HA configuration synchronization with 2 running Tinc VPNs, one per firewall

Started by albi, July 22, 2024, 01:11:11 PM

Previous topic - Next topic
I am running an HA firewall and would of course also like my Tinc VPN to be HA capable. I have a Tinc running on both firewalls, they connect to each other and share a common CARP IP.
I would now have the config automatically synchronized. But I'm afraid that my master will simply overwrite the config of the backup firewall.
To what extent is there logic in there that recognizes the differences and adjusts them automatically? Can I possibly use variables in the config?
I would be grateful for any tips.