Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    No more vxlan kernel module in PFSence CE2.7

    Scheduled Pinned Locked Moved General pfSense Questions
    5 Posts 2 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      thomas315
      last edited by

      Hello,

      It seems that the kernel module if_vxlan is no more present in PFSence CE2.7. It was available in PFsence CE2.6.

      [2.6.0-RELEASE][admin@pfsense]/boot/kernel: ls -l if_vxlan.ko
      -r-xr-xr-x 1 root wheel 60264 Jan 31 2022 if_vxlan.ko

      Could you advise ?

      Thanx

      Thomas

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        vxlans were only ever an experimental feature in pfSense. Since their typical use by bridging multiple VLANs is not possible the GUI components were removed some time ago. The module remained but was never used so it was removed from the build.

        T 1 Reply Last reply Reply Quote 2
        • T
          thomas315 @stephenw10
          last edited by

          @stephenw10

          Hello

          Thanks for your answer.

          I use this kernel module with shellcmd at startup, and then I can build extended lan over the internet between two pfsense node (even if it is not very secure).
          That allow me to transport multicast traffic. It is needed to synchronise keycloak cluster. For now I haven't found other way to do that.

          It is possible to add the kernel module in a future build ? or advise to do that with other ways.

          Thank you

          Thomas

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            You should be able to do that with anything you can bridge to, so OpenVPN in TAP mode should work. And that's encrypted.

            The vxlan module is still in 23.05.1 so you could upgrade to that if it's something you really need.

            1 Reply Last reply Reply Quote 1
            • T
              thomas315
              last edited by

              For some weird reason, I though that L2 VPN was only used for remote access, not for peer to peer.

              I've successfuly migrated from Vxlan to Openvpn.

              Thanks for your help

              1 Reply Last reply Reply Quote 2
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.