Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Supressing "arp moved" messages on system logs

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 5 Posters 2.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jqueiroz
      last edited by

      Hi again,
      My pfsense server is taking form, soon I'll capable of saying "its working!".  ;D

      I have some central servers working with interface bonding. They have several services, specially DNS and FreeRadius. After configuring them, I see several messages like those in my system log:

      May 20 15:05:40 kernel: arp: 10.4.0.17 moved from 00:2b:2b:fd:47:b6 to 00:2b:2b:fd:47:b4 on hn0
      May 20 15:05:42 kernel: arp: 10.4.0.17 moved from 00:2b:2b:fd:47:b4 to 00:2b:2b:fd:47:b6 on hn0
      May 20 15:05:49 kernel: arp: 10.4.0.17 moved from 00:2b:2b:fd:47:b6 to 00:2b:2b:fd:47:b4 on hn0
      May 20 15:05:51 kernel: arp: 10.4.0.17 moved from 00:2b:2b:fd:47:b4 to 00:2b:2b:fd:47:b6 on hn0

      I saw that in "System > Advanced > Networking" I can "Supress ARP Messages", which I believe will disable the messages. But, can I disable it just for this server?

      The case is that I expect this to happen, as this is a multi-interface server with bonding enabled. But I still wanted to know if this happens with a normal server…

      1 Reply Last reply Reply Quote 0
      • D
        divsys
        last edited by

        This is often seen with Apple products that attempt to "save" an IP address for a device that's hibernating.

        There was a thread with similar issues: https://forum.pfsense.org/index.php?topic=57837.msg309137#msg309137.

        This is all assuming you don't actually have something nasty on your network trying to use an existing address…...

        -jfp

        1 Reply Last reply Reply Quote 0
        • J
          jqueiroz
          last edited by

          Thanks for the reply.

          Although the same messages appear, the case isn't similar; here, I have a Linux server with bonding interfaces (equivalent to NIC Teaming on Windows). It is expected (and somewhat desired) that it alternates on the bound interfaces to achieve load balance. So, I want that this server don't get logged.

          But I don't want to entirely disable this checking; if two workstations start conflicting their IP address, I'll want them logged.

          1 Reply Last reply Reply Quote 0
          • D
            doktornotor Banned
            last edited by

            Well no such option exists. Either you get it logged or not.

            1 Reply Last reply Reply Quote 0
            • H
              Harvy66
              last edited by

              Bonding interfaces that share the same IP but different MAC addresses is a hack. It may work, but it's undefined operations. There are proper MAC layer protocols that can do this sort of stuff. SMB3.1 supports bonding multiple interfaces with different IP addresses.

              1 Reply Last reply Reply Quote 0
              • J
                jqueiroz
                last edited by

                @doktornotor:

                Well no such option exists. Either you get it logged or not.

                Well, "no solution" is a a solution. I'll check if I can reconfigure the server to always use the same physical interface to serve the same machine; this may stop the MAC flapping to pfsense.

                1 Reply Last reply Reply Quote 0
                • M
                  magura
                  last edited by

                  I often encounter this problem arp,Finally I use forced dhcp resolved.

                  client must re get new ip and obtain IP via DHCP,Secretly setting is can't use Internet.packets will not be sent to pfsense

                  cisco switch–>Try cisco DAI+DHCP Snooping

                  ruckus controller-->enable option:"Enable Force DHCP,disconnect client if client does not obtain valid IP in XX seconds"

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.