Hi gurus, I'm working on a project where carp loadbalancing firewalls could exactly fit our needs. Before that, I wonder how it will work outside of the OpenBSD boxes.
First, regarding Carp and STP what happens usually in a manageable L2 switch when the same MAC is announced on two different ports ? I don't remember that STP includes loadsharing, so isn't it possible the switch will only choose one port to forward on ? Please excuse me if it sounds stupid and just explain why ;-) Next, my setup would involve 4 firewalls connected 2 by 2 on two switches, themselves connected together through one port. That setup would connect two or more, but it doesn't matter here) servers : FW1A FW1B FW2A FW2B | | | | | | | | SWITCH1-------------SWITCH2 | | | | SRV1 SRV2 Once again, how will spanning tree handle this case with the same MAC announced from the 4 firewalls ? My guess is packets from SRV1 will be dispatched to FW1* because the cost will be lower. Same for SRV2/FW2*. Could some help me understand how this setup could behave in real ... BR, -- Sylvain COUTANT ADVISEO http://www.adviseo.fr/ http://www.open-sp.fr/

