Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    FTP throuhg VIP

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    9 Posts 3 Posters 4.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      DWAyotte
      last edited by

      I am not having success forwarding FTP through a VIP.

      I have PFSense forwarding it successfully through its WAN address, but when I forward through one of my VIPs it failes.  I am using the ftp-proxy.  I am wondering if it is just not possible.

      1 Reply Last reply Reply Quote 0
      • S
        sullrich
        last edited by

        Use a CARP type VIP and it will work as needed.

        1 Reply Last reply Reply Quote 0
        • X
          xawiers
          last edited by

          Hi
          I tried to setup carp and get error:
          our WAN ends with x.x.192.22
          ISP gave us public IP's: with x.x.198.155 x.x.198.144

          How do I setup carp if it replies with:
          Sorry, we could not locate an interface with a matching subnet for 82.135.198.155/32. Please add an ip in this subnet on a real interface.

          1 Reply Last reply Reply Quote 0
          • D
            DWAyotte
            last edited by

            You just need to change your subnet mask to match your range, but if i understand you correctly, both ranges are on different subnets, so i don't think that carp will work for you in this case.

            1 Reply Last reply Reply Quote 0
            • X
              xawiers
              last edited by

              to set /16 netmask on WAN ?

              maybe someone tried adding new wan card with different subnet ?
              then it could be like bridge to lan network with VIP's ?

              1 Reply Last reply Reply Quote 0
              • D
                DWAyotte
                last edited by

                Sorry I wasn't very clear.  You said this "SP gave us public IP's: with x.x.198.155 x.x.198.144" So on your carp you would need to put in your proper subnet mask of your range, it looks like its probably 255.255.255.240 or /28

                Does that make more sense?  You said you had it set to a /32 and I think that on a carp VIP you need to put its proper subnet mask.

                1 Reply Last reply Reply Quote 0
                • X
                  xawiers
                  last edited by

                  @DWAyotte:

                  Sorry I wasn't very clear.  You said this "SP gave us public IP's: with x.x.198.155 x.x.198.144" So on your carp you would need to put in your proper subnet mask of your range, it looks like its probably 255.255.255.240 or /28

                  Does that make more sense?  You said you had it set to a /32 and I think that on a carp VIP you need to put its proper subnet mask.

                  Ok, trying /28 /26 /16 /8
                  answers (the last one):
                  Sorry, we could not locate an interface with a matching subnet for 82.135.198.144/8. Please add an ip in this subnet on a real interface.
                  should I change WAN subnet mask ?
                  I have x.x.192.22/24 on wan

                  1 Reply Last reply Reply Quote 0
                  • D
                    DWAyotte
                    last edited by

                    Your WAN address is on a different subnet than the VIP you are trying to assign so I don't think you will be able to assign your VIP to your WAN interface.

                    1 Reply Last reply Reply Quote 0
                    • X
                      xawiers
                      last edited by

                      so I have to set wan /16 and vip /16 ?

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.