Firewall rule for CARP on ipv6?

Started by ferrets, February 18, 2019, 09:08:02 AM

Previous topic - Next topic
February 18, 2019, 09:08:02 AM Last Edit: February 18, 2019, 09:15:42 AM by ferrets
Hi, I'm an newbie to bsd and I do think OPNsense is good for testing and learning.

I've deployed two OPNsense on a proxmox server and tried the CARP feature but meet some problems, the CARP on ipv4 works fine, but the CARP on ipv6 will become dual masters on WAN interface and not things goes wrong on LAN interface.

guessing it's a firewall problem

so I tried to add some firewall rules to WAN interface but it doesn't help.

finally, I turn the whole firewall off and that "fix" the problem.

after some google, I cannot find any further information about the protocol and how to pass it on firewall.

hope to get some help here

I had the problem a long time. It turned out to be a problem of the switches to which WAN was connected; IGMP snooping had to be disabled.