|
|
@ -1,8 +1,8 @@ |
|
|
|
# $OpenBSD: ifstated.conf,v 1.3 2004/04/27 03:47:55 mcbride Exp $ |
|
|
|
# $OpenBSD: ifstated.conf,v 1.4 2004/04/28 01:01:27 deraadt Exp $ |
|
|
|
# This is a sample config for a pair of firewalls with two interfaces |
|
|
|
# |
|
|
|
# carp0 and carp1 have ip addresses on 192.168.3.0/24 and 192.168.6.0/24 |
|
|
|
# respectively. |
|
|
|
# respectively. |
|
|
|
|
|
|
|
# net.inet.carp.preempt must be enabled (set to 1) for this to work correctly. |
|
|
|
|
|
|
@ -16,7 +16,7 @@ carp_sync = "((carp0 link up and carp1 link up) or \ |
|
|
|
((!carp0 link up) and (!carp1 link up)))" |
|
|
|
|
|
|
|
# The "net" addresses are other addresses which can be used to determine |
|
|
|
# whether we have connectivity. Make sure the hosts are always up, or |
|
|
|
# whether we have connectivity. Make sure the hosts are always up, or |
|
|
|
# test multiple ip's, 'or'-ing the tests. |
|
|
|
net = '( "ping -q -c 1 -w 1 192.168.6.8 > /dev/null" every 10 and \ |
|
|
|
"ping -q -c 1 -w 1 192.168.3.8 > /dev/null" every 10)' |
|
|
@ -31,7 +31,7 @@ state auto { |
|
|
|
} |
|
|
|
if $carp_down { |
|
|
|
set-state backup |
|
|
|
} |
|
|
|
} |
|
|
|
} |
|
|
|
|
|
|
|
state primary { |
|
|
|