Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    LAGG in Bridge

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    13 Posts 4 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      hkjarral
      last edited by

      So I have 2 pfsense machines with quad port nics.

      SwitchC
      |
      PfsenseA -------- PfsenseB
      | |
      SwitchA
      SwitchB

      I am trying to setup HA without getting into CARP and other settings.

      Right now, I am using one Pfsense in bridge mode.

      The aim is to have multiple links from SwitchC in bridge mode to SwitchA and SwitchB with load sharing and fault tolerance.

      So logically I want 4 links coming down. 2 to each pfsense.
      And 2 going to switch A and 2 going to switchB.

      I want to keep using bridge mode as well.

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        OK. Good luck with that.

        Make two laggs then make a bridge using them as member interfaces.

        No idea if it will work.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • H
          hkjarral
          last edited by

          Will post an update if its successful :)

          1 Reply Last reply Reply Quote 0
          • H
            hkjarral
            last edited by

            LAGGs cant be added in a Bridge. They just dont show up in Bridge Tab once added to LAGG.

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              That does not surprise me.

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • H
                hkjarral
                last edited by

                I figured it out so wanted to post an update.

                It worked out I just needed to delete all the interfaces, create LAGGs first then enable them, and then add them to bridge. It worked.

                O P 2 Replies Last reply Reply Quote 1
                • O
                  omars @hkjarral
                  last edited by omars

                  Hi @hkjarral, I'm planning to do the same setup as you have done, Switch 1 with LAGG to pfsense, Switch 1 connected to Switch 2, and Switch 2 connected to pfsense with bridged ports. Both have RSTP. Have you noticed any performance issues with the bridged setup in pfsense (CPU usage)? Or does RSTP take care of NOT passing data between the bridged ports?

                  H 1 Reply Last reply Reply Quote 0
                  • H
                    hkjarral @omars
                    last edited by

                    @omars nothing noticeable, it has been working smoothly for several years now.

                    1 Reply Last reply Reply Quote 1
                    • P
                      PrieserMax @hkjarral
                      last edited by

                      @hkjarral Hello,
                      I deleted all the interfaces as you said and then created the LAGGs via the wizard over CLI
                      There I also created the LAGGs (LACP).
                      -> Sadly I'm still not able to add them to a bridge
                      How did you "enable" them? I was not able to find an option for that under the LAGG-configuration in OPNsense.
                      Greetings from DE
                      Max

                      H 1 Reply Last reply Reply Quote 0
                      • H
                        hkjarral @PrieserMax
                        last edited by

                        @PrieserMax I did it in pfsense GUI. I am not sure how cli amd opnsense would work.

                        P 1 Reply Last reply Reply Quote 0
                        • P
                          PrieserMax @hkjarral
                          last edited by

                          @hkjarral Hey
                          Thank you for your fast answer.
                          I'm probably dumb, didn't see this thread is about PFsense...
                          I tried to create the bridge via GUI, but of course it is different.
                          Anyways, thank you.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.