CARP Address showing Master on both FWs
-
I have run into this a few times (some times I forget about it until the next time too) and I have not seen the answer here (at least the ones I have read, didn't want to duplicate an answer). If you have a problem with CARP on VMware, make sure your Port Group security is set to allow Promiscuous mode and Forged transmits. MAC address changes can be set to Reject.
-
That's called out in the documentation in several places
https://docs.netgate.com/pfsense/en/latest/book/highavailability/high-availability-troubleshooting.html#issues-inside-of-virtual-machines-esx
https://docs.netgate.com/pfsense/en/latest/highavailability/configuring-high-availability.html#vmware-esx-users
https://docs.netgate.com/pfsense/en/latest/highavailability/troubleshooting-high-availability-clusters.html#hypervisor-users-especially-vmware-esx-esxi
[...]