• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

DHCP/CARP

Scheduled Pinned Locked Moved HA/CARP/VIPs
9 Posts 3 Posters 9.1k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    scorpionsforgotgmail.com
    last edited by Jul 29, 2016, 11:41 AM

    Good Morning,
    Continuing the investigation of my problem in dhcp / carp. I managed to solve part of it. However, I noticed that the behavior is not correct. When the dhcp master is enabled and the slave too (after the slave restart), I see that for a few minutes (see image below) the funcinamento is normal, the message on the slave recover-wait is displayed correctly and the partner-down master . The problem is that after a few minutes this setting is changed. Both DHCPs are like My stare normal (See picture). I do not know what could be, since for a few minutes the two usually work in sync. Anyone know what to do to solve this?

    Normal

    Thanks
    normal1.png
    normal1.png_thumb
    ![not normal.png](/public/imported_attachments/1/not normal.png)
    ![not normal.png_thumb](/public/imported_attachments/1/not normal.png_thumb)

    1 Reply Last reply Reply Quote 0
    • D
      Derelict LAYER 8 Netgate
      last edited by Jul 29, 2016, 11:53 AM Jul 29, 2016, 11:49 AM

      normal/normal is what you want.

      You have received the same answer on the mailing list already:

      scorpionsforgot@gmail.comwrote:
      Good Morning

      The dhcp in secondary carp is even distributing IP with the active
      master . Anyone know how to solve this ?/scorpionsforgot@gmail.com

      It's not a problem, that's how it's supposed to work.

      That's from cmb. You can consider it correct.

      Chattanooga, Tennessee, USA
      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
      Do Not Chat For Help! NO_WAN_EGRESS(TM)

      1 Reply Last reply Reply Quote 0
      • S
        scorpionsforgotgmail.com
        last edited by Jul 29, 2016, 12:00 PM

        Sory, I did not understand.

        This can not be normal behavior. There can be two DHCPs network distributing IP, the slave may even become active, but can not deliver IP. If you look at the images, the first image shows it as it should be. In the second image, the two servers are as normal state. And both deliver ip. This can not, should not happen.

        1 Reply Last reply Reply Quote 0
        • D
          Derelict LAYER 8 Netgate
          last edited by Jul 29, 2016, 12:33 PM Jul 29, 2016, 12:30 PM

          No. The first image shows it as it is in recovery mode after a failure.

          The second, the one that says normal/normal is how it is supposed to be. That's why the state of both nodes is normal. Look up the English word normal.

          It is by design. They split the pool and keep track of the leases each node has assigned.

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • S
            scorpionsforgotgmail.com
            last edited by Jul 29, 2016, 12:48 PM

            derelict
            Thanks for your answer. From what you said, right then he would be with normal status in both and not as in the first image. OK! Now the doubt more important if this state "Normal " for the two DHCPs when this state are distributing IP , and another image with status recover -wait just a delivery . We can not have two DHCPs distributing IP on the same network , sorry , for me this behavior may not be correct . If in the normal state , and only the master was distributing IP , ok , but the two distributing ip , this is wrong . What do you think is the problem?

            1 Reply Last reply Reply Quote 0
            • D
              Derelict LAYER 8 Netgate
              last edited by Jul 29, 2016, 3:10 PM

              You can when they are working together by design.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • P
                piwwo
                last edited by Aug 26, 2016, 9:29 AM

                I think that I actually have the same issue: Both servers are providing an IP and a route to a request but only the master should (or the failover backup when the master is not responding)

                This question seems to be from a Windows-Environment and not ISC dhcp but the behaviour should be the same, or?

                DHCP Failover partnerships create a hash of the client MAC address when a lease request is recieved. Both servers will know which hashes it needs to respond to and both servers should be able to see requests. If a request goes unanswered after a handful of tries from the client, the partner server will respond with a short term lease from its IP pool equal to the MCLT length. (So it can expire the lease quickly when the unavailable server is back up).

                http://serverfault.com/questions/614331/dhcp-failover-didnt-work-when-one-server-was-offline

                1 Reply Last reply Reply Quote 0
                • D
                  Derelict LAYER 8 Netgate
                  last edited by Aug 26, 2016, 9:37 AM

                  Pretty much all I can say is if you do not like the way ISC DHCPD works (and therefore pfSense as a DHCP server), use a different DHCP server.

                  What is the problem you are seeing that you are trying to solve?

                  Both nodes work together by design to serve the DHCP load. They cooperate as a unit. It is not the same thing as having a second, or rogue, DHCP server on your network.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • P
                    piwwo
                    last edited by Aug 26, 2016, 9:43 AM

                    No, I am not complaining about ISC, I know the server is widely used in many Linux/Unix environments. I just wanted to know if this was a missconfiguration on my side or normal behaviour.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                      This community forum collects and processes your personal information.
                      consent.not_received