Why do you have a CARP of 172.17.1/24, this is a private IP.
MAybe i explained my setup wrong. THe CARP ips i refer to is the private sync interface i.e a crossover cable between the two firewalls.
I have a CARP VIP added and it is one of the 3 ips from my /29 subnet.
Wan 220.127.116.11 (18.104.22.168 GW of /29 subnet)
Lan 100.100.100.1 (ip of existing /24 subnet)
Carp 172.17.1.1 (this is private sync interface)
Wan VIP 22.214.171.124 (this is CARP IP on WAN from /29 range)
Lan VIP 100.100.100.3
AON Disabled and default rule set to use 126.96.36.199 as Nat interface on Wan
I havent yet asked the DC to route my /24 subnet to this CARP ip in the /29 because I wanted to be sure everything is wouking and i dont want any downtime.
The /29 and /24 are currently being presented on the same interface from the DC.