Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense Authentication on second device from HA

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    6 Posts 2 Posters 732 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      martinaz
      last edited by

      Hello,
      I have a dummy question, I don't know if this is normal or if I need to do something else.

      I have configured HA on my Pfsense firewalls and set auth login with LDAP. I can log in with my username and pass from LDAP on the primary firewall, but on the secondary device, I can log in only with an admin pass. (the username and pass from LDAP doesn't work, I mention that the cluster works because is doing the replication): Is this a normal behavior for the secondary device?

      S 1 Reply Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @martinaz
        last edited by

        @martinaz If you mean the HA config sync, I also found it only works with "admin" even though there is a field to type in the username.

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote 👍 helpful posts!

        1 Reply Last reply Reply Quote 0
        • M
          martinaz
          last edited by

          No, when i want to login via GUI to the second device I can;t use the username and LDAP pass works only with local admin

          S 1 Reply Last reply Reply Quote 0
          • S
            SteveITS Galactic Empire @martinaz
            last edited by

            @martinaz ah. I have not set that up. Note not everything syncs in HA…there is a list of checkboxes to sync, but you might double check the second router that the LDAP auth is actually configured.

            Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
            Upvote 👍 helpful posts!

            1 Reply Last reply Reply Quote 0
            • M
              martinaz
              last edited by

              @SteveITS
              The config is set on both devices also the checkboxes are checked, for example, if I failover the secondary device and make it primary, I can login in on the secondary pfsense with ldap . The issue that I have now is that I can;t login GUI on the secondary pfsense devices using LDAP account works only with local user but this issue is only secondary devices.

              1 Reply Last reply Reply Quote 0
              • M
                martinaz
                last edited by

                @SteveITS Solved the issue.

                After reboot works on both devices.
                Thanks a lot for your support!

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.