Hi gurus,

I'm working on a project where carp loadbalancing firewalls could exactly fit 
our needs. Before that, I wonder how it will work outside of the OpenBSD boxes.

First, regarding Carp and STP what happens usually in a manageable L2 switch 
when the same MAC is announced on two different ports ? I don't remember that 
STP includes loadsharing, so isn't it possible the switch will only choose one 
port to forward on ? Please excuse me if it sounds stupid and just explain why 
;-)

Next, my setup would involve 4 firewalls connected 2 by 2 on two switches, 
themselves connected together through one port. That setup would connect two or 
more, but it doesn't matter here) servers :

FW1A FW1B           FW2A FW2B
 |    |              |    |
 |    |              |    |
SWITCH1-------------SWITCH2
   |                   |
   |                   |
  SRV1                SRV2

Once again, how will spanning tree handle this case with the same MAC announced 
from the 4 firewalls ? My guess is packets from SRV1 will be dispatched to FW1* 
because the cost will be lower. Same for SRV2/FW2*.

Could some help me understand how this setup could behave in real ...


BR,

--
Sylvain COUTANT

ADVISEO
http://www.adviseo.fr/
http://www.open-sp.fr/

Reply via email to