Skip to content

Commit

Permalink
Some small improvements to OpenVPN server handling when using CARP VI…
Browse files Browse the repository at this point in the history
…Ps in Gateway Groups. Might help with issue #6607
  • Loading branch information
jim-p committed Aug 1, 2016
1 parent 13b2db8 commit 51d2e73
Show file tree
Hide file tree
Showing 3 changed files with 28 additions and 6 deletions.
4 changes: 2 additions & 2 deletions src/etc/inc/openvpn.inc
Original file line number Diff line number Diff line change
Expand Up @@ -1124,8 +1124,8 @@ function openvpn_restart($mode, $settings) {
return;
}

/* Do not start a client if we are a CARP backup on this vip! */
if (($mode == "client") && (strstr($settings['interface'], "_vip") && get_carp_interface_status($settings['interface']) != "MASTER")) {
/* Do not start an instance if we are not CARP master on this vip! */
if (strstr($settings['interface'], "_vip") && get_carp_interface_status($settings['interface']) != "MASTER") {
return;
}

Expand Down
15 changes: 13 additions & 2 deletions src/etc/rc.carpbackup
Original file line number Diff line number Diff line change
Expand Up @@ -113,9 +113,20 @@ if (is_array($config['openvpn']) && is_array($config['openvpn']['openvpn-client'

if (is_array($config['openvpn']) && is_array($config['openvpn']['openvpn-server'])) {
foreach ($config['openvpn']['openvpn-server'] as $settings) {
if (substr($settings['interface'], 0, 4) == '_vip') {
$openvpn_vip = $settings['interface'];
} else if (is_array($a_groups[$settings['interface']])) {
// interface is a gateway group, check CARP VIP
if (substr($a_groups[$settings['interface']][0]['vip'], 0, 4) == '_vip') {
$openvpn_vip = $a_groups[$settings['interface']][0]['vip'];
}
} else {
// this OpenVPN instance not on a CARP IP
continue;
}
foreach ($vips as $vip) {
if ($settings['interface'] == "_vip{$vip['uniqid']}") {
log_error("Stopping OpenVPN instance on {$friendly_descr} because of transition to CARP backup.");
if ($openvpn_vip == "_vip{$vip['uniqid']}") {
log_error("Stopping OpenVPN server instance on {$friendly_descr} because of transition to CARP backup.");
openvpn_restart('server', $settings);
}
}
Expand Down
15 changes: 13 additions & 2 deletions src/etc/rc.carpmaster
Original file line number Diff line number Diff line change
Expand Up @@ -112,9 +112,20 @@ if (is_array($config['openvpn']) && is_array($config['openvpn']['openvpn-client'
}
if (is_array($config['openvpn']) && is_array($config['openvpn']['openvpn-server'])) {
foreach ($config['openvpn']['openvpn-server'] as $settings) {
if (substr($settings['interface'], 0, 4) == '_vip') {
$openvpn_vip = $settings['interface'];
} else if (is_array($a_groups[$settings['interface']])) {
// interface is a gateway group, check CARP VIP
if (substr($a_groups[$settings['interface']][0]['vip'], 0, 4) == '_vip') {
$openvpn_vip = $a_groups[$settings['interface']][0]['vip'];
}
} else {
// this OpenVPN instance not on a CARP IP
continue;
}
foreach ($vips as $vip) {
if ($settings['interface'] == "_vip{$vip['uniqid']}") {
log_error("Starting OpenVPN instance on {$friendly_descr} because of transition to CARP master.");
if ($openvpn_vip == "_vip{$vip['uniqid']}") {
log_error("Starting OpenVPN server instance on {$friendly_descr} because of transition to CARP master.");
openvpn_restart('server', $settings);
}
}
Expand Down

0 comments on commit 51d2e73

Please sign in to comment.