Pound + HaProxy / Internal Connectivity



  • Hi Guys,

    I'm trying to setup a Pound + HaProxy rig on pfsense and i'm hitting a wall here.

    Setting up Pound and using a lan IP on a server like 192.168.10.100 as a backend target will work and Pound will pass on the traffic to that host.
    Using the same pound config but changing the IP to 192.168.10.110 which is setup as a frontend (it's also a vIP) in HaProxy will result in not serving requests and reporting the 192.168.10.110 as not available for connectivity.

    I then logged in via SSH on the pfSense appliance and telnet 192.168.10.100 to my port on it which is working. I tried again on the pfSense appliance to connect via telnet to 192.168.10.110 on the frontend listening port and it's timing out. I remoted on my 192.168.10.100 host and telnet to 192.168.10.110 and this is working.

    It seems from within pfSense is not allowing me to connect to a vIP and a port from within which is blocking pound to connect and pass on the packets to HaProxy.

    Anybody has an idea?

    Thanks!

    P.S. I know this ain't a "supported" scenario but this is a nice brain-masher


Log in to reply