Re: [Efw-user] Routing and ICMP

2013-08-06 Thread Marco Gabriel - inett GmbH
is the Endian is it then that should be the routes to other networks.   2013/8/2 Marco Gabriel - inett GmbH mgabr...@inett.de mailto:mgabr...@inett.de Understood. I already tried to create a specific rule for ICMP traffic within the firewall (exactly at policy based routing). It showed me ICMP 8 and ICMP

[Efw-user] Routing and ICMP

2013-08-02 Thread Marco Gabriel - inett GmbH
this?   Best regards, Marco   -- Kennen Sie schon den inett Newsletter? Unter http://www.inett.de/Newsletter http://www.inett.de/Newsletter eintragen und nichts mehr verpassen! inett GmbH Eschberger Weg 1 66121 Saarbrücken Geschäftsführer: Marco Gabriel Handelsregister Saarbrücken HRB 16588

Re: [Efw-user] Routing and ICMP

2013-08-02 Thread Marco Gabriel - inett GmbH
or a switch?   2013/8/2 Marco Gabriel - inett GmbH mgabr...@inett.de mailto:mgabr...@inett.de Hello,   I have a strange problem that may be related to the endian way of policy based routing.   ICMP packages seem not to be routed properly.   Client - cisco vpn box 1 - public network - cisco vpn box 2

Re: [Efw-user] Routing and ICMP

2013-08-02 Thread Marco Gabriel - inett GmbH
, the switch itself is responsible for making this delivery. But if your Endian were physically between cisco vpn box 2 and the server, then yes the Endian would be responsible for delivery. 2013/8/2 Marco Gabriel - inett GmbH mgabr...@inett.de They are all on the green LAN, connected to the same

Re: [Efw-user] Routing and ICMP

2013-08-02 Thread Marco Gabriel - inett GmbH
Endian has 192.168.1.230 Cisco VPN box 2 has 192.168.1.254 Client has 192.168.10.239 On Endian (or Server): “route add -net 192.168.10.0/24 gw 192.168.1.254” → works. Best regards, Marco Von: Jonathan Lessa [mailto:jonathanle...@gmail.com] Gesendet: Freitag, 2. August 2013 16:44 An:

Re: [Efw-user] Routing and ICMP

2013-08-02 Thread Marco Gabriel - inett GmbH
would be interesting to create a rule in the firewall between zones. Releasing the ping between the 192.168.10.0/24 network and the Green Zone. 2013/8/2 Marco Gabriel - inett GmbH mgabr...@inett.de Endian has 192.168.1.230 Cisco VPN box 2 has 192.168.1.254 Client has 192.168.10.239 On Endian

Re: [Efw-user] Routing and ICMP

2013-08-02 Thread Marco Gabriel - inett GmbH
this communication. What I asked was to test the firewall to create a rule allowing ICMP between these networks. 2013/8/2 Marco Gabriel - inett GmbH mgabr...@inett.de There are two LANs, connected through two cisco boxes. LAN1 contains client and cisco box 1, LAN2 contains endian, server

[Efw-user] UMTS Stick

2010-02-08 Thread Marco Gabriel
Hi, does anyone know an 3G/UMTS USB Stick that works with the Endian 2.3 Community Version? Thanks, Marco -- The Planet: dedicated and managed hosting, cloud storage, colocation Stay online with enterprise data

Re: [Efw-user] Endian update how to ???

2010-01-05 Thread Marco Gabriel
Hi there, the update just isn't available yet. You can reinstall a 2.3, but you can't update a 2.2 to 2.3 yet. Just be patient ;-) Best regards, Marco Am 05.01.2010 09:02, schrieb tyurda...@gmx.net: Hello List, Any person could update Endian 2.2 to 2.3 ? I don't want to make all settings

Re: [Efw-user] IPSEC Router behind Endian 2.2

2009-08-17 Thread Marco Gabriel
Nobody ever had a VPN router behind an Endian? Marco Marco Gabriel schrieb: sure, but if all network cards are working and everything else works besides the ipsec packets, I'd not assume a hardware problem. from my point of view, it has to be a software (or configuration) issue

[Efw-user] IPSEC Router behind Endian 2.2

2009-08-12 Thread Marco Gabriel
Hi there, I had a Cisco VPN Router (IPSEC) behind an Endian Firewall 2.1 / 2.2beta2 running for a while. The Cisco connected to an outside VPN endpoint and everything worked fine. Since a few days, it does not work anymore. There was a power failure for the Endian but it came back on without

Re: [Efw-user] IPSEC Router behind Endian 2.2

2009-08-12 Thread Marco Gabriel
Israel Junior schrieb: On Wed, Aug 12, 2009 at 09:56, inett Listarchivelistarch...@inett.de wrote: they simply get blocked or disappear somewhere in the Endian. Did you consider a hardware failure? sure, but if all network cards are working and everything else works besides the

Re: [Efw-user] ClamAV on EFW community version stops services[Scanned]

2008-07-02 Thread Marco Gabriel
probably your virus signature files are broken. in that case, clamav won't start. you could delete /usr/share/clamav/main.cvd and daily.cvd and run freshclam to get them again. David Caldwell schrieb: I downloaded the latest community version of Endian a few days ago. Whenever I enable

Re: [Efw-user] strange vpn behaviour

2008-06-23 Thread Marco Gabriel
[EMAIL PROTECTED] schrieb: Check the route on the 192.168.168.20 machine and make sure it lists a route to 192.168.169.0 through 192.168.168.254. That route exists, it doesn't even work if I try to connect from the .20 machine directly. Thanks, Marco

Re: [Efw-user] [Fwd: strange vpn behaviour]

2008-06-23 Thread Marco Gabriel
, etc? *From:* [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] *On Behalf Of *Marco Gabriel *Sent:* Saturday, June 21, 2008 4:40 AM *To:* efw-user@lists.sourceforge.net *Subject:* [Efw-user] [Fwd: strange vpn behaviour] I never received any answer if I asked a question regarding openvpn

[Efw-user] [Fwd: strange vpn behaviour]

2008-06-21 Thread Marco Gabriel
I never received any answer if I asked a question regarding openvpn. Am I the only one who uses openvpn? Original-Nachricht Betreff:[Efw-user] strange vpn behaviour Datum: Thu, 19 Jun 2008 23:47:51 +0200 Von:Marco Gabriel [EMAIL PROTECTED] Antwort an: efw

Re: [Efw-user] Link Failover and OpenVPN

2008-06-19 Thread Marco Gabriel
as far as I know, it does not switch back to the main uplink as long as the backup link works. but it should be easy to have a cron job checking the main uplink and restart openvpn if main is up but not the default gateway. regards, marco Kevin Ragsdale schrieb: Hello everyone, We are

[Efw-user] strange vpn behaviour

2008-06-19 Thread Marco Gabriel
hi there, I still have a strange behaviour, that I can't track down to fix it. I run 2 endian 2.2beta2 boxes with the networks 192.168.168.0/24 and 192.168.169.0/24, the efw's are .254 in each subnet. Both machines have a VPN connection to each other. A connection from 169.x to 168.x works:

[Efw-user] openvpn clients can't access anything outside the firewall

2008-06-07 Thread Marco Gabriel
the subject tells it: my openvpn clients cannot access any machines or services in the green network. can anybody tell me that this is working with few 2.2 beta 4 or 2.2 rc1? I tried both versions and have the same problem. thanks, marco

[Efw-user] OpenVPN Server Client - no connection

2008-05-27 Thread Marco Gabriel
Hi there, I have 2 EFWs connected to each other via internet and one is configured as OpenVPN Server, the other one is configured as OpenVPN Client (gw2gw). In the advanced client configuration, NAT is not checked. From behind the client firewall to the server firewall, I can access

Re: [Efw-user] cant access ssh from the public interface

2008-05-09 Thread Marco Gabriel
Gregory Machin schrieb: I have configured the firewall to allow ssh (port 22) access and have configured ssh to run. I can access the ssh from the lan perfectly fine but not from the vpn or the public interface .. you need to allow system access from red on port 22 to make this work.

Re: [Efw-user] nagios nrpe plugin

2008-04-28 Thread Marco Gabriel
plugin's you created? :-D ) Marco Gabriel wrote: I am monitoring endian systems by using nagios over ssh with my own handcrafted plugins. writing nagios plugins is pretty easy. I've never tried the nrpe plugin. marco wharfratjoe schrieb: So is anyone monitoring Endian systems

Re: [Efw-user] nagios nrpe plugin

2008-04-27 Thread Marco Gabriel
I am monitoring endian systems by using nagios over ssh with my own handcrafted plugins. writing nagios plugins is pretty easy. I've never tried the nrpe plugin. marco wharfratjoe schrieb: So is anyone monitoring Endian systems with the NRPE plugin? Can someone assist with the install

Re: [Efw-user] Hardware Compatibility and features

2008-04-24 Thread Marco Gabriel
Hi Lars, Lars Oeschey schrieb: Is there a list of supported Hardware? This question has been asked on the list, but never answered... I have a FSC Server RX100S5 with ICH9 chipset and LSI Megaraid (If I had known about Endian before I probably just had bought an appliance, but now the

Re: [Efw-user] Hardware Compatibility and features

2008-04-24 Thread Marco Gabriel
Lars Oeschey schrieb: a config would be nice... I'll have the admin try to boot the ISO, but that way I can check in advance (the machine is 500km away now, since our first try with IPCop failed ;)) You've got mail. :) hm, I thought so... otoh, I found the sources for the kernel drivers at

Re: [Efw-user] conection slow

2008-04-23 Thread Marco Gabriel
you could - doesn't matter. if you activate it, your connections should rather speed up. marco Roderick Alexander Ali Aguila schrieb: i need activete The dns proxy or not??? 2008/4/23, compdoc [EMAIL PROTECTED]: Can you log in with ssh and post the results of this

Re: [Efw-user] smtp proxy behavior

2008-04-22 Thread Marco Gabriel
hi david, David Ballester schrieb: telnet from my_internal_mail_server_ip to any public_mailserver get connected with EFW public address. BAD - EFW public address is not regitered in mx records, a lot of mailservers rejects the connection - a lot of mailservers reject the connection if

Re: [Efw-user] OpenVPN deletes local subnet if vpn link goes down

2008-04-21 Thread Marco Gabriel
with static IP) is set to 0.0.0.0 and also SubNet is set to 255.0.0.0. I guess that this isn't a issue of endian and more one of OpenVPN or OpenVPN GUI. My work-around is to use tools to reset NIC-Config by one Click like IBM Access Connections. Regards Marco Gabriel [EMAIL PROTECTED] schrieb: I

[Efw-user] OpenVPN deletes local subnet if vpn link goes down

2008-04-20 Thread Marco Gabriel
I discovered a strange thing and I am not sure if it is me, my setup or OpenVPN. I use OpenVPN for the first time, so I am not sure about my config. Here is the setup: 192.168.1.0/24 --- endian-fw0 ---(internet)--- endian-fw1 --- 192.168.1.0/24 I have set up OpenVPN in bridge mode because both

[Efw-user] Outgoing Firewall Blocks everything

2008-04-19 Thread Marco Gabriel
Hi there, I have a problem on an endian 2.2beta2 with outgoing connections. no matter what I settings I change, I can't get any connection from green to red network. if I use the transparent http proxy, I can browse around, so the link on both sides is okay. Even with a disabled zone firewall

[Efw-user] Could not enable uplink. Maximum amount of PPPoE uplinks is reached.

2008-03-28 Thread Marco Gabriel
Hi there, I have a problem with the endian 2.2 beta 2. It runs fine for the main uplink, but I was requested to add another uplink for a dedicated network connection. Both connections are ADSL connections with PPPoE, but when I try to add the second connection on a newly added network card,