RE: [pfSense Support] Incorrect System Log Order/Logging Bug?

2011-07-13 Thread Dimitri Rodis
>2011/7/13 Jim Pingle mailto:li...@pingle.org>> >On 7/9/2011 9:17 PM, Dimitri Rodis wrote: >> The system is and has been set to -8 (I am Pacific Daylight Time, USA), and >> hasn't been re/booted since the first boot on that build--and I >have >> report

RE: [pfSense Support] Incorrect System Log Order/Logging Bug?

2011-07-09 Thread Dimitri Rodis
>On Fri, Jul 8, 2011 at 4:26 PM, Vick Khera wrote: >> On Fri, Jul 8, 2011 at 1:06 PM, Dimitri Rodis >> wrote: >>> >>> I have my log set to show newest on top, and the log is "mostly" in >>> order, but notice how there are some entries tha

[pfSense Support] Incorrect System Log Order/Logging Bug?

2011-07-08 Thread Dimitri Rodis
" in order, but notice how there are some entries that are in the middle of this screenshot that are "newer" than everything else. (The problem is that Jul 8 15:12:29 has not yet happened in my time zone, it is only shortly after 10AM here..) [cid:image001.png@01CC3D56.B846EF00]

[pfSense Support] NAT Reflection Broken in recent builds

2011-05-23 Thread Dimitri Rodis
debugging/troubleshooting purposes if someone needs it since I have a spare unit that I can boot the CF on.. Thanks, Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com

RE: [pfSense Support] COM-port Watchguard Firebox X500 with 2.0-RC1

2011-05-08 Thread Dimitri Rodis
until I can get a hardware sample to Pyun. I don't think the support for 8139C+ will ever be 100% (I'd take 99%) until this happens. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com - To unsubscrib

RE: [pfSense Support] COM-port Watchguard Firebox X500 with 2.0-RC1

2011-05-07 Thread Dimitri Rodis
h a Realtek 8139C+ chip on it (like a Firebox X500, X700, X1000, or X2500) that is what it's going to take to fix the Realtek driver problem. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com - To

[pfSense Support] Incorrect Sort on 2.0-RC1

2011-04-11 Thread Dimitri Rodis
2.0-RC1 (i386) built on Mon Mar 14 17:33:11 EDT 2011 Log sorting is set to newest first, however, the log sort is "randomly incorrect" (see screen snippet). I didn't see anything in redmine, thought I would check here first.. [cid:image001.png@01CBF837.8BDBAAF0] Dimitri

RE: [pfSense Support] Traffic that is explicitly allowed occasionally blocked

2011-02-28 Thread Dimitri Rodis
>No, those are RSTs and FINs coming after the state is closed, expected >behavior. >http://doc.pfsense.org/index.php/Logs_show_%22blocked%22_for_traffic_from_a_legitimate_connection,_why%3F Ok, but unless I'm misunderstanding, I am not logging packets blocked by the default rule, so why would th

[pfSense Support] Traffic that is explicitly allowed occasionally blocked

2011-02-28 Thread Dimitri Rodis
rule right beneath that rule that explicitly blocks outbound SMTP from all IP addresses on the subnet, and I have logging turned on for that rule. So, the rule beneath the one that should be triggered is being triggered instead. Is there a Bug/Race condition in rule evaluation?? Dimitri

RE: [pfSense Support] pfSense 2.0, upgrade to this morning's snap problem

2011-01-25 Thread Dimitri Rodis
On Mon, Jan 24, 2011 at 7:42 PM, Dimitri Rodis wrote: > After an upgrade to this morning's snap, I received the following > after the upgrade/reboot (it's what's on my PuTTY atm): > > > > Syncing OpenVPN settings...done. > > Starting syslog...d

[pfSense Support] pfSense 2.0, upgrade to this morning's snap problem

2011-01-24 Thread Dimitri Rodis
After an upgrade to this morning's snap, I received the following after the upgrade/reboot (it's what's on my PuTTY atm): Syncing OpenVPN settings...done. Starting syslog...done. Configuring firewall..done. Starting PFLOG...done. Setting up gateway monitors...done. Synchronizing user settings

[pfSense Support] Traffic Graph accurate--but not the host list

2011-01-24 Thread Dimitri Rodis
it never showed the file server's ip address at all. It almost looks like the host list is only looking at traffic directed to pfSense itself as opposed to through that particular interface. Anyone else confirm? Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com

[pfSense Support] Bootup Complete - but no console

2011-01-22 Thread Dimitri Rodis
Any reasons why this might be? Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com

[pfSense Support] Alias Renaming Issue

2011-01-21 Thread Dimitri Rodis
otice that your stuff doesn't work ;) Anyone else see this? Dimitri Rodis http://www.integritasystems.com - To unsubscribe, e-mail: support-unsubscr...@pfsense.com For additional commands, e-mail: support-h...@pfsense.com Com

RE: [pfSense Support] 1:1 NAT Entry issue - Bug or mistake?

2011-01-20 Thread Dimitri Rodis
On Thu, Jan 20, 2011 at 9:28 PM, Dimitri Rodis wrote: > pfSense 2.0-BETA5 (i386) built on Wed Jan 19 12:45:14 EST 2011 > > > > When I try to use an alias in the Internal IP field (suppose the alias > was > ) I receive the following error upon saving (or trying

[pfSense Support] 1:1 NAT Entry issue - Bug or mistake?

2011-01-20 Thread Dimitri Rodis
anged. I did not try using an Alias in the External Subnet IP field, although it is RED also. Anyone else see this? Dimitri Rodis http://www.integritasystems.com

RE: [pfSense Support] Testing 2.0 - What is the upgrade and downgrade process for Daily snapshots?

2011-01-12 Thread Dimitri Rodis
>Hi Everyone, > >Just loaded a nanobsd image of pfSense 2.0 onto a CF card for Alix board. I >have only used v1.2.3 in the past and I never used the internet to upgrade it. >In fact, I am under the impression >that v1.2.3 is the latest and there are no >upgrades to it. > >I am wondering if there

[pfSense Support] pfSense Beta 5 - upgrade/reboot issue

2011-01-12 Thread Dimitri Rodis
The last 3-4 upgrades that I've done using nano are not automatically rebooting after the upgrade is complete, even though it says it is on the console (and last night I left it to see if it eventually would, and it did not and I logged in this morning). The following is literally a cut and past

RE: [pfSense Support] 2.0 B5 Update Breaks Web GUI - 08-Jan-2011 15:37

2011-01-09 Thread Dimitri Rodis
>Hi, > >I upgraded 2.0 B5 last night and it seems to have broken the web Gui. All my >tunnels are up and the command line works fine. > >Thanks, > >-- >Mark Street, D.C., RHCE >Chief Technology Officer >Alliance Medical Center >(707) 433-5494 If you reboot does the WebGUI start working again?

RE: [pfSense Support] CARP IP/Hyper-V/Hyper-V R2

2010-11-22 Thread Dimitri Rodis
>On Mon, Nov 15, 2010 at 9:57 PM, Evgeny Yurchenko wrote: >> >> I do not know a lot about Hyper-v but in VMWare for instance you can >> block frames with 'faked' mac-addresses. Probably you hit the same >> problem as CARP-packets have MAC-addresses 'not real' but specifically crafted. > >I'm sur

RE: [pfSense Support] CARP IP/Hyper-V/Hyper-V R2

2010-11-16 Thread Dimitri Rodis
On 10-11-15 09:22 PM, Dimitri Rodis wrote: I recently migrated a pfSense virtual machine (version 1.2.2) that was running flawlessly on Hyper-V (first release) with 2 additional CARP IP addresses on the WAN interface for about 16 months. Over the weekend, I migrated that virtual machine over

[pfSense Support] CARP IP/Hyper-V/Hyper-V R2

2010-11-15 Thread Dimitri Rodis
ck to the original Hyper-V (non-R2) host. Any ideas on why CARP IPs wouldn't work on Hyper-V R2? Is there something since 1.2.2 that might change this? Thanks, Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com smime.p7s Description: S/MIME cryptographic signature

RE: [pfSense Support] CARP and NAT problems

2010-05-31 Thread Dimitri Rodis
If the port forwards are on the WAN addresses themselves, to my knowledge they will not fail over. My understanding is that all "addresses" (and port forwards) that you intend to survive a failover must be on CARP addresses. Dimitri Rodis Integrita Systems LLC -Original Message

RE: [pfSense Support] Wierd CARP problem

2010-04-23 Thread Dimitri Rodis
On Thu, Apr 22, 2010 at 7:51 PM, Dimitri Rodis > wrote: >> >> I would really like to see this work reliably at some point. From what I can >> tell, this problem is not limited to just Fireboxes, >it is on pretty much >> all NICs that have >> RTL8139C+ chi

RE: [pfSense Support] Wierd CARP problem

2010-04-22 Thread Dimitri Rodis
>On Mon, Apr 19, 2010 at 6:56 PM, Hans Maes wrote: >> >> Although it is definately related to the type of NIC's in the watchguard >> boards, I'm still not completely convinced this is 100% a hardware problem >> since the Watchguard Linux OS seems to work just fine on it. Sounds more >> like a Free

RE: [pfSense Support] Redirect to Captive Portal is not working

2009-06-11 Thread Dimitri Rodis
Stupid question--- the pfSense box is (still) the gateway address for your network, right? Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: apiase...@midatlanticbb.com [mailto:apiase...@midatlanticbb.com] Sent: Thursday, June 11, 2009 5:42 PM

RE: [pfSense Support] Re: Can't get more than 15kpps.

2009-05-13 Thread Dimitri Rodis
My understanding is that Giant lock is gone from the FreeBSD network stack in 8: http://unix.derkeiler.com/Mailing-Lists/FreeBSD/arch/2009-04/msg00075.html Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Bill Marquette [mailto:bill.marque

RE: [pfSense Support] Captive Portal Question

2009-05-08 Thread Dimitri Rodis
do), and authenticated clients get put on vlans that can freely access the internet. In your case, you might just need to use FreeRADIUS along with some switch ACLs (in the "Additional RADIUS Options" box) to allow/limit/prevent internet access. Hopefully that made some sense. It

RE: [pfSense Support] Captive Portal Question

2009-05-08 Thread Dimitri Rodis
I'm drafting a reply. Be done shortly. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Tim Dressel [mailto:tjdres...@gmail.com] Sent: Friday, May 08, 2009 11:11 PM To: support@pfsense.com Subject: Re: [pfSense Support] Captive P

RE: [pfSense Support] Captive Portal Question

2009-05-08 Thread Dimitri Rodis
about 15 months now--still running on 1.2-release. If you have some good managed switches, that's the way to do it IMHO. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: RB [mailto:aoz@gmail.com] Sent: Thursday, May 07, 2009 3:16

RE: [pfSense Support] Attention Firebox X Series Users - Testing Needed

2009-04-29 Thread Dimitri Rodis
.php/topic,15669.0.html Thanks, Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Joshua Schmidlkofer [mailto:joshl...@gmail.com] Sent: Tuesday, April 28, 2009 8:23 PM To: support@pfsense.com; j...@pax2cargo.com Subject: Re: [pfSense Support]

RE: [pfSense Support] Attention Firebox X Series Users - Testing Needed

2009-04-23 Thread Dimitri Rodis
one person has reported that 2.0 gives him timeouts (see http://forum.pfsense.org/index.php?topic=15669). I don't yet have an explanation as to why I get timeouts in 1.2.3 and not in 2.0, but I'm working on figuring out why. Dimitri Rodis Integrita Systems LLC http://www.integritasy

RE: [pfSense Support] 1.2.3-RC1 released!

2009-04-22 Thread Dimitri Rodis
Tim, See http://forum.pfsense.org/index.php?topic=15669 if you have issues with the Firebox. I'm collecting as much data as I can from those that are having issues. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Tim Nelson [mailto

RE: [pfSense Support] Can captive portal authenticate based on windows login

2009-04-21 Thread Dimitri Rodis
ent." I'd use pfSense any day of the week over ISA, even if it meant they had to use credential prompts. Bottom line: if eliminating credential prompts is an absolute must, ISA can do it for sure. pfSense, not yet ;) Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com

RE: [pfSense Support] Can captive portal authenticate based on windows login

2009-04-21 Thread Dimitri Rodis
he captive portal, and have the "current" windows logon credentials automatically pass to the captive portal, which is currently not possible with pfSense-- ISA Server is the only thing I know of that does this. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -

RE: [pfSense Support] Can captive portal authenticate based on windows login

2009-04-21 Thread Dimitri Rodis
just may not know about it). With respect to ISA, there is a client installation (aka Firewall Client) that is required to make the authentication transparent--without it, it would work just like pfSense would-- with RADIUS against AD, and the user would have to enter credentials manually. Dimitri

RE: [pfSense Support] Attention Firebox X Series Users - Testing Needed

2009-04-18 Thread Dimitri Rodis
Forum link: http://forum.pfsense.org/index.php/topic,15669.0.html Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: cbuech...@gmail.com [mailto:cbuech...@gmail.com] On Behalf Of Chris Buechler Sent: Saturday, April 18, 2009 11:33 AM To

[pfSense Support] Attention Firebox X Series Users - Testing Needed

2009-04-18 Thread Dimitri Rodis
produce it, and Pyun can fix it. Thanks to all that have helped, and thanks to those that are willing to test! Dimitri Rodis Integrita Systems LLC <http://www.integritasystems.com> http://www.integritasystems.com smime.p7s Description: S/MIME cryptographic signature

RE: [pfSense Support] VMware ESXi - Protect all VM's with pfSense VM in Bridge Mode - HELP!

2009-04-16 Thread Dimitri Rodis
There is a promiscuous mode on the vSwitches. That setting might need to be adjusted. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Tim Nelson [mailto:tnel...@fudnet.net] Sent: Thursday, April 16, 2009 9:01 AM To: support@pfsense.com

RE: [pfSense Support] Possible Outbound NAT Bug in 1.2.3 Snapshot?

2009-04-10 Thread Dimitri Rodis
I put that in also-- like I said it didn't take effect until I rebooted. If the rule wasn't there, it wouldn't matter how many times I rebooted :) Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Kimmo Paasiala [mailto:kpaas...@

RE: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Dimitri Rodis
Good deal. I'll go to a later snapshot then. Are upgrades between snapshots on embedded working at the moment, or should I just reflash? Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Scott Ullrich [mailto:sullr...@gmail.com]

RE: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Dimitri Rodis
The snapshot I'm using is dated April 1.. that's a couple of days after the hackathon, I believe. Any idea when the xmlparse.inc from HEAD was removed? Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Scott Ullrich [mailto:sullr...

RE: [pfSense Support] CARP Bug in 1.2.3

2009-04-09 Thread Dimitri Rodis
ewhere, because like I said, I didn't dupe the section myself. Dimitri Rodis Integrita Systems LLC -Original Message- From: Scott Ullrich [mailto:sullr...@gmail.com] Sent: Thursday, April 09, 2009 8:15 AM To: support@pfsense.com Subject: Re: [pfSense Support] CARP Bug in 1.2

RE: [pfSense Support] Possible Outbound NAT Bug in 1.2.3 Snapshot?

2009-04-08 Thread Dimitri Rodis
Nope, using embedded. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: cbuech...@gmail.com [mailto:cbuech...@gmail.com] On Behalf Of Chris Buechler Sent: Wednesday, April 08, 2009 8:30 PM To: support@pfsense.com Subject: Re: [pfSense Support

[pfSense Support] CARP Bug in 1.2.3

2009-04-08 Thread Dimitri Rodis
x Shouldn't only be in there once? Looks like it added another section it each time I tried to change/save it, and it's only using the last one. Bug or user error? Dimitri Rodis Integrita Systems

[pfSense Support] Possible Outbound NAT Bug in 1.2.3 Snapshot?

2009-04-08 Thread Dimitri Rodis
user error? Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com smime.p7s Description: S/MIME cryptographic signature

RE: [pfSense Support] pfSense gets RFC1918 address on WAN interface after reboot

2009-04-04 Thread Dimitri Rodis
#x27;s something from the ISP. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com From: Karl Fife [mailto:karlf...@gmail.com] Sent: Friday, April 03, 2009 10:51 PM To: support@pfsense.com Subject: [pfSense Support] pfSense gets RFC1918 address on WAN interface after reboot

[pfSense Support] RE: Load Balancer Using TCP

2009-04-01 Thread Dimitri Rodis
what version of pfSense you are using J Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com From: Nathan Eisenberg [mailto:nat...@atlasnetworks.us] Sent: Wednesday, April 01, 2009 9:10 PM To: support@pfsense.com Subject: [pfSense Support] Load Balancer Using TCP Hello,

RE: [pfSense Support] AW: Firebox X series w/ 1.2 and 1.2.2 issue

2009-04-01 Thread Dimitri Rodis
meout DOH! Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message----- From: Dimitri Rodis [mailto:dimit...@integritasystems.com] Sent: Tuesday, March 31, 2009 9:55 PM To: support@pfsense.com Subject: RE: [pfSense Support] AW: Firebox X series w/ 1.2 and 1.2.2 iss

RE: [pfSense Support] AW: Firebox X series w/ 1.2 and 1.2.2 issue

2009-03-31 Thread Dimitri Rodis
Woohoo! Didn't know you guys got this put in.. I'll test tomorrow or Thursday as time permits. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: cbuech...@gmail.com [mailto:cbuech...@gmail.com] On Behalf Of Chris Buechler Sent: Tues

RE: [pfSense Support] AW: Firebox X series w/ 1.2 and 1.2.2 issue

2009-03-31 Thread Dimitri Rodis
x27;t appear to really have any issues.. then I added a second LAN and a dedicated sync interface for CARP and threw it into production, and it lasted about 10 minutes before it melted down with watchdog timeouts. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Ori

RE: [pfSense Support] Router supporting multiple WAN IP Addresses.

2009-03-29 Thread Dimitri Rodis
The feature you are looking for is Virtual IPs (or CARP IPs). Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Kipton Moravec [mailto:k...@kdream.com] Sent: Sunday, March 29, 2009 9:08 PM To: support@pfsense.com Subject: [pfSense Support

RE: [pfSense Support] ACPI/APIC in loader.conf - watchdog timeouts

2009-03-23 Thread Dimitri Rodis
testing tomorrow. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: cbuech...@gmail.com [mailto:cbuech...@gmail.com] On Behalf Of Chris Buechler Sent: Monday, March 23, 2009 6:05 PM To: support@pfsense.com Subject: Re: [pfSense Support] ACPI/APIC

RE: [pfSense Support] ACPI/APIC in loader.conf - watchdog timeouts

2009-03-22 Thread Dimitri Rodis
#x27;t an "installer")? Doing a full install on these fireboxes is pretty tough and requires some soldering (I believe) to get a keyboard header working, not to mention that you have to get the board completely out of the chassis to fit a video card on it. Thanks Chris.. Dimitri Rodis Integri

[pfSense Support] ACPI/APIC in loader.conf - watchdog timeouts

2009-03-22 Thread Dimitri Rodis
go away (and a specially sized sticker than can cover up the Firebox X logo J) Dimitri Rodis Integrita Systems LLC smime.p7s Description: S/MIME cryptographic signature

RE: [pfSense Support] AW: Firebox X series w/ 1.2 and 1.2.2 issue

2009-03-20 Thread Dimitri Rodis
Switched the cables a few times now. 3 different pre-fab cables (different colors even!). Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: Andrew Cotter [mailto:andrew.cot...@somersetcapital.com] Sent: Friday, March 20, 2009 12:35 PM To

RE: [pfSense Support] Existing pfSense 1.2.2, adding redundant member

2009-03-18 Thread Dimitri Rodis
It looked that easy-- just wanted to be sure before messing with a production set up! Thanks, Dimitri Rodis Integrita Systems LLC -Original Message- From: Paul Mansfield [mailto:it-admin-pfse...@taptu.com] Sent: Wednesday, March 18, 2009 4:45 AM To: support@pfsense.com Subject: Re

[pfSense Support] Existing pfSense 1.2.2, adding redundant member

2009-03-17 Thread Dimitri Rodis
FAQs, and did some forum searches, but all of them discuss new installs, not adding redundancy down the line (at least I couldn't find it if so). Thanks, Dimitri Rodis Integrita Systems LLC smime.p7s Description: S/MIME cryptographic signature

[pfSense Support] LCDProc Package on Embedded

2009-03-06 Thread Dimitri Rodis
rw 1 1" > /etc/fstab; echo "/dev/ufs/pfSenseCfg /cf ufs rw 1 1" >> /etc/fstab Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com smime.p7s Description: S/MIME cryptographic signature

RE: [pfSense Support] Exchange RPC/HTTPS outbound client

2009-02-10 Thread Dimitri Rodis
also categorically never used squid in one of these setups either. Dimitri Rodis Integrita Systems LLC http://www.integritasystems.com -Original Message- From: RB [mailto:aoz@gmail.com] Sent: Monday, February 09, 2009 7:16 PM To: support@pfsense.com Subject: Re: [pfSense Support

RE: [pfSense Support] Packages with pfSense embedded not an option - very sad

2009-01-26 Thread Dimitri Rodis
Re-do what you did, but create a 2GB partition and try again. Leave the other 6GB unused. I had this problem with an older PC and an actual 20GB hard drive-- from what I understand, it has to do with the IDE-->CF adapters and how well they support LBA/DMA modes, etc. Dimitri Rodis Integr

RE: [pfSense Support] Outbound NAT to Virt. IP issues. Maybe it's the config, maybe it's VMWare ESXi?

2008-12-22 Thread Dimitri Rodis
What kind of Virtual IP are you using? If you are using CARP addresses (which is what I'm using), make sure your subnet mask actually matches your WAN interface subnet mask. Dimitri Rodis Integrita Systems LLC -Original Message- From: Jason Lixfeld [mailto:jason-lists

[pfSense Support] RE: DNS Forwarder/Authoritative DNS Server

2008-12-11 Thread Dimitri Rodis
No love? Dimitri Rodis Integrita Systems LLC From: Dimitri Rodis [mailto:dimit...@integritasystems.com] Sent: Tuesday, December 02, 2008 9:36 AM To: support@pfsense.com Subject: [pfSense Support] DNS Forwarder/Authoritative DNS Server On one of my networks, I have 4 Windows server domain

RE: [pfSense Support] Dell Hardware Monitoring - pfSense 1.2 Final

2008-12-09 Thread Dimitri Rodis
OpenManage Server Administrator is what you're looking for. Dimitri Rodis Integrita Systems LLC From: Curtis LaMasters [mailto:[EMAIL PROTECTED] Sent: Tuesday, December 09, 2008 11:16 AM To: support@pfsense.com Subject: Re: [pfSense Support] Dell Hardware Monitoring - pfSense 1.2

[pfSense Support] DNS Forwarder/Authoritative DNS Server

2008-12-02 Thread Dimitri Rodis
were detected: * A override already exists for this domain. Is there a way that I can specify multiple DNS servers for a particular domain suffix? You should be able to, IMO. Thanks, Dimitri Rodis Integrita Systems LLC <>

RE: [pfSense Support] Bridge + Captive Portal

2008-11-19 Thread Dimitri Rodis
interface to use the corresponding private IPs? That way, you can "use" all your public IPs, and each client will have one-- I've never used 1:1 in conjunction with captive portal, though, so what I just said may or may not work. Dimitri Rodis Integrita Systems LLC -O

RE: [pfSense Support] NAT Reflection States

2008-11-18 Thread Dimitri Rodis
There are a ton of lines that look like this: 19004 stream tcp nowait/0nobody /usr/bin/nc nc -w 20 I guess we found the culprit then? Why is it using 20 as opposed to 2000? Dimitri Rodis Integrita Systems LLC -Original Message- From: Scott Ullrich [mailto

RE: [pfSense Support] NAT Reflection States

2008-11-18 Thread Dimitri Rodis
I am using 1.2-RELEASE built on Sun Feb 24 17:04:58 EST 2008 so it isn't an RC thing. Dimitri Rodis Integrita Systems LLC -Original Message- From: digger [mailto:[EMAIL PROTECTED] Sent: Tuesday, November 18, 2008 4:04 PM To: support@pfsense.com Subject: Re: [pfSense Support

RE: [pfSense Support] NAT Reflection States

2008-11-18 Thread Dimitri Rodis
the -w param is in seconds according to http://www.securityforest.com/wiki/index.php/Netcat_-_Basic_Overview Any other ideas as to why connections would be dropping/timing out like this? Dimitri Rodis Integrita Systems LLC -Original Message- From: Dimitri Rodis [mailto:[EMAIL

RE: [pfSense Support] NAT Reflection States

2008-11-18 Thread Dimitri Rodis
st 6 times since you emailed me last. Dimitri Rodis Integrita Systems LLC -Original Message- From: Scott Ullrich [mailto:[EMAIL PROTECTED] Sent: Tuesday, November 18, 2008 3:44 PM To: support@pfsense.com Subject: Re: [pfSense Support] NAT Reflection States On Tue, Nov 18, 2008 at 6:40 PM, D

RE: [pfSense Support] NAT Reflection States

2008-11-18 Thread Dimitri Rodis
That's milliseconds, correct? Dimitri Rodis Integrita Systems LLC -Original Message- From: Dimitri Rodis [mailto:[EMAIL PROTECTED] Sent: Tuesday, November 18, 2008 3:38 PM To: support@pfsense.com Subject: RE: [pfSense Support] NAT Reflection States Thanks, Scott. Dimitri

RE: [pfSense Support] NAT Reflection States

2008-11-18 Thread Dimitri Rodis
Thanks, Scott. Dimitri Rodis Integrita Systems LLC -Original Message- From: Scott Ullrich [mailto:[EMAIL PROTECTED] Sent: Tuesday, November 18, 2008 3:36 PM To: support@pfsense.com Subject: Re: [pfSense Support] NAT Reflection States On Tue, Nov 18, 2008 at 6:32 PM, Dimitri Rodis

RE: [pfSense Support] Bridge + Captive Portal

2008-11-18 Thread Dimitri Rodis
may be able to accomplish it. Is there a particular reason you are trying to do a captive portal using a bridge setup vs NAT? Dimitri Rodis Integrita Systems LLC -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Chris Buechler Sent: Tuesday, November 18, 2

[pfSense Support] NAT Reflection States

2008-11-18 Thread Dimitri Rodis
ng out, long transfers between mail servers as well). Dimitri Rodis Integrita Systems LLC smime.p7s Description: S/MIME cryptographic signature

[pfSense Support] Force Speed/Duplex on NIC

2008-11-05 Thread Dimitri Rodis
(Cox uses these units in a metro SONET ring in Las Vegas). I would rather not have to go get some junk 8 port managed switch just to force a speed/duplex if it's possible to do in the pfSense config. Dimitri Rodis Integrita Systems LLC smime.p7s Description: S/MIME cryptographic signature

RE: [pfSense Support] Captive Portal enabling Ethernet Port Traffic

2008-09-11 Thread Dimitri Rodis
different places and it works quite well for us. Dimitri Rodis Integrita Systems LLC -Original Message- From: Tim Nelson [mailto:[EMAIL PROTECTED] Sent: Thursday, September 11, 2008 3:43 PM To: support@pfsense.com Subject: Re: [pfSense Support] Captive Portal enabling Ethernet Port Traffic

RE: [pfSense Support] pfSense 1.2-RELEASE: Performance Issue?

2008-07-30 Thread Dimitri Rodis
adCom, I got barely over 2Mb. Using the Intel, I got 9.5Mb. What kind of NICs are in your pfSense box? Dimitri Rodis Integrita Systems LLC -Original Message- From: Ted Crow [mailto:[EMAIL PROTECTED] Sent: Wednesday, July 30, 2008 1:03 PM To: support@pfsense.com Subject: [pfSense Su

RE: [pfSense Support] Intel Pro 1000 VT

2008-05-15 Thread Dimitri Rodis
Adam, This may sound strange, but you might want to load linux and vmware server on the machine, and run pfSense virtualized until the hardware support comes for your NICs. We run pfSense virtualized on Dell PE1800s, PE2900s, and PE2950 servers all the time. Dimitri Rodis Integrita

RE: [pfSense Support] 1.2 package add-on missing

2008-05-05 Thread Dimitri Rodis
1. Did you install pfSense to the hard drive? (You need to for packages) 2. Yes.. Go to the interfaces page and add it. Dimitri Rodis Integrita Systems LLC From: Paul Peziol [mailto:[EMAIL PROTECTED] Sent: Monday, May 05, 2008 8:41 AM To: support@pfsense.com Subject

RE: [pfSense Support] 3-way CARP

2008-04-17 Thread Dimitri Rodis
at make sense? Of course, this might be moot if there's a way to do it already.. Thanks guys.. Dimitri Rodis Integrita Systems LLC -Original Message- From: Chris Buechler [mailto:[EMAIL PROTECTED] Sent: Thursday, April 17, 2008 5:32 PM To: support@pfsense.com Subject: Re: [pfSense

RE: [pfSense Support] 3-way CARP

2008-04-17 Thread Dimitri Rodis
So really the peer IP option is there for folks who don't have a dedicated interface, so that the pfsync traffic doesn't flood the network, is that right? So, in a 3-way config, do you always have to make configuration changes on the "master"? Or can they be made on any of

[pfSense Support] 3-way CARP

2008-04-17 Thread Dimitri Rodis
ick with 2. Any comments/suggestions appreciated! Thanks, Dimitri Rodis Integrita Systems LLC

[pfSense Support] pfsync/FreeRADIUS

2008-04-11 Thread Dimitri Rodis
to make either (or both) of the above scenarios work using pfSense? If not, if someone can give me a bump in the right direction, maybe I can add it to the FreeRADIUS package and send that change to coreteam also. Thanks, Dimitri Rodis Integrita Systems LLC

RE: [pfSense Support] Routing MSN

2008-04-05 Thread Dimitri Rodis
Advanced Outbound NAT is what you're looking for. I don't know what the ports are, but Advanced Outbound NAT is your friend. Dimitri Rodis Integrita Systems LLC -Original Message- From: Mike Lever [mailto:[EMAIL PROTECTED] Sent: Saturday, April 05, 2008 1:45 PM To: support@p

RE: [pfSense Support] pfSense as a VM

2008-04-02 Thread Dimitri Rodis
That's weird that it would work with Xen and not with Virtual Iron-do you happen to remember what version of Xen? Dimitri Rodis Integrita Systems LLC From: Curtis LaMasters [mailto:[EMAIL PROTECTED] Sent: Wednesday, April 02, 2008 4:51 PM To: support@pfsense.com Subject: Re: [pf

[pfSense Support] pfSense as a VM

2008-04-02 Thread Dimitri Rodis
the time using either MS VS or VMware internally and for customers. Any feedback appreciated.. Thanks-- Dimitri Rodis Integrita Systems LLC

[pfSense Support] WRAP Bandwidth

2008-03-26 Thread Dimitri Rodis
Would a WRAP board be capable of NATting and Shaping a 10 megabit symmetric connection without choking? Dimitri Rodis Integrita Systems LLC

[pfSense Support] DHCP on WAN

2008-03-26 Thread Dimitri Rodis
Any workaround for getting DHCP to work on the WAN interface? Dimitri Rodis Integrita Systems LLC

RE: [pfSense Support] Captive Portal

2008-03-23 Thread Dimitri Rodis
Email just sent to [EMAIL PROTECTED] with the captive portal changes. I also emailed some freeradius package changes to coreteam back on 3/19. Were those committed? Thanks, Dimitri Rodis Integrita Systems LLC -Original Message- From: Chris Buechler [mailto:[EMAIL PROTECTED] Sent

RE: [pfSense Support] Captive Portal

2008-03-22 Thread Dimitri Rodis
Client IP: xxx.xxx.xxx.xxx Dimitri Rodis Integrita Systems LLC -Original Message- From: Chris Buechler [mailto:[EMAIL PROTECTED] Sent: Saturday, March 22, 2008 6:41 PM To: support@pfsense.com Subject: Re: [pfSense Support] Captive Portal Dimitri Rodis wrote: > > If I wanted to dis

[pfSense Support] Captive Portal

2008-03-21 Thread Dimitri Rodis
ccess, and if I am able to display that information on the Captive Portal, I can just have them read it to me as opposed to trying to step them through all of the hoops to get the mac address. Thanks, Dimitri Rodis Integrita Systems LLC

RE: [pfSense Support] DHCP Server Issues

2008-03-19 Thread Dimitri Rodis
P on the WAN so if there's a quick workaround that anyone knows of, that would be great. Thanks, Dimitri Rodis Integrita Systems LLC -Original Message- From: Chris Buechler [mailto:[EMAIL PROTECTED] Sent: Wednesday, March 19, 2008 10:42 AM To: support@pfsense.com Subject: Re: [p

RE: [pfSense Support] DHCP Server Issues

2008-03-19 Thread Dimitri Rodis
quick workarounds that I can use to get the WAN tab to show up (and DHCP to work) on the WAN side? I will submit the feature request shortly. Dimitri Rodis Integrita Systems LLC -Original Message- From: Chris Buechler [mailto:[EMAIL PROTECTED] Sent: Wednesday, March 19, 2008 10:4

[pfSense Support] DHCP Server Issues

2008-03-19 Thread Dimitri Rodis
ly binding to my OPT1 and OPT2 interfaces. (There are 4 interfaces in the machine total). Bugs? Confirmation? Dimitri Rodis Integrita Systems LLC

RE: [pfSense Support] FreeRADIUS Package

2008-03-06 Thread Dimitri Rodis
The pfSense log viewer is broken? Dimitri Rodis Integrita Systems LLC -Original Message- From: Scott Ullrich [mailto:[EMAIL PROTECTED] Sent: Thursday, March 06, 2008 1:02 PM To: support@pfsense.com Subject: Re: [pfSense Support] FreeRADIUS Package On 3/6/08, Dimitri Rodis <[EM

RE: [pfSense Support] FreeRADIUS Package

2008-03-06 Thread Dimitri Rodis
Is there a better place to post/email this stuff? I don't seem to be getting much in the way of responses. I have some nice additions to the FreeRADIUS package that I want to submit, but I would like to add the logging support before I do. Trying to contribute! Thanks, Dimitri Rodis Inte

[pfSense Support] CARP Documentation

2008-03-04 Thread Dimitri Rodis
ndex.php/Special:Search/Setting_up_CARP_with_pf Sense> in other pages or edit this page <http://doc.pfsense.org/index.php?title=Setting_up_CARP_with_pfSense&act ion=edit> ." Where'd the CARP doc go? Dimitri Rodis Integrita Systems LLC

RE: [pfSense Support] Dual-wan Setup issue (Yes, I've read a few Dual-Wan HOWTO docs AND I've rebuilt the router)

2008-03-04 Thread Dimitri Rodis
You need to use Manual Outbound NAT, and add a rule above the default rule that has the source address of your machine, destination * *, and then select the address of your WAN2 interface. Dimitri Rodis Integrita Systems LLC From: Michael Richardson [mailto:[EMAIL PROTECTED] Sent

RE: [pfSense Support] FreeRADIUS Package

2008-03-04 Thread Dimitri Rodis
rmatting so that when the data for that field is subsequently retrieved, it looks the same way it did when I put it in. Again, I didn't see anything in the CoreGUI docs that says whether or not this is possible. Thanks, Dimitri Rodis Integrita Systems LLC -Original Message-

[pfSense Support] Outbound NAT Problem, 1.2-RELEASE

2008-02-27 Thread Dimitri Rodis
WAN192.x.x.0/24 * * * (WAN) * NO ?? Or am I doing something wrong? Congrats on a great release, by the way. :) Dimitri Rodis Integrita Systems LLC - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]

  1   2   >