CARP Secondary Unreachable Over VPN



  • Not shure if need to put it here, or in the NAT or VPN section, but anyway. I 'm unable to connect from my vpn endpoint to the backup pfsense ( I have a HA setup). I found the following wiki article:
    https://doc.pfsense.org/index.php/CARP_Secondary_Unreachable_Over_VPN

    However, it sais:
    "For example, add a manual outbound NAT rule on the LAN interface, source being the VPN subnet, destination being an alias that contains both the primary and secondary node LAN IPs. Translation would be Interface Address (NOT the CARP VIP!)."

    But i am unable to put a alias in the destination field. The only choices i have are any / network. Not alias, so how do i do that?



  • Select Network and type in the alias in the address field below.