Pfsense HA CARP with mode only routing (firewall disabled)
-
Hi all, I have set up a small lab to try to install PfSense in HA, I have it set up and working.
However I need pfsense to work in routing only mode (advanced->Firewall&NAT->disable firewall x) and as soon as I switch to routing only mode the routing stops working and pfsense doesn't work, is there any incompatibility with this method?
Thanks
-
@virusbcn I don’t know the answer to your question but to double check you’re not using NAT? That also turns off NAT.
Could you leave it on and create an allow all rule on each interface?
-
@steveits Yes, when i check the option disable firewall the NAT turns off.
The virtual IP not respond to ping when disable firewall, turn on again and HA its working again, seems that this config its not compatible with HA maybe ???
-
The problem is the primary pfsense router not have the route to back pfsense HA, i not think about that, its ok now
-
FYI- You can disable NAT and route without also disabling the firewall.
Firewall > NAT, Outbound tab, set it to Disable Outbound NAT and save/apply.