Attempting to get CARP and even DHCP working between two OPNsense firewalls. It seems to work reliability when both are on the same node or if I"m using normal Linux bridges. However, when the two instances are on different nodes and OVS is being used, communication does not work properly. I've seen situations where both nodes will be in the BACKUP state. In addition, it seems that connection state also does not reliably sync over the OVS Bridge either.
I have multiple (3+ nodes) running with an OVS bridge for LAN traffic. The OVS Bridges on each node are connected to each other via GRE. The interface config looks similar to:
I comment out one of the gre interfaces so that the node does not connect back to itself.
What am I missing so this can work reliably? Running newest Proxmox 6.2. It's almost like forged transmits and broadcast traffic aren't working reliably (sorry if I'm using VMware / vSphere speak as that's what I'm used to).
I have multiple (3+ nodes) running with an OVS bridge for LAN traffic. The OVS Bridges on each node are connected to each other via GRE. The interface config looks similar to:
Code:
auto vmbr2
iface vmbr2 inet manual
ovs_type OVSBridge
ovs_mtu 1450
post-up ovs-vsctl set bridge vmbr2 stp_enable=true
post-up ovs-vsctl add-port vmbr2 gre0 -- set interface gre0 type=gre options:remote_ip=''a.a.a.a''
post-up ovs-vsctl add-port vmbr2 gre1 -- set interface gre1 type=gre options:remote_ip=''b.b.b.b''
post-up ovs-vsctl add-port vmbr2 gre2 -- set interface gre2 type=gre options:remote_ip=''c.c.c.c''
#post-up ovs-vsctl add-port vmbr2 gre3 -- set interface gre3 type=gre options:remote_ip=''d.d.d.d''
I comment out one of the gre interfaces so that the node does not connect back to itself.
What am I missing so this can work reliably? Running newest Proxmox 6.2. It's almost like forged transmits and broadcast traffic aren't working reliably (sorry if I'm using VMware / vSphere speak as that's what I'm used to).