Re: [Efw-user] RES: Any word on the EFW 2.3?

2009-05-01 Thread compdoc
Efw has a few problems that way - it’s a nice firewall, but it seems few ppl are working on it, it runs on an OS that doesn’t support upstream updates, and it's even difficult to know what OS it actually is in terms of wanting to install drivers or utils. Guess that might make it more secure,

Re: [Efw-user] POP & SMTP

2009-04-21 Thread compdoc
I use this: TCP Uplink ANY : 110(POP3) 192.168.186.2 : 110(POP3) TCP Uplink ANY : 443(HTTPS) 192.168.186.2 : 443(HTTPS) TCP Uplink ANY : 25 192.168.186.2 : 25(SMTP) TCP Uplink ANY : 80(HTTP) 192.168.186.2 : 80(HTTP) Etc.. So yours looks fine. It does sound like your ISP might be blocking ma

Re: [Efw-user] Clamav 0.95.1 rpms posted

2009-04-14 Thread compdoc
Seems to work. Clamdtop is a nice feature. Any logs I should watch other than /var/log/havp and /var/log/clamav ? -- View this message in context: http://www.nabble.com/Clamav-0.95.1-rpms-posted-tp23017076p23042072.html Sent from the efw-user mailing list archive at Nabble.com.

Re: [Efw-user] Block file by name in SMTP

2009-04-09 Thread compdoc
According to: http://www.virscan.org/report/bf59c287a83acd32583578a14de2d3 f2.html Not many scanners are finding that one. Can Kaspersky be run on efw? From: lane.ben...@southernpiping.com [mailto:lane.ben...@southernpiping.com] Sent: Thursday, April 09, 2009 8:57 AM To: efw-user@lists.s

Re: [Efw-user] Total Crash

2009-04-02 Thread compdoc
Edit the template file at /etc/clamav/clamd.conf.tmpl to disable DetectBrokenExecutables. Change it to no, I think, or comment out the line with a # since it is disabled by default. I don't remember the command to expand the template, but I think rebooting will cause it to expand to replace /etc/

Re: [Efw-user] Total Crash

2009-04-02 Thread compdoc
I'm sure you'll get a better answer from someone else on this mailing list, but I found this: "For some reason you have DetectBrokenExecutables enabled. It is not on by default. If it's enabled and downloaded file is bigger than MAXSCANSIZE, there's a good chance it will think it's broken." Do

Re: [Efw-user] Working with a 2wire adsl modem

2009-04-01 Thread compdoc
I have a customer that uses a 2Wire modem as a bridge, but they also have a static IP which gets assigned to the efw. You can probably google how to do this. But there is also nothing wrong with using the 2Wire as a router, with the efw behind it. Neither way matters to proxy authentication...

Re: [Efw-user] Snort CPU load limits download speed

2009-03-30 Thread compdoc
I maintain about 6 efw firewalls, and they like ram. For smaller numbers of users, I give it 768 Megs, and for about 30 users with heavy usage, including day-long openvpn sessions, (but limited to a 7 Mbit link) it wants at least 1 Gig. Ram is often used to cache lookups, etc., so the more the b

Re: [Efw-user] Openvpn

2009-03-28 Thread compdoc
The cert file is downloaded from the vpn page of efw. Did you install openvpn gui for windows? http://openvpn.se/ The cert files are placed in: C:\Program Files\OpenVPN\config I have a sample config file if you need one... -Original Message- From: NightLord [mailto:steph...@parento

Re: [Efw-user] Snort CPU load limits download speed

2009-03-27 Thread compdoc
That's a very small amount of ram. Is it using any swap? I have snort enabled on a couple of efw servers and I never hear from it - no warnings, info, etc. Maybe I'm not important enough to hack... -Original Message- From: Bart Heinsius [mailto:bheins...@gmail.com] Sent: Friday, March

Re: [Efw-user] problem connecting green and red

2009-03-22 Thread compdoc
Completely stable. There's only unstable hardware configurations... From: Jamal ht [mailto:jamala...@hotmail.fr] Sent: Sunday, March 22, 2009 12:23 AM To: endian firewall Subject: Re: [Efw-user] problem connecting green and red Hi shaun, and thank you for your quick reply. the configurat

Re: [Efw-user] BOOT PROBLEM

2009-03-18 Thread compdoc
Sounds like a problem with nero. Try http://www.imgburn.com/ -Original Message- From: apm1 [mailto:angelp...@gmail.com] Sent: Wednesday, March 18, 2009 7:53 AM To: efw-user@lists.sourceforge.net Subject: [Efw-user] BOOT PROBLEM Hi, I'm trying to install 2.2 rc3 version, I downloaded

Re: [Efw-user] Accessing "remote" endian through OpenVPN tunnel

2009-03-17 Thread compdoc
Pinging an ip address doesn't involve dns. It involves routing... -Original Message- From: TimSStanley [mailto:tim.stan...@kuesterszima.com] Sent: Tuesday, March 17, 2009 8:23 AM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] Accessing "remote" endian through OpenVPN tunnel

Re: [Efw-user] Block Download for several clients

2009-03-16 Thread compdoc
Another way to do what you want is to take away their admin rights. Set them as User instead of Administrator. And don't give them the administrator password. Of course, you'd need the Professional version of Windows, and not the Home version. When you start getting towards 10 or 15 computers, ha

Re: [Efw-user] Gw2Gw OpenVPN disconnects overnight

2009-03-06 Thread compdoc
Do both sides of the vpn use static ip addresses? What versions of efw? I have several efw firewalls linked in a hub arrangement, server to server, with all servers being located either across the state, or out of state. They rarely lose connection, but since most are running v2.1.2 and using the

Re: [Efw-user] Gw2Gw OpenVPN disconnects overnight

2009-03-06 Thread compdoc
What sort of broadband connection is it? -Original Message- From: Scott Silva [mailto:ssi...@sgvwater.com] Sent: Friday, March 06, 2009 4:22 PM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] Gw2Gw OpenVPN disconnects overnight on 3-6-2009 7:14 AM defrag4 spake the following:

Re: [Efw-user] A question regarding QOS

2009-03-03 Thread compdoc
http://www.google.com/search?complete=0&hl=en&safe=off&q=Linux+router+with+QoS For example: A small, Linux router distribution for x86 has added QoS (quality-of-service) management features claimed capable of classifying packets regardless of port. The 1.0.beta4 release of Zeroshell now includes

Re: [Efw-user] A question regarding QOS

2009-03-01 Thread compdoc
Never actually needed qos, but I can throw you some ideas. All traffic has to pass through whatever device is going to prioritize the packets. This can be either a network switch with qos, or a router with qos. Efw doesn't include it, so I wouldn't suggest installing something unless you know how

Re: [Efw-user] A question regarding QOS

2009-02-27 Thread compdoc
I keep hearing the name nagios. Can you tell me if it's able to tell if your voip trunk is registered? __ Information from ESET NOD32 Antivirus, version of virus signature database 3895 (20090227) __ The message was checked by ESET NOD32 Antivirus. http://www.eset.com ---

Re: [Efw-user] Network performance problem

2009-02-26 Thread compdoc
You can download memtest86+, burn it to a cd, and boot from the cd. It will tell you a lot about your computer's memory throughput, as well as test the system's ram, which is always a good thing to do. Tell me the cpu cache and ram memory speeds that memtest86 reports, and I can tell you if the s

Re: [Efw-user] Endian Firewall under VMWare Server

2009-02-24 Thread compdoc
Well, wireless usually means theres a WAP/router involved. If it is a router, are you trying to use the same subnet for your wireless clients that you use on the wired lan? They have to be in a different subnet range, or the router cant route... __ Information from ESET NOD32 Antiviru

Re: [Efw-user] Endian Community Firewall 2.2 RC3 Installation Crashed

2009-02-19 Thread compdoc
Well, I think it’s the choice of hardware that’s making things difficult. For most linux firewalls out there, you'd be better off with a single or dual core cpu. Some older computer that you may have sitting on some shelf unused..

Re: [Efw-user] Endian Community Firewall 2.2 RC3 Installation Crashed

2009-02-19 Thread compdoc
Im fairly sure that efw is a 32-bit OS, and 4 gigs is the maximum amount it can address. (in theory) In reality, they actually use somewhat less than 4, unless they use a technology like PAE which some people think is too slow. This is true of both Windows and Linux-based 32-bit OSes. So I'm gue

Re: [Efw-user] Endian Community Firewall 2.2 RC3 Installation Crashed

2009-02-19 Thread compdoc
How much ram and how large is the drive partition? -- Open Source Business Conference (OSBC), March 24-25, 2009, San Francisco, CA -OSBC tackles the biggest issue in open source: Open Sourcing the Enterprise -Strategies t

Re: [Efw-user] Endian Community Firewall 2.2 RC3 Installation Crashed

2009-02-19 Thread compdoc
That’s a quad core xeon? That sounds like some very fast, very expensive equipment to be using for a firewall. I'm going to wait to see if someone can offer a fix for you, and if not, I'll suggest something that might work to get it running on that monster... From: Allie Syadiqin [mailto:

Re: [Efw-user] Endian Firewall Backup

2009-02-03 Thread compdoc
One interesting thing I found on google: errors -- the total number of receiver or transmitter errors. dropped -- the total number of packets dropped due to lack of resources. overrun -- the total number of receiver overruns resulting in dropped packets. As a rule, if the interface is overrun, it

Re: [Efw-user] Endian Firewall Backup

2009-02-02 Thread compdoc
Is the firewall running in a virtual machine, or directly on a PC? Internet access runs at full speed? -Original Message- From: Paul McWhinnie [mailto:e...@mcwhinnie.com] Sent: Monday, February 02, 2009 7:10 PM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] Endian Firewall

Re: [Efw-user] Endian Firewall Backup

2009-02-02 Thread compdoc
>From my external location, I can download a 45 meg backup in about 8 minutes at 100KB/s. Are you downloading from on the lan, or from outside? If on the lan, from which color segment? -Original Message- From: Paul McWhinnie [mailto:e...@mcwhinnie.com] Sent: Monday, February 02, 2009

Re: [Efw-user] EFW 2.1.2 and updates from stellarcore.net

2009-01-26 Thread compdoc
Those updates delete a few critical files, as has been posted. Buy they are easily replaced -Original Message- From: Mike Knisely [mailto:mknis...@mtbt.com] Sent: Monday, January 26, 2009 9:15 AM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] EFW 2.1.2 and updates from stella

Re: [Efw-user] Endian FW VPN to Fortigate 100A

2009-01-21 Thread compdoc
You have two different subnets on each end? What traffic should be going other the VPN? Can you ping ip addresses on each end? -Original Message- From: Simon [mailto:grem...@gmail.com] Sent: Wednesday, January 21, 2009 6:47 PM To: efw-user@lists.sourceforge.net Subject: [Efw-user] Endian

Re: [Efw-user] Clamav 0.94 + Havp .89 and an blacklist updater

2009-01-14 Thread compdoc
Although it works well and is stable, installing these updates on 2.1x deletes critical files which have to be restored, so it's likely to do the same with 2.2x. 2.2x is running fine without the update, so I think I'll wait until the final release... -Original Message- From: wharfratjoe

Re: [Efw-user] compared bandwidth efw/ipcop

2009-01-11 Thread compdoc
I have a few efw firewalls installed for customers - versions 2.1 and 2.2, and they all test at full bandwidth of the customer's DSL lines. Up to 6 MB/s in one case. -Original Message- From: NightLord [mailto:steph...@parenton.com] Sent: Sunday, January 11, 2009 3:46 AM To: efw-user@list

Re: [Efw-user] Snort between 90 and 99%

2008-12-30 Thread compdoc
Ive sometimes seen this happen with other services when the firewall can't locate an update server. If you log onto the efw box with a terminal, can you ping outside locations like www.google.com? -- ___

Re: [Efw-user] Relaying email from outside source

2008-12-16 Thread compdoc
never felt that was needed in any situations for me or my customers... -Original Message- From: Ifan Jones [mailto:i...@anheddau.co.uk] Sent: Tuesday, December 16, 2008 5:52 AM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] Relaying email from outside source Hi compdoc Yes

Re: [Efw-user] Relaying email from outside source

2008-12-15 Thread compdoc
Im guessing you have the SMTP proxy enabled? I don't use it myself. On the SMTP page, theres an Advanced tab with many options like reject non-FQDN sender, and reject non-FQDN recipient. Do you think those settings are interfering? Also in Advanced settings, theres an IMAP server for SMTP authenti

Re: [Efw-user] Endian 2.2RC3 is blocking msnbc.msn.com

2008-12-12 Thread compdoc
In my IE, msnbc.msn.com resolves to www.msnbc.msn.com I used to be able to enter .msnbc.msn.com into the allowed group, and the preceding . would act as a wildcard. So .msn.com would work as well... But I'm not sure if it works anymore. If not, you need to find what the wildcard character is. In

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
Well, that isn't the info for the directories you deleted, so it's not useful. How about the ownership of the other directories: /var/ntop/rrd/interfaces/br0/hosts /var/ntop/rrd/interfaces/br0/hosts/145 /var/ntop/rrd/interfaces/br0/hosts/145/24/143 Etc? All rrdfix.sh wants to do is delete all t

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
You didn't list the owner or permissions of the directories in /var/ntop/rrd/flows/ It's possible that if you changed them correctly, it would all work. However, it's also possible that rrdfix.sh just wasn't written to deal with all the files from enabling the plugins that you did. If you can't

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
The other main command in rrdfix.sh is: find $DIRS -name "*.rrd" When I run that command by hand, I get the stuff listed below. Do you have other directories or files than that showing up? ./var/log/rrd/cpu.rrd ./var/log/rrd/mem.rrd ./var/log/rrd/disk.rrd ./var/log/rrd/GREEN.rrd ./var/log/rrd/

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
Well, I'm guessing those plugins you've enabled have created those directories. It sounds like rrdfix is trying to delete those directories, but not being able to. Can you tell ntop to place those files somewhere else? - T

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
I don't understand that. I have nothing in there. What are those directories? Have you installed any rpms? Maybe you have something enabled in efw that I don't, which causes those to be created... -Original Message- From: danodemano [mailto:[EMAIL PROTECTED] Sent: Wednesday, December

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
Are there files in files in /var/ntop/rrd/flows/ ? - This SF.Net email is sponsored by the Moblin Your Move Developer's challenge Build the coolest Linux based applications with Moblin SDK & win great prizes Grand prize is

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
That should be a fine cpu for ewf. I have no files in /var/ntop/rrd/flows/ Open rrdfix.sh with an editor. Is it the same as mine? Try these commands: cd /var/ntop/rrd ls -al total 20 drwxr-xr-x 5 ntop ntop 4096 Oct 14 08:01 . drwxr-xr-x 4 ntop ntop 4096 Nov 27 16:51 .. drwx-- 2 ntop nto

Re: [Efw-user] rrdfix.sh VERY high CPU and memory usage EFW 2.2RC3

2008-12-03 Thread compdoc
I've had efw 2.2r3 running for 2 months for a customer that has about 30 users. The cpu use in those two months averages about 3.4% The script for rrdfix.sh is pretty simple, and seems to mainly being trying to delete files associated with system graphs: #!/bin/sh DIRS="/var/log/rrd/ /var/ntop/"

Re: [Efw-user] EFW proxy : Issue with a number of websites as well as Media center guide downloads

2008-11-27 Thread compdoc
Not sure why that's happening, and this might not be related, but look at this: http://www.nabble.com/Clamd%3A-PUA.Script.Packed-td20340326. html From: Lightningbit @ GMAIL.COM [mailto:[EMAIL PROTECTED] Sent: Thursday, November 27, 2008 11:56 AM To: efw-user@lists.sourceforge.net Subject:

Re: [Efw-user] Block IP from RED Interface

2008-11-26 Thread compdoc
That would stop one ip address. But what happens if they are using a dynamic ip, or some other kid finds you? It's an unending battle... I once thought blocking ip addresses of spammers was a solution. I blocked entire ranges of addresses. Of course, it wasn't a solution at all... -Original M

Re: [Efw-user] Re boot / Shutdown problems

2008-11-26 Thread compdoc
A system that old could have hardware problems. Bad capacitors is very common, and I replace a lot of boards and power supplies for this reason. Look here to see what to look for. The motherboard is easy to check, but the power supply has to be opened to inspect: http://en.wikipedia.org/wiki/Cap

Re: [Efw-user] Block IP from RED Interface

2008-11-25 Thread compdoc
ftp and ssh ports are just going to be tested. No way to use a different port number for ftp? I always keep the ssh service disabled until I need it... -Original Message- From: danodemano [mailto:[EMAIL PROTECTED] Sent: Tuesday, November 25, 2008 4:29 PM To: efw-user@lists.sourceforge.

Re: [Efw-user] RE S: How to update the Clamav and the HAVP in Endian 2.1.2

2008-11-21 Thread compdoc
Dont install these rpm's perl-IO-Socket-SSL-1.13-1.el4.rf.noarch.rpm perl-Net-SSLeay-1.32-1.el4.rf.i386.rpm -- View this message in context: http://www.nabble.com/Re%3A-RES%3A-How-to-update-the-Clamav-and-the-HAVP-in%09Endian%092.1.2-tp20266399p20631278.html Sent from the efw-user mailing

Re: [Efw-user] which do I use?

2008-11-20 Thread compdoc
nm -- View this message in context: http://www.nabble.com/which-do-I-use--tp20606549p20615091.html Sent from the efw-user mailing list archive at Nabble.com. - This SF.Net email is sponsored by the Moblin Your Move Develo

[Efw-user] which do I use?

2008-11-20 Thread compdoc
in /usr/local/bin, there are these: restartpopscan restartpopscan.py I know .py means python, but whats the difference? Which would I normally use? -- View this message in context: http://www.nabble.com/which-do-I-use--tp20606549p20606549.html Sent from the efw-user mailing list archive at N

Re: [Efw-user] p3scan problem with efw 2.1.2

2008-11-17 Thread compdoc
nt: Monday, November 17, 2008 4:26 PM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] p3scan problem with efw 2.1.2 On Nov 17, 2008, at 10:52 AM, compdoc wrote: > > Maybe this isnt a p3scan problem, but actually a problem with clamav? > Unfortunately, there's not many logs being

Re: [Efw-user] p3scan problem with efw 2.1.2

2008-11-17 Thread compdoc
Maybe this isnt a p3scan problem, but actually a problem with clamav? Unfortunately, there's not many logs being recorded by the services... -- View this message in context: http://www.nabble.com/p3scan-problem-with-efw-2.1.2-tp20545598p20545653.html Sent from the efw-user mailing list archive a

[Efw-user] p3scan problem with efw 2.1.2

2008-11-17 Thread compdoc
Every few weeks, users can't get their email from their ISP using pop3. Stopping the pop3 virus scanner fixes it. Starting the virus scan again works for a while. Google suggests a permissions problem bug. Anyone know of a fix for this? The installed package is p3scan-2.3.2-1.endian6 (the default

[Efw-user] Bypass / Banned Sources and Destinations

2008-11-08 Thread compdoc
In release 2.2rc3, I just dont get the descriptions. It was clearer in 2.1.2. what do these mean: Bypass the transparent Proxy from Source (one subnet/ip/mac per line) Bypass the Proxy FILTER by source IP (one per line) # In 2.1.2 there was: Sources which bypass the transparent proxy Unrestri

Re: [Efw-user] Clamd: PUA.Script.Packed

2008-11-07 Thread compdoc
. Then, reboot. The # symbol turns off that line... -Original Message- From: woodrowbone [mailto:[EMAIL PROTECTED] Sent: Friday, November 07, 2008 2:00 AM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] Clamd: PUA.Script.Packed Thx for your answer Compdoc but I am not

Re: [Efw-user] Clamd: PUA.Script.Packed

2008-11-06 Thread compdoc
I think this can be disabled by changing DetectPUA in: /etc/clamav/clamd.conf.tmpl And then expanding the template... I found this on google: What is PUA? I get a lot of false positives named PUA.* With the release of ClamAV 0.91.2 we introduce the option to scan for Potentially Unwanted App

Re: [Efw-user] Clamav 0.94.1 posted

2008-11-04 Thread compdoc
Are the logwatch updates yours? Was wondering the reason to update that? Just wondering if the newer version is fixing something the older one was lacking... -Original Message- From: Mike Tremaine [mailto:[EMAIL PROTECTED] Sent: Tuesday, November 04, 2008 9:03 AM To: efw-user@lists.sourc

Re: [Efw-user] RE S: How to update the Clamav and the HAVP in Endian 2.1.2

2008-11-03 Thread compdoc
I didn't used to use the virus scanners in efw because of the problems they had. It works much better now, but it will still occasionally hang and prevent users from retrieving mail from external pop3 accounts. Turning off the pop3 scanner fixes it, as does rebooting (I believe). Anyone else seein

Re: [Efw-user] RE S: How to update the Clamav and the HAVP in Endian 2.1.2

2008-11-02 Thread compdoc
> With all the checks I get now errors. What kind of errors? - This SF.Net email is sponsored by the Moblin Your Move Developer's challenge Build the coolest Linux based applications with Moblin SDK & win great prizes Gran

Re: [Efw-user] RE S: How to update the Clamav and the HAVP in Endian 2.1.2

2008-11-02 Thread compdoc
second time. One last question: I've gt now a lots of .old files in my folders, should I delete them as well?? compdoc <[EMAIL PROTECTED]> schrieb: > > These should be all the missing files, plus the updated > clamd.conf.tmpl file. > > Some of the files have the same

Re: [Efw-user] RE S: How to update the Clamav and the HAVP in Endian 2.1.2

2008-11-01 Thread compdoc
These should be all the missing files, plus the updated clamd.conf.tmpl file. Some of the files have the same name, but go in different directories. To keep it straight, I created zip files that are named after the dirs they go into... etc_clamav_.zip contains files that go into etc/clamav/ etc

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-31 Thread compdoc
I see the problem. The rpms deleted a couple of files for some reason. Very easy to replace, tho. Let me gather all the files involved, test it, and I'll get them to you... - This SF.Net email is sponsored by the Moblin Yo

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-31 Thread compdoc
Where is your mail server located? Do you get mail from your ISP, or do you have your own server? - This SF.Net email is sponsored by the Moblin Your Move Developer's challenge Build the coolest Linux based applications with

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-31 Thread compdoc
Installing these rpms creates a third local.cf file in /usr/etc/mail/spamassassin/, but it has all lines commented out so if spamassassin is using it, spamassassin would be running its own defaults. The problem is, I can't find anything that starts spamassassin that tells it to use the new local.

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-31 Thread compdoc
I am applying these updates to a test box and will try to find the problem in the next few hours.. One thing I notice, in my fresh copy of efw the rewrite_header has no quotes as yours does: rewrite_header Subject ***SPAM*** Did you place those quotes into the gui? -Original Message-

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-31 Thread compdoc
The local.cf file in /etc/spamd is the settings used for the pop3 spam filter. I'm not sure where the smtp proxy is storing its settings... - This SF.Net email is sponsored by the Moblin Your Move Developer's challenge Bui

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-31 Thread compdoc
That error is normal for efw 2.1.2 - it's there when you fresh install efw without any of these updates. You can make the error go away by installing these: perl-IO-Socket-SSL-1.13-1.el4.rf.noarch.rpm perl-Net-SSLeay-1.32-1.el4.rf.i386.rpm But even though they are installed, efw doesn't use it,

Re: [Efw-user] RES: RES: : How to updatethe

2008-10-30 Thread compdoc
I have these rpms installed on 5 production servers, but none of them are using spamd. It runs fine on both 2.1 and 2.1.2. It is a good idea to get a good backup first... Now that I know about this problem, I am going to restore the missing files to these machines and make sure everything is wor

Re: [Efw-user] RES: : How to updatethe

2008-10-30 Thread compdoc
I apologize to you. I run spamassassin on my mail server, so I don't use the spamassassin on efw. I never noticed the problem because of this. There is one thing you might notice. Bayes works by keeping a database of the mail you normally get on that server. It takes a few hundred emails added to

Re: [Efw-user] : How to updatethe

2008-10-30 Thread compdoc
I don’t know where to post something like this, so I'll just post it here. Can you check this over for me? The best way to find/view/edit this message and others is at: http://www.nabble.com/efw-user-f4485.html see attached text file... http://www.nabble.com/file/p20255251/update.txt update.

[Efw-user] : How to updatethe

2008-10-30 Thread compdoc
I have to leave to deliver a PC, so it will be a couple of hours until I return... - This SF.Net email is sponsored by the Moblin Your Move Developer's challenge Build the coolest Linux based applications with Moblin SDK &

Re: [Efw-user] RES: RES: RES: RES: RES: How to updatethe Clamavand theHAVP inEndian 2.1.2

2008-10-30 Thread compdoc
The output of --lint -D looks perfect. Can you also show me the contents of the file /etc/spamd/local.cf >From the comparison you provided, I can see that the bayes db files are missing from /var/lib/spamassassin/, or possibly the permissions for them are wrong. There should be 3 or 4 files in t

Re: [Efw-user] RES: RES: RES: RES: How to update the Clamavand theHAVP inEndian 2.1.2

2008-10-30 Thread compdoc
Can you show me the contents of the file /etc/spamassassin/local.cf ? Also, the output of the command: spamassassin --lint If that produces no output, try: spamassassin --lint -D You need to look for errors in that output...

Re: [Efw-user] RES: RES: RES: How to update the Clamav and theHAVP inEndian 2.1.2

2008-10-29 Thread compdoc
That error is normal. It seems to be running. Have you tried rebooting? -Original Message- From: INODE: Marco Aurélio [mailto:[EMAIL PROTECTED] Sent: Wednesday, October 29, 2008 7:14 PM To: efw-user@lists.sourceforge.net Subject: [Efw-user] RES: RES: RES: How to update the Clamav and th

Re: [Efw-user] RES: RES: How to update the Clamav and the HAVP inEndian 2.1.2

2008-10-29 Thread compdoc
That should be spamassassin. Type spamd -V and see if its running. Also type the command top, and see if it's using any cpu time. Should get something like: [EMAIL PROTECTED]:~ # spamd -V SpamAssassin Server version 3.1.9 running on Perl 5.8.5 ---

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-28 Thread compdoc
Sorry, forgot one step. You have to modify /etc/clamav/clamd.conf.tmpl and then expand the template. Edit the file and paste the lines below. # LogTime yes LogSyslog yes LogFacility LOG_LOCAL4 LogFileMaxSize 2M AllowSupplementaryGroups yes TemporaryDirectory /tmp LocalSo

Re: [Efw-user] RES: How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-28 Thread compdoc
You do need to update clamav. You can follow these steps: You need to create a backup of the clamd file: cp /etc/init.d/clamd /etc/init.d/clamd.old Then you have to download the files - I like to place them in a folder by themselves. In the root folder: mkdir update cd update Then download. M

Re: [Efw-user] How to update the Clamav and the HAVP in Endian 2.1.2

2008-10-27 Thread compdoc
Type: clamd -V What version is it? ClamAV 0.90.1? -Original Message- From: INODE: Marco Aurélio [mailto:[EMAIL PROTECTED] Sent: Monday, October 27, 2008 7:20 PM To: efw-user@lists.sourceforge.net Subject: [Efw-user] How to update the Clamav and the HAVP in Endian 2.1.2 Hi, I've got a

Re: [Efw-user] IPSec VPN & Transparent Proxy on EFW-2.2rc2

2008-10-27 Thread compdoc
There seems to be a certain condition that occurs that causes what you are describing to happen. The fix is to disable the transparent proxy, save, and the to re-enable it and save. For good measure, I disable all the options like AV and content filter, save and re-enable. (and save) Although

Re: [Efw-user] OpenVPN two Endian Firewalls can't get working

2008-10-26 Thread compdoc
That's what I was thinking... TCP/IP networking is really pretty simple once you know how. But it can be a disaster if you do the wrong thing. It is possible to have users open files and print to shared printers on the remote sites. And it's not necessary to log into the domain to do it. Just cr

Re: [Efw-user] OpenVPN two Endian Firewalls can't get working

2008-10-26 Thread compdoc
an track down which computer they were on via IP address and therefore find which class they were in and talk with the teacher about supervision of that student. Sam. On 27/10/2008, at 2:57 AM, compdoc wrote: > Well, using routed connections, each location should have > its own i

Re: [Efw-user] OpenVPN two Endian Firewalls can't get working

2008-10-26 Thread compdoc
Well, using routed connections, each location should have its own ip address range. Routing rather than bridged would cut down on a lot of bandwidth wasted to useless netbios and other types of traffic. When you say the (2.1.2) EFW is 192.168.100.200, I'm assuming the efw is serving a lan in the

Re: [Efw-user] Anyone know the cpu specs for Mini, Mercury, and Macro?

2008-10-24 Thread compdoc
There are about 30 computers, plus a couple of users connecting thru openvpn to the lan, as well a couple of remote desktop users. I decided to get a dual core board since the cost is minor these days. But more than cost, I had the idea to make the system more than just a firewall. I'm running th

Re: [Efw-user] 2.2 RC3 Content filter not working

2008-10-21 Thread compdoc
Do you edit any files by hand when you install? Additional note: I was able to get to a site which should have been blocked just now. I checked the EFW and could not log into the gui. I SSH'd into the box and ran /etc/init.d/httpd restart. I was then able to connect. made a change to the conte

Re: [Efw-user] I can not activate the HTTP proxy

2008-10-16 Thread compdoc
Is this the french language version you are having trouble with? The english version doesnt have that problem... -- View this message in context: http://www.nabble.com/I-can-not-activate-the-HTTP-proxy-tp19913388p20020129.html Sent from the efw-user mailing list archive at Nabble.com.

Re: [Efw-user] Problems with version Endian 2.2 rc3

2008-10-16 Thread compdoc
That message shouldnt be there, but it doesnt seem to affect how it works. I had to add two IPs to Bypass / Banned Sources and Destinations to get my email server to run some updates (I think it was to run freshclam). Works fine... There are two boxes there: Bypass the transparent Proxy from S

Re: [Efw-user] Snort in 2.2RC3

2008-10-16 Thread compdoc
I did notice there was no way to enter the code Sourcefire VRT rules for registered users, or the one for subscription either. Kinda sucks... - This SF.Net email is sponsored by the Moblin Your Move Developer's challenge Bui

Re: [Efw-user] SMTP Proxy Connection refused

2008-10-15 Thread compdoc
When you say routed mode in your vpn, are you using the same ip address ranges in your two lans, or do they have different ranges? I guess my understanding of the smtp proxy is wrong. I thought it captured all smtp traffic going out in order to pass it thru the AV, etc. In your setup, I would di

Re: [Efw-user] 2.2 RC3 Content filter not working

2008-10-15 Thread compdoc
You can edit the current rule, or add one. I have only one rule - both AV and content filter. I think it might be important, but when you first enable the content filter, dansguardian begins to populate the rules. This takes up a lot of cpu time (goes to 99%) for several minutes. Type ' top ' int

Re: [Efw-user] OOT, other software

2008-10-12 Thread compdoc
Does it boot fine and run before you restore? Things are a bit different so maybe the settings cant be restored. I've never any docs about upgrading, so I dont know. I've only just installed and set it up manually. Its a lot of work, but that's really the only way to see whats new and to see how i

Re: [Efw-user] EFW 2.2rc3 install

2008-10-12 Thread compdoc
Oh, and one other problem - it still doesn't virus scan SSL connections... - This SF.Net email is sponsored by the Moblin Your Move Developer's challenge Build the coolest Linux based applications with Moblin SDK & win great

Re: [Efw-user] EFW 2.2rc3 install

2008-10-12 Thread compdoc
I had it up and running in no time as well. Then I installed it on the free Citrix XenServer (Express Edition) where it runs just fine. Unfortunately, it doesn't have the xs-tools installed or a xen kernel, but it doesn't matter - works ok without it. There is one cosmetic bug - in Proxy> Configu

Re: [Efw-user] Xen and Endian

2008-10-11 Thread compdoc
All of your kernels are just a little older then the 2.2r3 release. Uname shows 2.6.22.19-72-endian15 Neobiker wrote: > > Hi XENdianer, > > just as a reminder, you'll find XEN Info's on my Wiki, and a working > XEN-Kernel for EFW 2.2 also, based on the FC8 2.6.21-xen kernel. > > The German

Re: [Efw-user] Xen and Endian

2008-10-10 Thread compdoc
Thanks. Do you actually ride a bike? -Original Message- From: Neobiker [mailto:[EMAIL PROTECTED] Sent: Friday, October 10, 2008 3:49 PM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] Xen and Endian Hi XENdianer, just as a reminder, you'll find XEN Info's on my Wiki, and a

Re: [Efw-user] Xen and Endian

2008-10-10 Thread compdoc
Thank you. Do you think efw 2.2 is still based on RHEL4/Centos4? That's the info I was after... -Original Message- From: Mike Tremaine [mailto:[EMAIL PROTECTED] Sent: Friday, October 10, 2008 9:14 AM To: efw-user@lists.sourceforge.net Subject: Re: [Efw-user] Xen and Endian co

Re: [Efw-user] Xen and Endian

2008-10-09 Thread compdoc
Mike Tremaine wrote: > > > Just so it is out there I was able to install and run Endian just fine > under Xen. [Yes I have a new Desktop running Centos 5, yes I'll be > setting up a Endian 2.1 dev box next.] > > > I know this has been a while since your post, but Im wanting to get efw 2.2

Re: [Efw-user] I need advice on this setup

2008-10-09 Thread compdoc
could not access the internet ? Replacing MIOL with endian box I think is the easiest way to try endian functionality, without changing current settings. So whenever, endian does not work, i just replace the cable back, .. Thanks YUAN On Fri, Oct 10, 2008 at 6:20 AM, compdoc <[E

Re: [Efw-user] I need advice on this setup

2008-10-09 Thread compdoc
If you're actually replacing the MIOL router, then you just need to copy the exact settings of each interface in the cisco 3600 and enter them into the Endian. If that's not working, it might be best to set the EFW up somewhere on your lan, and test it using just 1 client behind it until you get th

Re: [Efw-user] I need advice on this setup

2008-10-09 Thread compdoc
You decided to replace the MIOL router with the efw? You never answered my questions before – what brand is the MIOL router? Is it a simple router, or does it support v-lans, etc as your other equipment does? From: yuan yudistira [mailto:[EMAIL PROTECTED] Sent: Thursday, October 09, 2008 5:

<    1   2   3   4   >