Using a CARP VIP to map 2nd public IP to LAN server



  • Hello,

    I have a pfSense 1.2-RC3 box with a CARP VIP I'm using to create a second public IP which maps to a server on our LAN.  I'm NAT forwarding just the ports we need, which includes ssh, http, imap, smtp, imaps.

    The weird thing is that when I shell in using the public IP from the outside, everything works great.  When I shell in to the server's LAN IP from the LAN, everything also works fine.  However, when I try to shell in from the LAN using the public IP, it works, but it's very slow and I keep getting disconnected.  Is there something about NAT reflection that is problematic?  It seems like this should work just fine, but it doesn't, especially since it sort of works.

    Any ideas?


Log in to reply