CARP and NAT question

Julien Cigar julien at perdition.city
Tue Oct 8 13:48:57 UTC 2019


Hello,

I'd like to NAT outbound traffic from two different private networks 
through two different interfaces, with CARP on top. I have 4 public IPS
available (193.x.x.89, 193.x.x.90, 193.x.x.91, 193.x.x.92).

I have two redundant router/firewall running FreeBSD 12 with CARP and 
PF with the following: (1) which works well, but all traffic 
goes through the same interface.

So I'd like to switch to something like (2), which will not work (lines 
5 and 13 are not valid) and I'm wondering if I could use something like 
(3) ..?

Thank you!
Julien

(1) https://gist.github.com/silenius/4f6173a9b6690292c2174ab3bb89d292
(2) https://gist.github.com/silenius/da9be7e74e9861fa55f927d194e3e410
(3) https://gist.github.com/silenius/b237565b0d181248ff80ea296e5537db

-- 
Julien Cigar
Belgian Biodiversity Platform (http://www.biodiversity.be)
PGP fingerprint: EEF9 F697 4B68 D275 7B11  6A25 B2BB 3710 A204 23C0
No trees were killed in the creation of this message.
However, many electrons were terribly inconvenienced.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://lists.freebsd.org/pipermail/freebsd-net/attachments/20191008/b6f5c8a3/attachment.sig>


More information about the freebsd-net mailing list