I have been following with interest the developments with regard to dhcpd gaining spamd-like synchronisation features. I would like to be able to make use of these features if I can. However, I have a question: Currently, I have a pair of CARP firewalls in a failover configuration. We have carp on vlan on physical, plugged in to a trunk port on a Cisco Catalyst. The default gateway for each internal subnet (of which there are quite a few) is an IP on a CARP interface. On the two subnets where we use DHCP however, I have had to allocate non-CARP IPs, ie IPs on vlanXX rather than carpXX, because the CARP interface didn't seem to be seeing the 255.255.255.255 packets sent out by dhclients. It bears mention that I set things up this way some years ago now, when I was learning OpenBSD for the first time. If I've cocked it up, I'd love someone to put me right. My question is, is it possible to have my two firewalls both running dhcpd, syncing leases between them, listening on the carp interfaces, or do I have to stick with my current config where I have a non-carp IP so that dhcpd can see the requests? I don't mind if this is the case, but it seems daft to lose 3 IPs per subnet (CARPd gateway IP, dhcp for firewall A, dhcp for firewall B) rather than 1 if I can do it all on the carp interface. Ta all, Dave Wilson PS: I apologise if this post is overly verbose, but after seeing so many posts saying there's not enough information, I'm trying to not leave anything out.
| David Miller | Re: [patch 7/8] fdmap v2 - implement sys_socket2 |
| Sean | Re: [AppArmor 39/45] AppArmor: Profile loading and manipulation,pathname matching |
| Andi Kleen | Re: missing madvise functionality |
| Alan Cox | [PATCH 03/57] ali: watchdog locking and style |
git: | |
| Guido Ostkamp | [PATCH] Fix Solaris Workshop Compiler issues |
| David Lang | Re: mingw, windows, crlf/lf, and git |
| Johannes Schindelin | Re: [kernel.org users] [RFD] On deprecating "git-foo" for builtins |
| Johannes Schindelin | Re: [PATCH] Fix off by one error in prep_exclude. |
| Marco Peereboom | Re: Real men don't attack straw men |
| patrick keshishian | SMTP flood + spamdb |
| Marcos Laufer | dmesg IBM x3650 OpenBSD 4.3 |
| Nick Holland | Re: The Atheros story in much fewer words |
| Hans de Goede | Re: cat /proc/net/tcp takes 0.5 seconds on x86_64 |
| Stephen Hemminger | [RFC] TCP illinois max rtt aging |
| Tilman Schmidt | Re: 2.6.25-rc8: FTP transfer errors |
| Evgeniy Polyakov | Re: Network/block layer race. |
| high memory | 15 hours ago | Linux kernel |
| semaphore access speed | 18 hours ago | Applications and Utilities |
| the kernel how to power off the machine | 19 hours ago | Linux kernel |
| Easter Eggs in windows XP | 22 hours ago | Windows |
| Shared swap partition | 23 hours ago | Linux general |
| Root password | 23 hours ago | Linux general |
| Where/when DNOTIFY is used? | 1 day ago | Linux kernel |
| How to convert Linux Kernel built-in module into a loadable module | 1 day ago | Linux kernel |
| Linux 2.6.24 and I/O schedulers | 1 day ago | Linux kernel |
| USB Driver -- Interrupt Polling -- A Little Help Please | 1 day ago | Linux general |
