Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    LAGG in Bridge

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    13 Posts 4 Posters 2.4k Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DerelictD Offline
      Derelict LAYER 8 Netgate
      last edited by

      Why would you want to do what?

      Chattanooga, Tennessee, USA
      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
      Do Not Chat For Help! NO_WAN_EGRESS(TM)

      1 Reply Last reply Reply Quote 0
      • H Offline
        hkjarral
        last edited by

        So I have 2 pfsense machines with quad port nics.

        SwitchC
        |
        PfsenseA -------- PfsenseB
        | |
        SwitchA
        SwitchB

        I am trying to setup HA without getting into CARP and other settings.

        Right now, I am using one Pfsense in bridge mode.

        The aim is to have multiple links from SwitchC in bridge mode to SwitchA and SwitchB with load sharing and fault tolerance.

        So logically I want 4 links coming down. 2 to each pfsense.
        And 2 going to switch A and 2 going to switchB.

        I want to keep using bridge mode as well.

        1 Reply Last reply Reply Quote 0
        • DerelictD Offline
          Derelict LAYER 8 Netgate
          last edited by

          OK. Good luck with that.

          Make two laggs then make a bridge using them as member interfaces.

          No idea if it will work.

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • H Offline
            hkjarral
            last edited by

            Will post an update if its successful :)

            1 Reply Last reply Reply Quote 0
            • H Offline
              hkjarral
              last edited by

              LAGGs cant be added in a Bridge. They just dont show up in Bridge Tab once added to LAGG.

              1 Reply Last reply Reply Quote 0
              • DerelictD Offline
                Derelict LAYER 8 Netgate
                last edited by

                That does not surprise me.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • H Offline
                  hkjarral
                  last edited by

                  I figured it out so wanted to post an update.

                  It worked out I just needed to delete all the interfaces, create LAGGs first then enable them, and then add them to bridge. It worked.

                  O P 2 Replies Last reply Reply Quote 1
                  • O Offline
                    omars @hkjarral
                    last edited by omars

                    Hi @hkjarral, I'm planning to do the same setup as you have done, Switch 1 with LAGG to pfsense, Switch 1 connected to Switch 2, and Switch 2 connected to pfsense with bridged ports. Both have RSTP. Have you noticed any performance issues with the bridged setup in pfsense (CPU usage)? Or does RSTP take care of NOT passing data between the bridged ports?

                    H 1 Reply Last reply Reply Quote 0
                    • H Offline
                      hkjarral @omars
                      last edited by

                      @omars nothing noticeable, it has been working smoothly for several years now.

                      1 Reply Last reply Reply Quote 1
                      • P Offline
                        PrieserMax @hkjarral
                        last edited by

                        @hkjarral Hello,
                        I deleted all the interfaces as you said and then created the LAGGs via the wizard over CLI
                        There I also created the LAGGs (LACP).
                        -> Sadly I'm still not able to add them to a bridge
                        How did you "enable" them? I was not able to find an option for that under the LAGG-configuration in OPNsense.
                        Greetings from DE
                        Max

                        H 1 Reply Last reply Reply Quote 0
                        • H Offline
                          hkjarral @PrieserMax
                          last edited by

                          @PrieserMax I did it in pfsense GUI. I am not sure how cli amd opnsense would work.

                          P 1 Reply Last reply Reply Quote 0
                          • P Offline
                            PrieserMax @hkjarral
                            last edited by

                            @hkjarral Hey
                            Thank you for your fast answer.
                            I'm probably dumb, didn't see this thread is about PFsense...
                            I tried to create the bridge via GUI, but of course it is different.
                            Anyways, thank you.

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.