OPNsense Forum
English Forums => High availability => Topic started by: davburns on November 16, 2022, 11:00:38 pm
-
I am wondering if I can use two OPNsense firewalls in transparent mode, synchronized with pfSync. I read the HA documentation and it seems to exclusively deal with CARP.
I know I can do this with more expensive cisco, Juniper, or Palo Alto firewalls, but I'm hoping to spend less (money) for a solution that is free-er (as in speech.)
-
Yes, this would be possible.
A transparent filtering bridge, then an HA interface with an IP subnet to sync two OPNsense HA pair of firewalls.
-
Do you have a link to any kind of network diagram or guide?
-
https://docs.opnsense.org/manual/how-tos/transparent_bridge.html (https://docs.opnsense.org/manual/how-tos/transparent_bridge.html)
Then, just setup your HA interface on opt2 or opt3 interface or whatever for sync between the firewalls.