Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - hellfirehd

#1
18.1 Legacy Series / Re: CARP - OPNSense slow!
July 28, 2018, 10:03:34 PM
Quote from: cmu on July 26, 2018, 09:11:26 PM
It turned out, that there were missing FW Rules between the CARP interfaces. Did you proof that?

Yes.  We add a Pass rule to the CARP interfaces on both firewalls but it disappears on the slave, sometimes within seconds after creating it.
#2
18.1 Legacy Series / Re: CARP - OPNSense slow!
July 26, 2018, 08:16:55 PM
We are experiencing similar issues.  I'm running OPNsense 18.1.13-amd64 on two identically configured HP DL360 G5 (OFW-A and OFW-B) configured for high availability.  Interfaces are named the same with the same assignments as follows:

WAN (em0)
LAN (em1)
CARP (bce2)

OFW-A CARP is plugged directly into OFW-B CARP with no switch involved.

In order to get pfSync to work we had to add an Allow rule to the CARP interface on OFW-B.  As long as that rule is present, the web interface on OFW-A is responsive.  However, the allow rule on OFW-B disappears all the time breaking the HA and the killing OFW-A web interface performance.