Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 02 Dec 2016 21:24:24 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-bugs@FreeBSD.org
Subject:   [Bug 213282] FreeBSD 10.2 / Carp / PfSync
Message-ID:  <bug-213282-8-ezlLv5rSJU@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-213282-8@https.bugs.freebsd.org/bugzilla/>
References:  <bug-213282-8@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D213282

--- Comment #3 from JeanAumont@gmail.com ---
Hi,

In my opinion, the code should never let a firewall become MASTER if the st=
ate
table (pfsync) has not finish being populated with all the states.

During the boot, the firewall should be in INIT mode and then become MASTER
when the replication of the state is terminated.

It is clearly a bug and the fact that you have 2 MASTER at the same time wi=
ll
only cause problem to a lot of TCP sessions.

Currently the advskew of my firewall are 90 and 100.=20
Will changing them to 0 and 200 made a differnce ?=20
Does the firewall reads the content (advskew) of the CARP packet being rece=
ived
or does it used a timer to verify which one advertise more often?


This bug is affect the network traffic and should be look at.

Thanks,

Jean Aumont

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-213282-8-ezlLv5rSJU>