From owner-freebsd-pf@FreeBSD.ORG Sun Feb 26 16:02:45 2006 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id A1DDA16A422 for ; Sun, 26 Feb 2006 16:02:45 +0000 (GMT) (envelope-from bill.marquette@gmail.com) Received: from xproxy.gmail.com (xproxy.gmail.com [66.249.82.204]) by mx1.FreeBSD.org (Postfix) with ESMTP id 5981D43D60 for ; Sun, 26 Feb 2006 16:02:35 +0000 (GMT) (envelope-from bill.marquette@gmail.com) Received: by xproxy.gmail.com with SMTP id h30so458638wxd for ; Sun, 26 Feb 2006 08:02:35 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=TaLm7LsfHZc9K3v8o6g4pnHy5Fv/vR8EscVAZIh/p9Aknz3qD/CeTJUOgo3RkPmtFbZmamPBfBfAcg0SPKuXZNOuSyBs70sltrNU4ljdILChNTan+G9XqSNysFyvSS/+XECce66AzdCXho3FiuIcvwxiW6pZw+BKGY+5pOKZiYA= Received: by 10.70.116.13 with SMTP id o13mr983126wxc; Sun, 26 Feb 2006 08:02:35 -0800 (PST) Received: by 10.70.89.11 with HTTP; Sun, 26 Feb 2006 08:02:34 -0800 (PST) Message-ID: <55e8a96c0602260802i5cc1a991udfcc6573afa78bd4@mail.gmail.com> Date: Sun, 26 Feb 2006 10:02:34 -0600 From: "Bill Marquette" To: "Jon Simola" In-Reply-To: <8eea04080602252353m57b1ca20i5aa841373e93153e@mail.gmail.com> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline References: <200602260727.k1Q7RlBm051512@freefall.freebsd.org> <8eea04080602252353m57b1ca20i5aa841373e93153e@mail.gmail.com> Cc: bug-followup@FreeBSD.org, freebsd-pf@freebsd.org Subject: Re: kern/93829: [carp] pfsync state time problem with CARP + Arp.Balance X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 26 Feb 2006 16:02:45 -0000 On 2/26/06, Jon Simola wrote: > On 2/25/06, Mark Linimon wrote: > > > http://www.freebsd.org/cgi/query-pr.cgi?pr=3D93829 > > > pfsync0: flags=3D41 mtu 1348 > > pfsync: syncdev: fxp0 syncpeer: 15.1.1.1 maxupd: 128 > > > ### Pfsync Rule > > pass quick on { em1 } proto pfsync > > This problem seems obvious. Yep, looks like user error in this case. However, I've seen this happen when I've accidentally had carp mismatches such that my firewalls were also seeing an asymmetric traffic stream. The hazard of fast networks (and possibly slow machines) I'm afraid. --Bill