<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Confused about HA setup]]></title><description><![CDATA[<p dir="auto">Going through these tutorials:</p>
<p dir="auto">https://youtu.be/-1Og5ogkyZY<br />
https://docs.netgate.com/pfsense/en/latest/highavailability/configuring-high-availability.html#vmware-esx-users<br />
http://blog.thedarkwinter.com/2015/03/pfsense-ha-hardwaredevice-failover.html</p>
<p dir="auto">They have all slightly different steps!</p>
<p dir="auto">My network:</p>
<ul>
<li>External internet IP: 86.xxx.xx.xxx</li>
<li>Router: 192.168.2.254</li>
<li>PFSENSE1 WAN: 192.168.2.110</li>
<li>PFSENSE1 LAN: 192.168.1.2/24</li>
<li>PFSENSE2 WAN: 192.168.2.111</li>
<li>PFSENSE2 LAN: 192.168.1.3/24</li>
<li>WAN CARP VIP: 192.168.2.112/24</li>
<li>LAN CARP VIP: 192.168.1.1/24</li>
</ul>
<p dir="auto">Anyway, got sync to work and setup CARP. CARP status on master is MASTER and MASTER.  CARP status on backup is MASTER and BACKUP.</p>
<p dir="auto">Trying to setup NAT Outbound but doesn't work. The instructions above are confusing, some say set up Hybrid, some Manual. So I did what Tom did and set it to Hybrid and added a mapping:</p>
<ul>
<li>Interface: WAN</li>
<li>Source: 192.168.1.0/24</li>
<li>Address: 192.168.2.112 (WAN VIP)</li>
</ul>
<p dir="auto">But my PC does not get any internet. Gateway + DNS set to 192.168.1.1</p>
]]></description><link>https://forum.netgate.com/topic/153820/confused-about-ha-setup</link><generator>RSS for Node</generator><lastBuildDate>Sat, 11 Apr 2026 11:29:21 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/153820.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 23 May 2020 10:16:59 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Confused about HA setup on Tue, 26 May 2020 07:50:45 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/derelict">@<bdi>Derelict</bdi></a> The clients don't have internet access or able to ping 8.8.8.8. I have my client as a static IP with gateway and DNS set to 192.168.1.1.</p>
<p dir="auto">I will try using manual NAT mode.</p>
]]></description><link>https://forum.netgate.com/post/914235</link><guid isPermaLink="true">https://forum.netgate.com/post/914235</guid><dc:creator><![CDATA[GodAtum]]></dc:creator><pubDate>Tue, 26 May 2020 07:50:45 GMT</pubDate></item><item><title><![CDATA[Reply to Confused about HA setup on Tue, 26 May 2020 03:44:21 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/justinjja">@<bdi>Justinjja</bdi></a> said in <a href="/post/914198">Confused about HA setup</a>:</p>
<blockquote>
<p dir="auto">Do you have the "Block private networks" firewall option enabled?</p>
</blockquote>
<p dir="auto">That only applies to connections coming into WAN in the default configuration.</p>
]]></description><link>https://forum.netgate.com/post/914213</link><guid isPermaLink="true">https://forum.netgate.com/post/914213</guid><dc:creator><![CDATA[Derelict]]></dc:creator><pubDate>Tue, 26 May 2020 03:44:21 GMT</pubDate></item><item><title><![CDATA[Reply to Confused about HA setup on Tue, 26 May 2020 03:43:32 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/godatum">@<bdi>GodAtum</bdi></a> said in <a href="/post/913719">Confused about HA setup</a>:</p>
<blockquote>
<p dir="auto">Trying to setup NAT Outbound but doesn't work.</p>
</blockquote>
<p dir="auto">Use manual NAT mode for an HA setup. Set the NAT address for all INSIDE sources that actually need NAT to the CARP VIP.</p>
<p dir="auto">What does "doesn't work" mean? Do the client hosts get ARP for 192.168.1.1? 192.168.1.2? 192.168.1.3? Can you ping it? Can they resolve DNS names? Can they ping 192.168.2.112?</p>
<p dir="auto">Do basic network troubleshooting hop by hop from the clients out and let us know exactly where it is "not working."</p>
]]></description><link>https://forum.netgate.com/post/914212</link><guid isPermaLink="true">https://forum.netgate.com/post/914212</guid><dc:creator><![CDATA[Derelict]]></dc:creator><pubDate>Tue, 26 May 2020 03:43:32 GMT</pubDate></item><item><title><![CDATA[Reply to Confused about HA setup on Mon, 25 May 2020 22:24:33 GMT]]></title><description><![CDATA[<p dir="auto">Do you have the "Block private networks" firewall option enabled?</p>
]]></description><link>https://forum.netgate.com/post/914198</link><guid isPermaLink="true">https://forum.netgate.com/post/914198</guid><dc:creator><![CDATA[Justinjja]]></dc:creator><pubDate>Mon, 25 May 2020 22:24:33 GMT</pubDate></item><item><title><![CDATA[Reply to Confused about HA setup on Mon, 25 May 2020 22:01:30 GMT]]></title><description><![CDATA[<p dir="auto"><img src="/assets/uploads/files/1590444087292-mcmeekin_network_diagram.png" alt="mcmeekin_network_diagram.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/914192</link><guid isPermaLink="true">https://forum.netgate.com/post/914192</guid><dc:creator><![CDATA[GodAtum]]></dc:creator><pubDate>Mon, 25 May 2020 22:01:30 GMT</pubDate></item><item><title><![CDATA[Reply to Confused about HA setup on Mon, 25 May 2020 01:33:48 GMT]]></title><description><![CDATA[<p dir="auto">How is everything setup physically? Modem/router - switch - 2x pfsense - switch?<br />
Single dynamic public IP or do you have a static IP range?</p>
]]></description><link>https://forum.netgate.com/post/914010</link><guid isPermaLink="true">https://forum.netgate.com/post/914010</guid><dc:creator><![CDATA[Justinjja]]></dc:creator><pubDate>Mon, 25 May 2020 01:33:48 GMT</pubDate></item></channel></rss>