Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    CARP not working on VLAN but works fine on LAN

    HA/CARP/VIPs
    3
    6
    40
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      benrichardson_insync last edited by

      Hi there,

      I currently have 2 PFSense VM's setup on ESXI.
      They have the following Interfaces setup.
      WAN (2 Links to internet via a switch)
      LAN (2 Links to our 2x Netgear M4300 Core switches)
      HA (Plugged between the devices)
      WAN2 (1 Link to a small 10mb Line for management)
      VLAN20 (VLAN on LAN interface)
      VLAN30 (VLAN on LAN interface)

      CARP is showing the following on Gateway1
      LAN@1 192.168.110.254/23 MASTER
      WAN@2 64.XXX.XX.X/27 MASTER
      VLAN20@3 192.168.120.254/24 MASTER
      VLAN30@4 192.168.130.254/24 MASTER

      CARP is showing the following on Gateway2
      LAN@1 192.168.110.254/23 BACKUP
      WAN@2 64.XXX.XX.X/27 BACKUP
      VLAN20@3 192.168.120.254/24 MASTER
      VLAN30@4 192.168.130.254/24 MASTER

      Any ideas?

      1 Reply Last reply Reply Quote 0
      • V
        viragomann last edited by

        Have you activated the promiscuous mode on the virtual switches in ESXi?

        1 Reply Last reply Reply Quote 0
        • B
          benrichardson_insync last edited by benrichardson_insync

          Yes I have I just find it weird CARP is working on the LAN interface which the VLAN interfaces are bonded too. But not the VLAN Interfaces

          1 Reply Last reply Reply Quote 0
          • N
            netblues last edited by

            It is not clear that the two vlans on two nodes are on the same broadcast domain.
            Lans are, since they are connected to the switch.
            Can the interfaces belongin to the same vlan ping each other?

            1 Reply Last reply Reply Quote 0
            • B
              benrichardson_insync last edited by

              No the two pfsense devices cannot ping each other

              N 1 Reply Last reply Reply Quote 0
              • N
                netblues @benrichardson_insync last edited by

                @benrichardson_insync So its is expected to have this behaviour. Carp interfaces must be on the same broadcast domain. The master sends regular advertisements to the backups.

                See here for more details about the mechanism
                https://www.netbsd.org/docs/guide/en/chap-carp.html

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post

                Products

                • Platform Overview
                • TNSR
                • pfSense
                • Appliances

                Services

                • Training
                • Professional Services

                Support

                • Subscription Plans
                • Contact Support
                • Product Lifecycle
                • Documentation

                News

                • Media Coverage
                • Press
                • Events

                Resources

                • Blog
                • FAQ
                • Find a Partner
                • Resource Library
                • Security Information

                Company

                • About Us
                • Careers
                • Partners
                • Contact Us
                • Legal
                Our Mission

                We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

                Subscribe to our Newsletter

                Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

                © 2021 Rubicon Communications, LLC | Privacy Policy