Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NEW CARP Setup seems to have a mind of it's own and secret firewall rules - limited/no logs

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    24 Posts 2 Posters 2.4k Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H Offline
      Hass
      last edited by

      Hi Have the interface in DNS Resolver setup with the LAN and LAN CARP VIP highlighted.

      If I try and do a packet capture of the firewall on the LAN interface for that LAN CARP VIP, I don't see any traffic for a DNS lookup or even a PING (which works).

      FYI< I checked this on both firewalls to be sure.

      Hass

      1 Reply Last reply Reply Quote 0
      • H Offline
        Hass
        last edited by

        I tried a DENY rule to see if I could just get the firewall to say something but no dice

        b9828745-7d8b-4341-bbf1-695ea1cf7a51-image.png

        1 Reply Last reply Reply Quote 0
        • H Offline
          Hass
          last edited by

          !!!!!!!!, it might have been the old Firewall, it had been disabled but when I took a loot at it, it still had a light of lights on the ports... I'm going back through all my testing now.

          I just wanted to let you know @Derelict

          1 Reply Last reply Reply Quote 0
          • H Offline
            Hass
            last edited by

            @Derelict Just wanted to let you know know it's looking allot better now and I think it was just that lingering interface that should have been down that caused the issue (which then caused others).

            Thanks for coming back so quick on a Sunday. FYI, I've now hit another Intel 10G known issue which I'll post once I re-read the previous ones

            1 Reply Last reply Reply Quote 1
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.