Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
High availability
»
Help with HA cluster and IPSEC tunnel
« previous
next »
Print
Pages: [
1
]
Author
Topic: Help with HA cluster and IPSEC tunnel (Read 175 times)
EHRETic
Newbie
Posts: 37
Karma: 0
Help with HA cluster and IPSEC tunnel
«
on:
May 24, 2024, 01:31:46 pm »
Hi there,
I set up a new HA cluster for my home infra and so far, migration has been great, everything seems to be working as expected. HA works when I switch CARP manually or if I shutdown/restart the master.
Everything... except my IPSEC VPN tunnel that doesn't switch over.
My Phase 1 is configured to the WAN CARP IP and I also tried to disable MOBIKE as mentioned here
https://forum.opnsense.org/index.php?topic=19244.0
pfsync interface is a dedicated cable and there is a rule that allows everything between both FWs.
As I'm
fairly new to HA
, I don't know what to expect here but I tried to switchover/restart the master and also tried to shut it down for 10 minutes but this didn't help, IPSEC tunnel is only coming back after master is up again.
IPSEC tunnel is still in the legacy mode, I don't know if switching to the newer version would help.
Where can I start looking? Thanks in advance
K.R
Franck
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
High availability
»
Help with HA cluster and IPSEC tunnel