• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Inbound Failover for HTTPS

Scheduled Pinned Locked Moved Routing and Multi WAN
23 Posts 2 Posters 9.5k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M
    marcelloc
    last edited by Mar 12, 2012, 1:07 PM

    I enable stats on internal pools only. Any stat page show stats for all pools.

    Treinamentos de Elite: http://sys-squad.com

    Help a community developer! ;D

    1 Reply Last reply Reply Quote 0
    • S
      skipper
      last edited by Mar 12, 2012, 3:01 PM

      haproxy doesn't seem to be working for me :/ it's not even forwarding the requests to web1 or web2, i don't know what i am doing wrong there  :-[

      furthermore, after some tries to edit the configuration for the frontend is accepting the changes but is not updating the configuration, it seems like there is a bug in haproxy legacy (at least 2.0-RELEASE (amd64)).

      as for the load balancer what i noticed is that when i take web1 down i can see from the pool tab that web1 is down (red) but on the virtual server tab it keeps "targeting" (forwarding) the requests to web1, which means that the virtual server is not refreshing the status right after the pool.

      1 Reply Last reply Reply Quote 0
      • M
        marcelloc
        last edited by Mar 12, 2012, 3:08 PM

        Can you screenshot your haproxy config?

        Treinamentos de Elite: http://sys-squad.com

        Help a community developer! ;D

        1 Reply Last reply Reply Quote 0
        • S
          skipper
          last edited by Mar 12, 2012, 3:32 PM

          here it's my configuration of haproxy…what am i doing wrong ???

          the virtual IP is on the wan interface and it's CARP.
          when the client is sending https request is not getting any answer
          with http requests is going to pfsense web interface.

          thnx once again man!!

          listener1.png
          listener1.png_thumb
          listener2.png
          listener2.png_thumb
          listener3.png
          listener3.png_thumb
          pool1.png
          pool1.png_thumb
          pool2.png
          pool2.png_thumb

          1 Reply Last reply Reply Quote 0
          • M
            marcelloc
            last edited by Mar 12, 2012, 3:38 PM

            Can you try this setup with legacy package?

            I'm using it, so it will be easier to me to compare my setup with yours.

            This week I`ll rename haproxy-lagacy to haproxy-full as it has more options then current 1.2 package.

            Both(1.2 and 1.0) use the same 1.4.19 version of haproxy.

            att,
            Marcello Coutinho

            Treinamentos de Elite: http://sys-squad.com

            Help a community developer! ;D

            1 Reply Last reply Reply Quote 0
            • S
              skipper
              last edited by Mar 12, 2012, 3:55 PM

              i removed haproxy and installed haproxy legacy and then i configured it again.
              the results are same as before :/
              here is my configuration…

              frontend1.png
              frontend1.png_thumb
              frontend2.png
              frontend2.png_thumb
              frontend3.png
              frontend3.png_thumb
              backend1.png
              backend1.png_thumb
              backend2.png
              backend2.png_thumb

              1 Reply Last reply Reply Quote 0
              • M
                marcelloc
                last edited by Mar 12, 2012, 7:06 PM

                On backends I do not fill up Advanced pass thru and do not set cookies on Servers.

                The other settings looks similar here.

                Enable stats and try to see what happens.

                Treinamentos de Elite: http://sys-squad.com

                Help a community developer! ;D

                1 Reply Last reply Reply Quote 0
                • S
                  skipper
                  last edited by Mar 12, 2012, 10:44 PM

                  hey marcelloc,

                  thanks a lot man!! i removed the "server cookies" from the backends and also "advanced pass thru" from the frontends and seems to be working great so far!! :)

                  btw, as i don't want the stats to be accessible from internet.. is it possible to make the stats accessible just from VPN connection in some other internal IP address? or i should just disable the stats?

                  1 Reply Last reply Reply Quote 0
                  • M
                    marcelloc
                    last edited by Mar 12, 2012, 11:36 PM

                    Publish another haproxy server config with internal address, stats enabled and assign the http backend just to get stats working.

                    Treinamentos de Elite: http://sys-squad.com

                    Help a community developer! ;D

                    1 Reply Last reply Reply Quote 0
                    • S
                      skipper
                      last edited by Mar 13, 2012, 10:29 PM

                      thnx once again!!

                      i published haproxy in an internal ip address as well for the stats, it was not necessary to assign any backend.

                      best regards

                      1 Reply Last reply Reply Quote 0
                      23 out of 23
                      • First post
                        23/23
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                        This community forum collects and processes your personal information.
                        consent.not_received