arpwatch package logs CARP MAC address changes
arpwatch on interfaces using CARP logs ethernet mismatch errors like these:
Mar 18 14:47:24 x.x.x.x arpwatch: ethernet mismatch y.y.y.y 0:1:2:3:4:5 (0:0:5e:0:1:b)
FreeBSD arpwatch has a -v option to ignore/not log CARP MAC address changes. But the patch that added -v functionality forgot to allow the -v option to the arpwatch command.
Here are patches to enable -v, also enable -d (debug), and modify the pfSense arpwatch service XML and PHP to provide a checkbox for the -v option.
Tested and working on a 2.4.4-p2 system.
Accepting these changes would make arpwatch out of sync with upstream.
#1 Updated by Art Manion 6 months ago
Just a note that upstream arpwatch from FreeBSD was updated.