Semi active configuration

Started by akanarya, January 08, 2021, 10:00:27 AM

Previous topic - Next topic
Hi,
I am experimenting opnsense capability while rebuilding the network design of my business.
Firstly thanks to the developers and the contributors.

My question:
I have 2 different purpose opnsense firewalls with IDS/IPS enabled.
I want to do high avalibility between them.
I will merge configuratons and policies in both firewalls to make them identical.

** However I want to use both of them in active mode.

Say;
For each firewall, there will be 2 pair of LAN<>WAN connections.
Under normal conditions:
At FW1; LAN1<>WAN1 will be active, LAN2<>WAN2 will be passive
At FW2; LAN1<>WAN1 will be passive, LAN2<>WAN2 will be active

If FW1 fails, LAN1<>WAN1 will be active at FW2
If FW2 fails, LAN2<>WAN2 will be active at FW1

Is this configuration possible?
Thanks
Ali