XMLRPC Replication not longer working

Started by shorty.xs, January 30, 2025, 12:37:05 PM

Previous topic - Next topic
Hi there,
we are on the business edition of OPNSense and the HA XMLRPC Sync stoped working.

Version  24.10.1 on both systems
HA Interface was set to 10.0.201.1/30 Master and 10.0.201.2/30 Slave
HA Interface Firewall set to any on both sides, cable is connected directly.
Ping works in both directions
Cron Job runs every 10 minutes, to sync the settings over to my slave.

2025-01-30T11:31:15 Error opnsense-business /usr/local/etc/rc.filter_synchronize: An error occurred while attempting XMLRPC sync with username root and https://10.0.201.2/xmlrpc.php fetch error. remote host down?

I don't know exactly when it stoped working.
While adding the CARP Addresses all worked fine, so I only added them on my master and they were alle synced over.

Also the Failover works fine, I just might not have the latest settings on my Slave Firewall.

I changed the IPs on both sides to 10.0.0.1/24 and 10.0.0.2/24 as shown in the docs example, but no change.
2025-01-30T12:21:15 Error opnsense-business /usr/local/etc/rc.filter_synchronize: An error occurred while attempting XMLRPC sync with username firewall-ha and https://10.0.0.2/xmlrpc.php fetch error. remote host down?
I also added a dedicated sync user, as I inteded to do anyway but no change.

As soon as I click on HA Status on the master, the system stops responding and even seems to failover to the slave.

How can I debug further, I have no clue what the problem can be.
Any Help is welcome.

OK, right after posting this, I found the reason, by reading other posts.

The hint was, that somebody had change the port for the admin web GUI.
At some point while hardening my setup, I must have reduced the admin interface to no longer listen an all network interfaces.
After I added my HA interface to the mix, all works fine again.

There's a reason for the wording "All (recommended)".
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do. (Isaac Asimov)