Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Carp and outbound loal balancing

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    4 Posts 2 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cr_hyland
      last edited by

      Not sure where to post this but seeing as I have a Carp setup here goes.

      I have two VMs on Vmware as pfSense 2.0.2 running Carp for failover. Both VMs have 100Mbps uplinks to the Data Centre but only the master uplink passes traffic. In general it is a beautiful arrangement with no issues.

      What I want to achieve is that a handful of other VMs behind the firewalls are very heavy traffic hogs and I would like to re-route them through the backup firewall and out on the second, unused uplink. Also the same would apply for inbound traffic to these VMs, it should come in over the second uplink.

      Can this be achieved with pfSense and how?

      Cheers.

      1 Reply Last reply Reply Quote 0
      • C
        cr_hyland
        last edited by

        Has anyone any input on this? I could really do with some help.

        Thanks

        1 Reply Last reply Reply Quote 0
        • C
          cmb
          last edited by

          Assuming you're NATing and not routing public IPs, you could change the default gateway on some hosts to point to the secondary's LAN/internal IP, NAT them out to the WAN IP (not any CARP IPs) of the secondary, and accomplish that. The hosts would no longer have firewall redundancy though, and if they need access to anything coming in from the primary firewall, that wouldn't work.

          1 Reply Last reply Reply Quote 0
          • C
            cr_hyland
            last edited by

            Thanks Chris but we are using a fully routed setup. Changing default gateway breaks connectivity. Is what I'm trying to achieve possible in a routed configuration?

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.