- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Sticky This Topic
- Bookmark
- Subscribe
- Printer Friendly Page
EdgeRouter VRRP Failover and NAT Tables
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Tuesday
Hi there,
I'm looking at putting a pair of EdgeRouter 8s in my office as Internet-facing firewalls, and using VRRP for failover / redundancy. I have a couple of questions:
- How quickly can I expect failover to occur if one device unexpectedly dies?
- These routers will also be doing IPv4 NAT for the local network to the Internet; do they share NAT tables or will TCP connections fail when the routers fail over?
My other option is to go for a full pacemaker / conntrackd stack on Linux boxes, but if I can save myself the hassle I will!
Cheers,
Dave
Re: EdgeRouter VRRP Failover and NAT Tables
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Tuesday
2. TCP connections will fail, conntrack is not sync'd.
Feature Request: RFC 6296 (IPv6 to IPv6 Npt)
Unbound for DNS
DUID-EN Support
Re: EdgeRouter VRRP Failover and NAT Tables
[ Edited ]- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Tuesday - last edited Tuesday
If you search the forums you may find a third party package to sync conntrack.
https://community.ubnt.com/t5/EdgeRouter/VRRP-statefull-failover/m-p/485849#M9948
Feature Request: RFC 6296 (IPv6 to IPv6 Npt)
Unbound for DNS
DUID-EN Support
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Sticky This Topic
- Bookmark
- Subscribe
- Printer Friendly Page