CARPDEV support on 1.2 ?

  • Hi all
    I have a pfsense firewall with the following version:
    built on Sun Feb 24 17:04:58 EST 2008

    I have on  WAN the ip 88.xx.xx.12/24

    my ISP has also routed class 93.xx.xx.0/24 to  88.xx.xx.12 ip (wan)

    If I set new VIP as a "proxy arp" I can use the ip of Class 93.xx.xx.0/24
    but I can't bind squid on one of these IP  :( :(

    I can't use VIP carp (I suppose for the lack of carpdev)

    In version 1.2.3 there is carpdev support?
    There are any ways to set the proxy on a VIP (differente class from wan class)?

    kind regards

  • Rebel Alliance Developer Netgate

    There is no CARPDEV support in 1.2.x, and it's not in 2.0 either. I'm not sure if that is something that will be added to 2.0 yet or if it will have to wait for the next release.

  • So, Do you confirm that is not possible to bind  squid to an ip on a network other than the WAN one (if other network is routed on wan)?

    thanks & see u

  • Rebel Alliance Developer Netgate

    I admit I didn't read much past CARPDEV in that message the first time.

    Why do you want to bind squid to WAN? Squid shouldn't listen on WAN, only local interfaces where it wants to take client connections.

  • I have not given all the details:

    I have configured squid to bind on the LAN if.

    I have a real IP on the WAN (ip of class 88.xx.xx.12/24)
    and several VIP (ips of  class 93.xx.xx.0/24)

    I need the squid users to come out with one of the  VIP, by adding
    directive tcp_outgoing_address 93.xx.xx.10  in squid conf.

    How can I do  to do that?
    (I think I need carpdev to have VIP on virtual interface CARP)

    kind regards

Log in to reply