Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense Authentication on second device from HA

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    6 Posts 2 Posters 848 Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M Offline
      martinaz
      last edited by

      Hello,
      I have a dummy question, I don't know if this is normal or if I need to do something else.

      I have configured HA on my Pfsense firewalls and set auth login with LDAP. I can log in with my username and pass from LDAP on the primary firewall, but on the secondary device, I can log in only with an admin pass. (the username and pass from LDAP doesn't work, I mention that the cluster works because is doing the replication): Is this a normal behavior for the secondary device?

      S 1 Reply Last reply Reply Quote 0
      • S Offline
        SteveITS Rebel Alliance @martinaz
        last edited by

        @martinaz If you mean the HA config sync, I also found it only works with "admin" even though there is a field to type in the username.

        Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
        Upvote 👍 helpful posts!

        1 Reply Last reply Reply Quote 0
        • M Offline
          martinaz
          last edited by

          No, when i want to login via GUI to the second device I can;t use the username and LDAP pass works only with local admin

          S 1 Reply Last reply Reply Quote 0
          • S Offline
            SteveITS Rebel Alliance @martinaz
            last edited by

            @martinaz ah. I have not set that up. Note not everything syncs in HA…there is a list of checkboxes to sync, but you might double check the second router that the LDAP auth is actually configured.

            Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
            Upvote 👍 helpful posts!

            1 Reply Last reply Reply Quote 0
            • M Offline
              martinaz
              last edited by

              @SteveITS
              The config is set on both devices also the checkboxes are checked, for example, if I failover the secondary device and make it primary, I can login in on the secondary pfsense with ldap . The issue that I have now is that I can;t login GUI on the secondary pfsense devices using LDAP account works only with local user but this issue is only secondary devices.

              1 Reply Last reply Reply Quote 0
              • M Offline
                martinaz
                last edited by

                @SteveITS Solved the issue.

                After reboot works on both devices.
                Thanks a lot for your support!

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.