Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
24.1 Legacy Series
»
CARP Issue
« previous
next »
Print
Pages: [
1
]
Author
Topic: CARP Issue (Read 893 times)
opns-newb
Newbie
Posts: 7
Karma: 0
CARP Issue
«
on:
March 21, 2024, 03:54:22 pm »
Hello,
We have a setup of two opns firewalls (DEC4040's running opns-business 23.10.2) in a HA configuration. They are connected with direct pfsync interface and each have two WAN connections. We have five (5) CARP interfaces and a WAN Gateway Group configured on each.
The CARP interfaces are for our three internal subnets and our two WAN connections. We're experiencing an issue whereby if any of the WAN modems fails, all CARP interfaces are switching from the primary firewall (Master) to the backup firewall. Also, when the WAN modem comes back up, the CARP interfaces aren't automatically switching back to the primary firewall.
I've attached a diagram of our setup as a reference.
Any insight as to why this behavior is occurring would be greatly appreciated.
Thanks!
«
Last Edit: March 21, 2024, 03:56:09 pm by opns-newb
»
Logged
opns-newb
Newbie
Posts: 7
Karma: 0
Re: CARP Issue
«
Reply #1 on:
March 21, 2024, 03:58:41 pm »
Mods - can you please move this to the HA forum? Thank you!
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: CARP Issue
«
Reply #2 on:
March 21, 2024, 10:25:18 pm »
Screenshot of System : HA : Settings of both please
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
opns-newb
Newbie
Posts: 7
Karma: 0
Re: CARP Issue
«
Reply #3 on:
March 21, 2024, 10:36:20 pm »
opns-01 (primary firewall) HA settings are attached here.
«
Last Edit: March 21, 2024, 10:49:13 pm by opns-newb
»
Logged
opns-newb
Newbie
Posts: 7
Karma: 0
Re: CARP Issue
«
Reply #4 on:
March 21, 2024, 10:36:47 pm »
opns-02 (backup) is attached here.
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: CARP Issue
«
Reply #5 on:
March 22, 2024, 08:26:27 am »
Looks good, then screenshot of Interfaces : Virtualisierung IPs : Status when backup didnt switch back
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
opns-newb
Newbie
Posts: 7
Karma: 0
Re: CARP Issue
«
Reply #6 on:
March 22, 2024, 02:16:19 pm »
Here's opns-01 (primary) CARP status page.
Logged
opns-newb
Newbie
Posts: 7
Karma: 0
Re: CARP Issue
«
Reply #7 on:
March 22, 2024, 02:16:40 pm »
Here's opns-02 (backup) CARP status page.
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: CARP Issue
«
Reply #8 on:
March 22, 2024, 02:29:01 pm »
Screenshots of this situation "Also, when the WAN modem comes back up, the CARP interfaces aren't automatically switching back to the primary firewall."
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
opns-newb
Newbie
Posts: 7
Karma: 0
Re: CARP Issue
«
Reply #9 on:
March 22, 2024, 02:31:58 pm »
I can't force the issue to happen now and take a screenshot since it's a production network.
But what does happen is that opns-02 (backup FW) becomes a Master on all CARP interfaces. The only way to get it to relinquish Master status is by temporarily disabling CARP on it to force it to switch back over to opns-01.
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
24.1 Legacy Series
»
CARP Issue