Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ha-active-passive - firewall configuration file issues #37

Open
mm-col opened this issue Nov 18, 2022 · 1 comment
Open

ha-active-passive - firewall configuration file issues #37

mm-col opened this issue Nov 18, 2022 · 1 comment

Comments

@mm-col
Copy link

mm-col commented Nov 18, 2022

Something isn't correct in the firewall config xml files for ha-active-passive. After committing, the management interfaces are no longer accessible (not suggesting the login fails as it is noted that the password changes, but the the interface is not accessible). Maybe something with switching from DCHP to static IP?

I notice commit never finishes in the gui, which indicates connectivity to the mgmt interface is lost. I just tested by importing the xml and before committing, changing the static mgmt IP to the IP that was previously assigned by DHCP. Commit finishes and I don't lose access to the mgmt interface.

@apooniajjn
Copy link
Contributor

Hi @mm-col sorry for the delay current supported use-case on NLB would be you need to do source NAT at firewall level. Incoming traffic will hit NLB and then it will go to one of the firewall and use source NAT to reach destination using source being firewall interface IP.

NLB traffic symmetry feature is on the roadmap.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants