<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[CARP Sync problem on NSX-T (VMWare Cloud Director)]]></title><description><![CDATA[<p dir="auto">Hello,</p>
<p dir="auto">We are planning to create a cluster of PFSense Firewalls with High Availability (HA), which requires a virtual IP with CARP.<br />
The goal =&gt; have high availability for our 2 virtual pfsense nodes.</p>
<p dir="auto">Sadly, it does not work and we troubleshoot for over 4 hours and think we cannot do anything more.</p>
<p dir="auto">The error is that <strong>both nodes appear as MASTER in CARP Status</strong>.<br />
The documentation states:</p>
<p dir="auto">This will happen if the secondary node cannot see the CARP hearbeat advertisements from the primary. Check for firewall rules, connectivity trouble, switch configurations. Also check the system logs for any relevant errors that may lead to a solution. If this is encountered in a Virtual Machine (VM) hypervisor environment such as VMWare ESX, see Troubleshooting High Availability Clusters in Virtual Environments.</p>
<p dir="auto">The documentation:<br />
https://docs.netgate.com/pfsense/en/latest/troubleshooting/high-availability.html#both-nodes-appear-as-master<br />
There are what Netgate proposes to make the high availability working on a Vmware vSphere environment:<br />
https://docs.netgate.com/pfsense/en/latest/troubleshooting/high-availability-virtual.html</p>
<p dir="auto">However, our virtual cloud provider has VMWare Cloud Director and NSX-T.</p>
<p dir="auto">It is such an urgent project and we do not know what to do next.</p>
<p dir="auto">Do you have any ideas?</p>
<p dir="auto">Thanks!</p>
]]></description><link>https://forum.netgate.com/topic/173590/carp-sync-problem-on-nsx-t-vmware-cloud-director</link><generator>RSS for Node</generator><lastBuildDate>Tue, 09 Jun 2026 17:19:38 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/173590.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 21 Jul 2022 13:52:42 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to CARP Sync problem on NSX-T (VMWare Cloud Director) on Thu, 01 Dec 2022 15:28:16 GMT]]></title><description><![CDATA[<p dir="auto">You must allow for MAC Address changes, Promiscious MOde, and Forged Transmits on the port group to the VM for any interface that uses CARP.  I created a single trunk portgroup that has these settings and only use it for my pfSense box.</p>
]]></description><link>https://forum.netgate.com/post/1073277</link><guid isPermaLink="true">https://forum.netgate.com/post/1073277</guid><dc:creator><![CDATA[jlw52761]]></dc:creator><pubDate>Thu, 01 Dec 2022 15:28:16 GMT</pubDate></item></channel></rss>