Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    A Complete CARP / Failover setup

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    14 Posts 5 Posters 9.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      AudiAddict
      last edited by

      http://doc.pfsense.org/index.php/Configuring_pfSense_Hardware_Redundancy_(CARP)

      2 pfsense machines is fine.

      1 Reply Last reply Reply Quote 0
      • E
        ezzadin
        last edited by

        thanks..

        but this document doesn't say anything about having two ISPs though

        how that works…do I need to have two WAN per each machine? so that means 4 NIC per each

        1 Reply Last reply Reply Quote 0
        • E
          Eugene
          last edited by

          CARP is not for two ISPs but as you fairly mentioned for hardware redundancy. For two ISPs you need LoadBalancer or BGP.

          http://ru.doc.pfsense.org

          1 Reply Last reply Reply Quote 0
          • E
            ezzadin
            last edited by

            thanks…

            ok, so what would I need to setup the loadBalancer? Do I need 1 NIC for pfsync, 1 for the switch and 2 for ISPs? so total of 4 NICs..correct?

            1 Reply Last reply Reply Quote 0
            • E
              ezzadin
              last edited by

              does Pfsense supports BGP?

              1 Reply Last reply Reply Quote 0
              • dotdashD
                dotdash
                last edited by

                OpenBGPd is available as a package.
                As for the NICs, you should have one more on each box than you would for a stand-alone system. This would be for a dedicated sync interface between the boxes.

                1 Reply Last reply Reply Quote 0
                • E
                  ezzadin
                  last edited by

                  thanks

                  How is OpenBGPd? have you ever used it? does it work good?

                  and for the NIC, are you sure that need another one? 1 for syncing, 1 for switch, 2 for ISPs (two ISPs).. total 4 NICs…

                  Am I missing something here?

                  1 Reply Last reply Reply Quote 0
                  • dotdashD
                    dotdash
                    last edited by

                    @ezzadin:

                    How is OpenBGPd? have you ever used it? does it work good?

                    and for the NIC, are you sure that need another one? 1 for syncing, 1 for switch, 2 for ISPs (two ISPs).. total 4 NICs…

                    a) I haven't used it, so I can't comment on how well it works.
                    b) Yes, 2 WANs, LAN, and SYNC would be four interfaces in each. I generally just use a crossover cable for the SYNC.

                    1 Reply Last reply Reply Quote 0
                    • E
                      ezzadin
                      last edited by

                      do you recommend any two-ports Network adapter? something that works with pfsense

                      1 Reply Last reply Reply Quote 0
                      • dotdashD
                        dotdash
                        last edited by

                        I haven't ordered any recently, so I don't know if you can get these anymore. Generally Intel nics are supported, but there are sometimes problems with the newest chipsets. Anyway, I'm running these personally in several boxes, so I'm sure they work with pfSense.
                        Intel PWLA8492MT Dual 10/100/1000 PCI/PCI-X
                        Intel EXPI9402PTBLK Dual 10/100/1000 PCI-e
                        These may be the low-profile numbers, but IIRC, they came with both brackets.
                        If you don't need GB, check ebay for used dual-port Pro100 cards.

                        1 Reply Last reply Reply Quote 0
                        • S
                          Supermule Banned
                          last edited by

                          Can you run Carp with only one public IP adress???

                          I have a minor dicussion with our IT expert, and he believes it will take 3 public IP adresses to run carp with 2 pfsense boxes….

                          What do you guys say about that???

                          1 Reply Last reply Reply Quote 0
                          • dotdashD
                            dotdash
                            last edited by

                            Your IT expert is right. He is the expert after all.
                            (OpenBSD has CARPdev, which allows you to run a cluster with one public IP, but FreeBSD does not have this functionality yet)

                            1 Reply Last reply Reply Quote 0
                            • S
                              Supermule Banned
                              last edited by

                              Super! I need to get more beer then…. :D :D

                              @dotdash:

                              Your IT expert is right. He is the expert after all.
                              (OpenBSD has CARPdev, which allows you to run a cluster with one public IP, but FreeBSD does not have this functionality yet)

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.