forum

English Forums => High availability => Topic started by: andrema2 on August 09, 2024, 08:51:37 PM

Title: Since 24.7 my HA is not syncing
Post by: andrema2 on August 09, 2024, 08:51:37 PM
Since I upgraded my syncing is not working. I receive this message on HA Status The backup firewall is not accessible or not configured.

I can ping the backup interface from the master and vice-versa. Both has the interfaces as identifier opt1 and Device vtnet2.

What can be happening ?
Title: Re: Since 24.7 my HA is not syncing
Post by: Patrick M. Hausen on August 09, 2024, 08:53:52 PM
What firewall rules do you have on the OPT1 interfaces? Did you change System > Settings > Administration > Listen interfaces in any way?
Title: Re: Since 24.7 my HA is not syncing
Post by: andrema2 on September 02, 2024, 10:48:40 PM
Quote from: Patrick M. Hausen on August 09, 2024, 08:53:52 PM
What firewall rules do you have on the OPT1 interfaces? Did you change System > Settings > Administration > Listen interfaces in any way?

I implemented a rule that allows any IPV4 any protocol in on each box. As per the listening interfaces at the administration page, it is set for LAN only.

I can ping each others Sync IPs from both shells interfaces.
Title: Re: Since 24.7 my HA is not syncing
Post by: Patrick M. Hausen on September 02, 2024, 10:53:17 PM
Set listening interfaces to "All (recommended)". If the UI and API is not listening on the HA interface how do you expect the config sync to work?
Title: Re: Since 24.7 my HA is not syncing
Post by: newsense on September 02, 2024, 11:47:49 PM
This may apply to you as well

https://forum.opnsense.org/index.php?topic=42549.0 (https://forum.opnsense.org/index.php?topic=42549.0)