Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Second WAN IP not working

    HA/CARP/VIPs
    3
    4
    3.4k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E
      eradicator006
      last edited by

      Hi, I'm a new pfsense user and I am having some difficulty with vips.  What I have is a 192.168.0.0/24 LAN and I want to be able to use the 2 IPs my dsl provider gives me (non pppoe).  I configured pfsense to use xxxx.xxxx.xxxx.111/24 for the WAN.  I then created a proxy arp vip for xxxx.xxxx.xxxx.30.  The 2 ips are on the same subnet and are both /24 ips.  I created a http port forward for .111 and that works fine.  I then created a http port forward for .30 and it doesn't work at all.  I want to have each external IP port forward to 2 seperate web servers.  I also created several other port forwards on .111 (smtp, rdp, citrix, pptp) and they all work great.  Firewall rules were created along with all port forwards.  The .30 vip doesn't work at all.  I then tried using CARP and had the same results with that.  Is it possible that the .30 ip is not working because there is no outgoing traffic on it and therefore the mac address doesn't register for that ip?  Any help would be appreciated.

      Thanks

      1 Reply Last reply Reply Quote 0
      • M
        mthode
        last edited by

        I am having a similar problem but found that setting the virtual ips to be carp fixes it for a little while but crashes the system (my system at least)

        1 Reply Last reply Reply Quote 0
        • GruensFroeschliG
          GruensFroeschli
          last edited by

          http://forum.pfsense.org/index.php/topic,7001.0.html

          How did you test that the VIP is "not working"?

          Also if you've been using CARP. Did you set the correct subnet?

          We do what we must, because we can.

          Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

          1 Reply Last reply Reply Quote 0
          • E
            eradicator006
            last edited by

            hmm, let me see.  I tried to access the .30 ip from a web browser on a totally separate internet connection in a completely separate building.  I am already aware that I am not able to access vips from within the LAN.  I am also aware that local services cannot bind to PARP addressses.  I wouldn't of posted my question if I didn't already search.

            Thank you.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.