PFSense

μ°Έκ³ λ¬Έμ„œ

HA ꡬ성 예제 - https://docs.netgate.com/pfsense/en/latest/recipes/high-availability.html#configure-configuration-synchronization-xmlrpcarrow-up-right HA Sync μ„€μ • - https://docs.netgate.com/pfsense/en/latest/highavailability/settings.htmlarrow-up-right

Failover κΈ°λŠ₯확인 - https://docs.netgate.com/pfsense/en/latest/highavailability/test.htmlarrow-up-right

κ°€μƒν™˜κ²½μ—μ„œμ˜ HA νŠΈλŸ¬λΈ”μŠˆνŒ… - https://docs.netgate.com/pfsense/en/latest/troubleshooting/high-availability-virtual.htmlarrow-up-right

HA νŠΈλŸ¬λΈ”μŠˆνŒ… - https://docs.netgate.com/pfsense/en/latest/troubleshooting/high-availability.htmlarrow-up-right

ν…ŒμŠ€νŠΈ ꡬ성

TEST-pfSense-1 (Master) WAN - 10.x.x.2/24

TEST-pfSense-2 (Backup) WAN - 10.x.x.3/24

VIP 10.x.x.1/24

VMware 가상 μŠ€μœ„μΉ˜μ˜ 포트 λΉ„κ·œμΉ™ λͺ¨λ“œ ν™œμ„±ν™”

1. PFsense μ„€μ • 및 HAProxy μ„€μΉ˜

TEST-pfSense-1 (Master)

IP μ„€μ •

HAProxy μ„€μΉ˜

TEST-pfSense-2 (Backup)

IP μ„€μ •

HAProxy μ„€μΉ˜

2. HA Config

TEST-pfSense-1 (Master)

Configλ₯Ό 동기화할 1번 μ„œλ²„μ—μ„œ 2λ²ˆμ„œλ²„μ˜ 정보 μž…λ ₯

TEST-pfSense-2 (Backup)

XMLRPC Sync κ΄€λ ¨ 섀정은 ν•˜μ§€ μ•ŠμŒ

3. CARP μ„€μ • (VIP)

TEST-pfSense-1 (Master)

TEST-pfSense-2 (Backup)

1번 μ„œλ²„μ—μ„œ VIP 생성 ν›„ 2번 μ„œλ²„μ—μ„œ 섀정을 확인해보면 ν•˜κΈ°μ™€ 같이 VIPκ°€ μƒμ„±λ˜μ–΄ μžˆλ‹€

TEST-pfSense-1 (Master)

VIP status 확인

TEST-pfSense-2 (Backup)

VIP Status 확인

4. HAproxy Config Sync μ„€μ •

HAProxy Sync μ˜΅μ…˜ ν™œμ„±ν™” ν›„ Save λ²„νŠΌ λˆ„λ₯΄λ©΄ Backup μž₯λΉ„λ‘œ μ„€μ • 동기화 됨

Last updated