Hi,

I don't do top-postings, just a reply to all.

It works now on all hosts!

I was testing with a Run Once with no macspoof option and changed the CARP IP on the pfsense box to alias, and back to carp... where with alias I was able to ping with carp not... and this was good because of the disabled macspoof option. After this change I was also, with spoof true and not set, able to ping the IP on the CARP interface itself, so I think Pfsense messed something up here with ARP tables (I know form the past).

After a restart of the VM I was able to ping all IP, also CARP as it was starting with macspoof true again.

Some other thing I'm curious about... let's say you have 3 servers in a cluster, 2 installed with the macspoof hook and one not. The VM with macspoof enabled starts on the host without the hook and you migrate it to a host where the hooks is installed. What happens... ?

Cheers,

Matt


2014-05-15 13:39 GMT+02:00 Dan Kenigsberg <danken@redhat.com>:
On Thu, May 15, 2014 at 12:45:46PM +0200, Matt . wrote:
> OK, we are on the same line there.
>
> The issue is that it doesn't work on this host, others do.

It is very hard for me to follow your condition, and top-posting does
not help.

Does the macspoof hook work fine on other host? And only here unknown
macs are filtered? In that case, we should figure out what is different
in this host, and see the domxml of the troublesome VM.