Pfsense HA setup issue
-
Pfsense HA setup issue
We had setup Pfsense HA. The sync is happening properly and firewall shows Master & backup properly. when we make master down the status of CARP showing of second firewall as Master but the traffic is got getting pass through this firewall and we see ping stops to User Segment Gateway Ip address.
This setup is done on 2 dell hardware boxes with LAN , Sync and user segment.
-
Your clients need to be set to use the CARP VIP as their default gateway. This is usually done in the DHCP server settings.
You need to set outbound NAT so traffic sourced from clients leaving the nodes uses the CARP VIP.
Youtube: High Availability Part 2
https://docs.netgate.com/pfsense/en/latest/book/highavailability/index.html