Hey guys,
I have been doing VRRP testing whole last week and I have a couple questions.
Thats my test setup. RB01 is VRRP master. Failover and everything works fine when RB01 is unplugged.
My questions:
1) When RB01 is unplugged, since masquerade is used and the NAT session table is not present on RB02, all connections are dropped and have to be re-established. Any way to get around that?
2) When a link between RB01 and wan switch fails, eth10-vrrp is correctly picked up by RB02. But on LAN side, RB01 is still eth1-vrrp master, and any connections coming to it will not pass, since it doesnt have a connection to wan anymore. How to deal with this?
The only thing I can think of is to write a script that checks if ether10 is running and if not then disable ether1 as well. Any idea how performance expensive would it be to run a script like this every 1second (default VRRP check interval)
Thanks!
tom