Dont understand "Synchronize Interface" Notes in GUI.

  • In CARP Settings page, under "Syncronize Interface" it says:

    NOTE: You must define a IP on each machine participating in this failover group.
    NOTE: You must have an IP assigned to the interface on any participating sync nodes.

    What is the difference between these two?  Obvioulsly each node has an IP assigned to its XOVER interface.  What is the second part?

    Thanks for any help or ideas!

  • Rebel Alliance Developer Netgate

    At first glace it appears it's just saying the same thing twice but I suspect what it means is:

    1. Each machine must have an IP somewhere - it can't all be bridged interfaces and no IPs
    2. Each failover interface must have an IP, they can't just be bridged also.

  • Because you can run the pfsync over LAN or WAN if you want?

    Not recommended I guess, but possible.

  • Rebel Alliance Developer Netgate

    You can, yes. Definitely not recommended (mostly for security reasons). Forced to choose, LAN, never WAN.

Log in to reply