Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    CARP + Stacked IP Aliases causing CARP conflicts on 2.2.2-RELEASE

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    2 Posts 1 Posters 742 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V Offline
      vortura
      last edited by

      I've run into a problem today trying to configure IP aliases for a CARP virtual IP on a pair of devices running 2.2.2-RELEASE. Using the Web UI on the primary firewall, I enter details for a new IP alias on an existing CARP address, and click save. This returns me to the Virtual Address List, where there is a prompt and a button to apply the changes. However, it seems that before clicking apply, the changes have already been synced to the secondary firewall and applied there. Furthermore, the different configuration between the primary and secondary devices results in them both thinking they are MASTER for the underlying CARP address, resulting in IP duplication. As soon as I click apply on the primary firewall GUI, the address appears in the ifconfig output for that device, and the CARP conflict resolves, with the secondary device demoting itself to BACKUP.

      Am I doing something stupid here? Has anybody else come across this problem?

      1 Reply Last reply Reply Quote 0
      • V Offline
        vortura
        last edited by

        One more thing I've noticed - the behaviour seems to be the same when adding new CARP VIPs. When you click save to add a VIP, it is immediately synced and applied to the secondary node, and only gets applied on the primary after clicking 'apply'. It's not so much of a problem in that case of course, because it's a new VIP, and doesn't matter if it's MASTER on the secondary initially.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.