Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Proxy ARP + Redundancy

    Scheduled Pinned Locked Moved General pfSense Questions
    3 Posts 3 Posters 2.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      Kh3ops
      last edited by

      Hi,

      I'm a hosting provider and my ISP gave me lots of public IP addresses (~500).
      Some of my customers require many adresses for the same web server.

      What I do today :

      -> Create VIP using carp
      -> Add NAT to server address based on created VIP

      The problem is that I have two pf-sense boxes redundantly connected (carp failover). Could I use proxy-arp instead of carp for my customers additionnal IPs (since this is a lot quicker to set-up compared to carp (password, id, etc..)?
      What if I set-up proxy-arp for the same address on the two pf-sense boxes? Would some trafic run through the second box?

      Thanks for your help,
      Regards,

      Gaëtan

      1 Reply Last reply Reply Quote 0
      • ?
        Guest
        last edited by

        You definitely don't want to mix Proxyarp with CARP.  Use CARP and they'll be available on both firewalls so all your customers are able to enjoy your redundant setup.

        1 Reply Last reply Reply Quote 0
        • jimpJ
          jimp Rebel Alliance Developer Netgate
          last edited by

          If the additional IPs are routed to your main shared CARP IP, you can use the "other" type VIP. You'll just need to set them up on the backup unit by hand the same way.

          Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

          Need help fast? Netgate Global Support!

          Do not Chat/PM for help!

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.