[pfSense Support] Ral Driver

2007-03-15 Thread Pedro Paulo Oliveira Jr
I've noticed that the ral driver in FreeBSD 6.2 support many boards in the market and the Kernel in pfsense don't The key is the file if_ral_pci.c static const struct ral_pci_ident ral_pci_ids[] = { { 0x1814, 0x0201, Ralink Technology RT2560 }, { 0x1814, 0x0301, Ralink

[pfSense Support] Alias length restriction

2007-03-15 Thread Rainer Duffner
Hi, I imported my config from an older pfSense (*RELENG_1_SNAPSHOT_03-10-2006*) into a newer version (in a different host) The newer one (a recent snapshot) complained about the length of the names of some aliases. Is there really a restriction? Can I download the XML file and replace the

Re: [pfSense Support] Ral Driver

2007-03-15 Thread Scott Ullrich
Try a snapshot which is based on 6.2. If you find that they are still not present that means they where added to RELEN_6, not 6.2 Scott On 3/15/07, Pedro Paulo Oliveira Jr [EMAIL PROTECTED] wrote: I've noticed that the ral driver in FreeBSD 6.2 support many boards in the market and the

Re: [pfSense Support] Alias length restriction

2007-03-15 Thread Scott Ullrich
On 3/15/07, Rainer Duffner [EMAIL PROTECTED] wrote: Hi, I imported my config from an older pfSense (*RELENG_1_SNAPSHOT_03-10-2006*) into a newer version (in a different host) The newer one (a recent snapshot) complained about the length of the names of some aliases. Is there really a

Re: [pfSense Support] Snort whitelisting?

2007-03-15 Thread Scott Ullrich
On 3/15/07, Ying Wong [EMAIL PROTECTED] wrote: Hi all, I have snort running on the LAN interface instead of a WAN. The reason for this is so I can block individual users that uses MSN/IM/P2P and not the other way around. Snort detects the violations and blocks the private ips accordingly but

Re: [pfSense Support] Snort whitelisting?

2007-03-15 Thread Ying Wong
The latest snort I see is STABLE, 2.6.1.3_2, platform: 1.0. I did a uninstall , refresh pkg_mgr.php page. Should I upgrade to the latest PFSense snapshot? Thanks! - Ying Scott Ullrich wrote: There was a recent update to snort that might fix this. Please upgrade your snort package. Scott

Re: [pfSense Support] Snort whitelisting?

2007-03-15 Thread Scott Ullrich
On 3/15/07, Ying Wong [EMAIL PROTECTED] wrote: The latest snort I see is STABLE, 2.6.1.3_2, platform: 1.0. I did a uninstall , refresh pkg_mgr.php page. Should I upgrade to the latest PFSense snapshot? Thanks! Not sure that this is necessary if it works partially. We have only suggested

Re: [pfSense Support] Snort whitelisting?

2007-03-15 Thread Ying Wong
Scott Ullrich wrote: On 3/15/07, Ying Wong [EMAIL PROTECTED] wrote: The latest snort I see is STABLE, 2.6.1.3_2, platform: 1.0. I did a uninstall , refresh pkg_mgr.php page. Should I upgrade to the latest PFSense snapshot? Thanks! Not sure that this is necessary if it works partially. We

Re: [pfSense Support] Snort whitelisting?

2007-03-15 Thread Scott Ullrich
On 3/15/07, Ying Wong [EMAIL PROTECTED] wrote: If a upgrade of pfsense is not necessary, then I did have the latest snort package installed. I can't seems to find much documentation on snort2c either, or a sample white list. Neither could I when I ported snort2c to FreeBSD/pfSense. The source

[pfSense Support] Need to limit webaccess to all bout 15 websites

2007-03-15 Thread Sloan Miller
I need to limit http access to all sites but 15 on the internet. Is this possible? If so how would I do this. thanks

Re: [pfSense Support] Snort whitelisting?

2007-03-15 Thread Ying Wong
The only docs I found was in the source as well. Snorts version number I mentioned above was from the command line, Snort exiting # Version 2.6.1.3 (Build 36) I will install _2 just in case afterwards. Thanks for your input Scott. - Ying Scott Ullrich wrote: On 3/15/07, Ying Wong [EMAIL

Re: [pfSense Support] Snort whitelisting?

2007-03-15 Thread Ying Wong
Unfortunately its ignoring the white list altogether with _2. I would love to help rectify this problem but I am not familiar with Snort as much as I would like to be. Also, as you're probably aware, there's a bug in the config generator. Snort will not start unless the redundant forward

Re: [pfSense Support] Need to limit webaccess to all bout 15 websites

2007-03-15 Thread Michael Schuh
Hi if i understand right you would give Clients on the lan access to only 15 Sites and nothing more? so you have two options, a) create allow rules for dns, smtp pop3,imap, or what else is required, create also pass rules that aloow access to this 15 sites hint this sites can be hacked in an

[pfSense Support] CARP problem or not?

2007-03-15 Thread joseph . favia
Hi I've set up 2 PFSENSE machines with CARP and it seems to work well although I find the following messages in the system log of the BACKUP machine : kernel : arp_rtrequest : bad gateway 111.222.333.444 (!AF_LINK) A communications error occurred when attempting XMLRPC sync with 111.222.333.111