• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

FRR/BGP Sessions restarting when disabling an interface - pfSense 2.7.2

FRR
2
2
87
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    dudumiquim
    last edited by Feb 13, 2025, 2:56 PM

    I'm experiencing an unexpected behavior in my setup:

    • 3 gateways
    • 6 BGP sessions over VTI
    • pfSense 2.7.2-RELEASE (amd64)

    When I disable an interface connected to my ISP, all BGP sessions restart. The same happens if my ISP goes down. My expectation is that only the sessions over the affected ISP should go down, while the others remain stable.

    Here’s an example from the logs when I disable the ETH1 interface:

    Feb 13 11:14:44	php-fpm	90326	/interfaces.php: Forcefully reloading IPsec
    Feb 13 11:14:43	snmpd	97722	disk_OS_get_disks: adding device 'ada0' to device list
    Feb 13 11:14:43	php-fpm	90326	/interfaces.php: Resyncing OpenVPN instances for interface ETH1.
    Feb 13 11:14:43	check_reload_status	429	Reloading filter
    Feb 13 11:14:43	check_reload_status	429	Restarting OpenVPN tunnels/interfaces
    Feb 13 11:14:43	check_reload_status	429	Restarting IPsec tunnels
    

    Has anyone encountered this issue? Is there a way to prevent all BGP sessions from restarting when only one ISP goes down?

    Thanks in advance!

    M 1 Reply Last reply Feb 13, 2025, 5:41 PM Reply Quote 0
    • M
      michmoor LAYER 8 Rebel Alliance @dudumiquim
      last edited by michmoor Feb 13, 2025, 5:43 PM Feb 13, 2025, 5:41 PM

      @dudumiquim

      I first reported the issue. There is a redmine.

      https://redmine.pfsense.org/issues/14483

      .
      Has anyone encountered this issue? Is there a way to prevent all BGP sessions from restarting when only one ISP goes down?

      • Disable Gateway Monitoring Actions for your WAN. That somewhat solves one issue but there is instability with Ipsec and FRR

      Firewall: NetGate,Palo Alto-VM,Juniper SRX
      Routing: Juniper, Arista, Cisco
      Switching: Juniper, Arista, Cisco
      Wireless: Unifi, Aruba IAP
      JNCIP,CCNP Enterprise

      1 Reply Last reply Reply Quote 0
      1 out of 2
      • First post
        1/2
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.