Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Filter Logs Firewall

    Scheduled Pinned Locked Moved Firewalling
    6 Posts 3 Posters 2.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B Offline
      Bastichou
      last edited by

      Hi guys ;)
      I set up a failover configuration on my pfsense infrastructure with CARP. It Works \o/

      However, since this configuration pfsense, a lot of VRRP request is blocked ! So many that i can't see other error.
      Can i remove this error from firewall's logs ? Or do something ?

      Regards,

      1 Reply Last reply Reply Quote 0
      • jimpJ Offline
        jimp Rebel Alliance Developer Netgate
        last edited by

        Fix your switches :-)

        It'll only be logged if it sees traffic from "itself" on the wrong interface. Each interface should be isolated on its own switch/vlan/etc.

        Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • B Offline
          Bastichou
          last edited by

          Thx for your answers.

          I use VMware.
          Sorry but I didn't understand the way to fix my trouble :s

          1 Reply Last reply Reply Quote 0
          • jimpJ Offline
            jimp Rebel Alliance Developer Netgate
            last edited by

            Each segment should be on its own vswitch โ€“ no two vnics/ports from the same vm should be on the same switch.

            For example on the "WAN" vswitch that should only contain the WAN ports on the firewalls (and your upstream connection). The LAN vswitch should only contain the LAN ports on the firewalls and the clients, and so on.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • C Offline
              cmb
              last edited by

              If you have multiple physical NICs on a single virtual switch, you'll need to set Net.ReversePathFwdCheckPromisc to fix VMware's looping multicast bug. That's likely the issue.
              http://doc.pfsense.org/index.php/CARP_Configuration_Troubleshooting#VMware_ESX.2FESXi_Users

              1 Reply Last reply Reply Quote 0
              • B Offline
                Bastichou
                last edited by

                Thx everybody !
                I will try it :)

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.