Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 08 Nov 2005 20:31:06 +0400
From:      rihad <rihad@mail.ru>
To:        freebsd-stable@freebsd.org
Cc:        sarxan@azerin.com
Subject:   Re: Fwd: carp + ipfw problem
Message-ID:  <4370D2CA.6040301@mail.ru>
In-Reply-To: <20051108102849.C0A4016A444@hub.freebsd.org>
References:  <20051108102849.C0A4016A444@hub.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
> Hello all,
> 
> I'm trying to configure a firewall with carp + ipfw, but I encountered the
> strange problem.
> 
> Packets are bypassing carp interface, instead ipfw log shows packet flow
> to/from physical interface, e.g.:
> 

http://www.countersiege.com/doc/pfsync-carp/

"it is important to keep in mind that from pf's perspective, all traffic 
comes from the physical interface, even if it is routed through the carp 
address. However, the address is of course associated with the carp 
interface."



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4370D2CA.6040301>