OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • High availability »
  • Openvpn and HA
« previous next »
  • Print
Pages: [1]

Author Topic: Openvpn and HA  (Read 1762 times)

cardoso.cristian

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
Openvpn and HA
« on: August 25, 2022, 02:56:39 pm »
Hello

I have two opnsense servers using HA mode with Carp, virtual IP and xmlrpc configured.

I'm using OpenVPN and I was trying to HA this connection too, I currently have the service up on the virtual IP of my external interface, but I noticed that in a possible fall of the primary server, OpenVPN does not turn to the secondary, I don't know if this is standard or should I configure something else, in the documentation I didn't find anything very clear about this.
Logged

Patrick M. Hausen

  • Hero Member
  • *****
  • Posts: 6935
  • Karma: 584
    • View Profile
Re: Openvpn and HA
« Reply #1 on: August 25, 2022, 03:12:25 pm »
You will have to run OpenVPN on both the primary and the backup node. And use the HA CARP address for your clients to connect to.

Failover of active sessions is not implemented, but clients will eventually timeout and reconnect.
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do. (Isaac Asimov)

cardoso.cristian

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
Re: Openvpn and HA
« Reply #2 on: August 25, 2022, 03:45:50 pm »
From the tests I did, that was the conclusion I had reached, as I couldn't find an opnsense documentation with this information, I decided to ask here.

Question clarified, thank you.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • High availability »
  • Openvpn and HA
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2