Upgraded the Cluster through the CARP IP
-
Hi,
I just upgraded the cluster without following the procedure (I am very fresh pfsense user) and I see now that the secondary is not upgraded to the latest version. When login in with carp IP it shows the latest update, but when login in separately on the pfsenses only one is showing the latest update. The secondary is not showing that.
Any suggestion how to fix this problem?
-
@nikim
Look here Upgrading High Availability Clusters for proper HA upgrade procedure. -
@viragomann I have already upgraded the primary thus leaving the secondary away of the process. Can I just go ahead and do an upgrade of the secondary? I mean we have a service windows and we can do the upgrade even if it means an outbreak of the services.
-
@nikim
Yes, log into the secondary and upgrade it.
There is nothing special to do more on the primary.After upgrading the secondary go to the primary Status > CARP and enable the "Persistance maintenance mode. So you can test the secondaries functions.
If it works well disable the maintenance mode again. -
@viragomann Thnks it worked. The initial problem we has was the openvpn was not working and we found out there was this issue https://redmine.pfsense.org/issues/13424?tab=history. Now after the system patch the openvpn is still strugling to connect.
One of the guys wrote on that thread this below:
"In the meantime, users can install the System Patches package and then create an entry for a3c1589086ea67d25a28ec14ab95d7fd9ab25fa2 to apply the fix immediately."But I cant find it how to create this entry under the system patched package!
-
@nikim
Simply hit "Add new patch", enter a description like "CRL lifetime fix" and the patch ID below and save it.pfSense will pull and apply the patch then.
-