1
19.1 Legacy Series / Re: Setting Up CARP on LAN facing interfaces only
« on: March 02, 2019, 01:59:27 am »
Hi,
Each Virtual Firewall have its own public IP assigned by my ISP.
When there is a failover, of course the LAN users active NAT sessions and mapping will drop and will need to reestablish, but that's not a big problem in this setup.
The bigger problem is that I found out the throughput drops by 50% when I use virtual IP. The same setup, when setting my PC to use the Physical IP of the firewall gives me near line rate 1 Gbps throughput. So I am sure this is not a resource issue.
Any idea what might be causing the throughput drop when using Virtual IP?
I searched around google and this forum and could find sporadically ppl having problems with this but no really concrete solution...
Each Virtual Firewall have its own public IP assigned by my ISP.
When there is a failover, of course the LAN users active NAT sessions and mapping will drop and will need to reestablish, but that's not a big problem in this setup.
The bigger problem is that I found out the throughput drops by 50% when I use virtual IP. The same setup, when setting my PC to use the Physical IP of the firewall gives me near line rate 1 Gbps throughput. So I am sure this is not a resource issue.
Any idea what might be causing the throughput drop when using Virtual IP?
I searched around google and this forum and could find sporadically ppl having problems with this but no really concrete solution...