Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Updates when using a single WAN VIP, and a option to fix it?

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    16 Posts 3 Posters 1.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      SteveITS Galactic Empire @pomtom44
      last edited by

      @pomtom44 said in Updates when using a single WAN VIP, and a option to fix it?:

      mostly working fine using a private ip network on my WAN with my public IP as the VIP

      If I'm following, this should be fine as long as they can get to the Internet. We have a client set up that way as Comcast still allows their 10.1.10.x subnet to work on a "bridged" router. The update is just outgoing HTTPS requests. I've always failed over manually (update backup, enter CARP maintenance on primary, update primary, undo maintenance mode). Pretty sure that's how the docs suggest. (been a while since I've read them)

      Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
      When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
      Upvote ๐Ÿ‘ helpful posts!

      P 1 Reply Last reply Reply Quote 0
      • P
        pomtom44 @SteveITS
        last edited by

        @steveits
        That parts okay, the problem is the failing over with a single public IP as only one router can get updates at a time
        the docs assume both routers have internet
        EG update the secondary first
        but for me the only way I can update the secondary is if I make it failover manually, meaning when it starts updating i loose internet as the primary is in failover and the secondary is rebooting
        (did you watch the video as i explain it alot better in that)

        S 1 Reply Last reply Reply Quote 0
        • P
          pomtom44 @KOM
          last edited by

          @kom thats my plan,
          i was just checking if there was any reason this would be a big NO NO before i did
          as if it was already documented as not working then theres no point in trying it haha

          1 Reply Last reply Reply Quote 0
          • S
            SteveITS Galactic Empire @pomtom44
            last edited by

            @pomtom44 No I didn't watch the video, I was heading out at the time. If you don't have Internet that way then you're kind of stuck. Around here Comcast works in that type of config. AT&T does too although they have "passthrough" not bridging at least on home connections and I haven't tried HA that way. FWIW, Comcast charges I think $4 more for 8 (5 usable) static IPs over the fee for 1 static IP.

            Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
            Upvote ๐Ÿ‘ helpful posts!

            P 1 Reply Last reply Reply Quote 0
            • P
              pomtom44 @SteveITS
              last edited by

              @steveits fair enough
              most ISP's here dont give more then 1 static IP unless you upgrade to a business account, in which case you pretty much have to add another 0 to the end of your bill

              thats why I was asking about looping the internal WAN back to the other router, so both routers have internet though each other, and then the CARP VIP is the public out point

              1 Reply Last reply Reply Quote 0
              • P
                pomtom44 @KOM
                last edited by

                @kom Update
                Cant set a interface on the LAN with the same IP range as the WAN
                So unable to create a fake loopback setup

                KOMK 1 Reply Last reply Reply Quote 0
                • KOMK
                  KOM @pomtom44
                  last edited by

                  @pomtom44 Hmm that's too bad. Oh well, no 5-nines of uptime for you.

                  P 1 Reply Last reply Reply Quote 0
                  • P
                    pomtom44 @KOM
                    last edited by

                    @kom I am going to run a proof of concept test where i trick the networks by putting a small inline router in place, so some sort of voodoo double nat spaghetti mess, but it should work in my head?

                    KOMK 1 Reply Last reply Reply Quote 0
                    • KOMK
                      KOM @pomtom44
                      last edited by

                      @pomtom44 I'll be interested to hear how it works out. If you're running game servers and need good uptime, why not look at renting a cheap VPS?

                      P 1 Reply Last reply Reply Quote 0
                      • P
                        pomtom44 @KOM
                        last edited by

                        @kom I run a ton of personal stuff at home as well
                        Mainly CCTV and file servers,
                        so for me its way more cost effective to run the game servers on the hardware I already have
                        (If I was making money from this then yes id put the money back into a VPS)
                        Also some of the game servers I run take a bit of grunt to run, so running on my own hardware is much cheaper

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.