OPNsense Forum

English Forums => General Discussion => Topic started by: lmgmelim on September 08, 2024, 11:53:43 PM

Title: 2 Firewalls with 2 switches and one PUBLIC IP
Post by: lmgmelim on September 08, 2024, 11:53:43 PM
hey

We want to put 2 OPENSENSE firewalls woking with High Avaibaility (same public IP.). Behind, we have 2 switches (2 SPINE Switches).

From my understanting, OPENSENSE HA works as Active\Master (not a CLUSTER), but my 2 SPINE switches work as ACTIVE\ACTIVE

Can i connect the first switch directly do the first OPENSENSE and the second switch to the second OPENSENSE? it wiil work since theres is only one ACTIVE NODE on the firewall side? What is the best way to connect 2 firewalls and 2 switches in my scenario?
Title: Re: 2 Firewalls with 2 switches and one PUBLIC IP
Post by: Patrick M. Hausen on September 09, 2024, 08:59:55 AM
Can the switches do MLAG aka multi chassis LACP aka "stacking"? In that case connect each OPNsense to both switches with a LAGG interface and if you need to further separate internal networks use VLANs on top of that.