Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    LAGG + CARP VIP results in both machines in 'backup' state

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    6 Posts 2 Posters 3.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      fannet
      last edited by

      I have 2x PFSense boxes, each with an OPT1 LAGG interface comprised of 3 nics

      When configuring a CARP VIP both PFSense machines fall to "backup" . If I chose an interface that is just a single physical interface (no LAGG) everything works fine.

      Does PFSENSE support what I'm trying to do? If so what am I doing wrong?

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        That works fine, but it may be your switch isn't doing something right. If both are backup they must both be seeing a bunch of carp advertisements, so perhaps traffic is looping among the lagg interfaces.

        I'd focus on the switches and the lagg modes involved.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • F
          fannet
          last edited by

          The CARP has its own dedicated interface - are you saying there are CARP announcements on the VIP interface (OPT) as well?  Really bad diagram below:

          PFSENSE 1                          PFSENSE 2
          lan interface <- -  carp  - -> lan interface

          (OPT1) LAGG0                    (OPT1) LAGG0
                          \                      /
                            \                  /
                              –CARP VIP--

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            The sync interface is its own interface, that is not a "carp" interface. Nothing for CARP happens on the sync interface; That is for pfsync (state sync) and xmlrpc (config sync). CARP heartbeats are sent on each interface that has a CARP VIP.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • F
              fannet
              last edited by

              Got it - thanks for clarifying. Will check out the switches

              1 Reply Last reply Reply Quote 0
              • F
                fannet
                last edited by

                @jimp:

                The sync interface is its own interface, that is not a "carp" interface. Nothing for CARP happens on the sync interface; That is for pfsync (state sync) and xmlrpc (config sync). CARP heartbeats are sent on each interface that has a CARP VIP.

                Just checking back in  - Using a Juniper (ex2200-48t-4g)  Switch we created a LACP group in "active" mode and set the PFSENSE LAGG interface to type "LACP" and the CARP is working perfectly.

                Thanks for the quick response!  ;D

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.