PFSync Not Working Correctly

Richard Tector richardtector at thekeelecentre.com
Tue Feb 6 23:08:43 UTC 2007


Michael K. Smith - Adhost wrote:
> Hello All:
> 
> I have two 6.2 RELEASE servers working in failover mode as PF Load
> Balancers.  When the MASTER box is failed (through reboot or interface
> shutdown, etc.) the BACKUP box becomes MASTER as expected, but
> connections that existed through the MASTER before the failover do not
> transfer as expected to the new MASTER.  New connections work
> immediately.
> 
> When I issue a 'pfctl -vvss' the established connection shows up
> correctly in the state tables on both machines, so I would expect the
> established connection to work immediately upon failover.  
> 
> If anyone has any insights I'd be grateful.  I can also post any
> relevent output or config snippets if someone thinks they would help.

Are the interfaces the same in both machines? If the states are 
if-bound, they wont match packets on the backup server if the interface 
names are different.


Regards,

Richard
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 2709 bytes
Desc: S/MIME Cryptographic Signature
Url : http://lists.freebsd.org/pipermail/freebsd-pf/attachments/20070206/e19f58ae/smime.bin


More information about the freebsd-pf mailing list