Adding HA/CARP/SYNC to existing Infrastructure
-
Good morning all,
I have an environment that is has been operational for a few years now, which is running the latest version. and I am now about to add a new node and enable high availability for the deployment.
I have done HA/CARP/SYNC setup before in an environment that was new; however, I have never added it on.
The machines are identical, but naturally, there has been a lot of configuration performed on the first node.
My question is this: Do I need to match ALL of the configurations between both systems before adding HA/CARP/SYNC? Or do I need to just make sure the standard settings are done and the settings will push over to the new node?
THank you!
-
@TheStormsOfFury There's a list (checkboxes) of things it will sync for you: https://docs.netgate.com/pfsense/en/latest/highavailability/settings.html#options-to-synchronize
Some packages have sync options also, e.g. Suricata and pfBlocker (which has some caveats).
It's necessary to have the interfaces added in the same order, so the internal names match.
-
@SteveITS It is sync most of it. I was asking as I'd never "added" on to an existing, just done completely new installs where it was all setup before anything was configured.
Thanks for the reply!
TSoF