Project

General

Profile

Actions

Todo #12854

closed

Issue with virtual ips and Sync

Added by Gerald Jimenez about 3 years ago. Updated about 3 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
Virtual IP Addresses
Target version:
-
Start date:
02/22/2022
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default

Description

I have configured 2 pfsense instances with configuration sync between them. In the primary pfsense instance I added an additional ip on the wan interface in AWS, then configured that ip as a virtual ip in pfsense, then used that virtual ip in a NAT rule. I did the same in the secondary pfsense instance, but with their respective ip address of that instance in the virtual ip and the NAT rule
The problem is, when primary pfsense syncs with secondary, the Nat rule in the secondary gets overwited with the virtual ip of the primary.
TO avoid this problem, Virtual ips should have the option to be treated as a unique instance interface ip address, for this to work, virtual ips should work as aliases, that way you can configure the nat rule with the alias in the primary pfsense and the rule will sync to the secondary pfsense with the alias but the virtual ip should not be synced, just as it works with interface ip address.

Actions

Also available in: Atom PDF