View Single Post
  #4 (permalink)  
Old 2006-10-24
northlandboy northlandboy is offline
Senior Member
 
Join Date: 2006-07-28
Location: New Zealand
Posts: 857
Rep Power: 3
northlandboy has an average reputation (10+)
Default Re: failover nat-problem

So if you've got different MAC addresses in the proxy ARP configuration on both firewalls, then how does the upstream router know that you've failed over? Won't it still have the primary system's MAC addresses stored in its ARP cache?

If you suspect it's an ARP issue, then have you checked out the routers ARP cache? Looked at traffic on the wire with tcpdump -e?
Reply With Quote