Welcome, Guest. Please login or register.
Did you miss your activation email?
+  pfSense Forum
|-+  pfSense English Support» CARP/VIPs» CARP XMLRPC updates wrong interface rules
Username:
Password:
 
 

Pages: [1]   Go Down
  Print  
Author Topic: CARP XMLRPC updates wrong interface rules  (Read 1880 times)
0 Members and 1 Guest are viewing this topic.
JeffSmart
Newbie
*
Offline Offline

Posts: 1


View Profile
« on: March 03, 2011, 07:03:26 am »

I discovered today that if you have created your interfaces on a CARP Backup pfSense firewall "in a different order than your primary firewall", than during XMLRPC syncronization I had two interfaces updated with another interface's rules.  The syncing even stopped after the SYNC interface rules on the Backup firewall were replaced with WAN2 rules.

I am using 2.0-RC1 (i386) built Mar 3 02:31:32 EST 2011 on both firewalls. I have 5 NIC's assigned as WAN1, LAN, WAN2, SYNC, WLAN on both firewalls.

Initially I could see the list of interface name tabs at the top of the Dashboard -> Firewall Rules were in a different order between Master and Backup firewalls.  At a hunch, I reversed the effected two physical interface NICs, Interface Names and IP/masks and applied the settings, repaired the wrong rule for SYNC interface and syncronization worked perfectly and the correct rules per interface were updated on the backup firewall. A pair of happy pfSense pups !
I expect there must be some stray hard coding linking the original OPT1, 2, 3 interface assignment rather than the user assigned Interface named ?

Again, many thanks guys for a brilliant tool !
Logged
jimp
Administrator
Hero Member
*****
Offline Offline

Posts: 13081



View Profile
« Reply #1 on: March 03, 2011, 09:38:26 am »

CARP systems must have an identical set of interfaces in the exact same order.

That has always been the case.
Logged

Need help fast? Commercial Support!

Co-Author of pfSense: The Definitive Guide. - Check the Doc Wiki for FAQs.

Do not PM for help!

Donate to the project | My Wish List
Pages: [1]   Go Up
  Print  
 
Jump to:  

 

Page created in 0.026 seconds with 20 queries.