[pfSense] Traffic Shaping for optimizing IPSEC tunnel traffic

2014-06-09 Thread Mark Street
Hi, What would be the best method of tuning an IPSEC tunnel. I want to give that traffic highest priority. Should I apply limiting to the LAN or the WAN Queues? Or create a custom one. Thanks, -- Mark Street, D.C., RHCE Chief Technology Officer Alliance Medical Center (707) 433-5494

[pfSense] After IPSEC build and save - Interal DNS and routing fail

2014-04-11 Thread Mark Street
circuits as we just acquired the second WAN circuit about 2 months ago. pfSense 2.1.2... although it happened with 2.1 as well. Best Regards, -- Mark Street, D.C., RHCE Chief Technology Officer Alliance Medical Center (707) 433-5494 Trust decentralization over centralization, voluntarism

[pfSense] IPSEC VPN - NAT in Phase 2 - NAT Rules?

2014-02-11 Thread Mark Street
. Do we need to set a NAT rule to allow this traffic to pass on the IPSEC interface? NAT port forward 1.2.3.4 to 4.5.6.7 ? Best Regards, -- Mark Street, D.C., RHCE Chief Technology Officer Alliance Medical Center (707) 433-5494 Trust decentralization over centralization, voluntarism

Re: [pfSense] IPSEC VPN - NAT in Phase 2 - NAT Rules?

2014-02-11 Thread Mark Street
and connect to both hosts on their side for each P2 3. They cannot make a connection to our NAT'd host on our side. Do we need to set a NAT rule to allow this traffic to pass on the IPSEC interface? NAT port forward 1.2.3.4 to 4.5.6.7? Best Regards, -- Mark Street, D.C., RHCE Chief

Re: [pfSense] IPSEC VPN - NAT in Phase 2 - NAT Rules?

2014-02-11 Thread Mark Street
1.2.3.4 to 4.5.6.7? Best Regards, -- Mark Street, D.C., RHCE Chief Technology Officer Alliance Medical Center (707) 433-5494 Trust decentralization over centralization, voluntarism over coercion, bottom-up over top-down, adaptation over planning, openness over

[pfSense] Port Forward WAN port to OVPN host on remote network

2013-06-05 Thread Mark Street
XX.XX.XX.XX. UGHS 0 311201 vr1 127.0.0.1 link#5 UH 0 972 lo0 172.20.3.0/24 link#10 U 0 84818 ovpnc2 172.20.3.63 link#10 UHS 0 0 lo0 NOTE - I do have an OVPN server running on pfsense as well - ovpns1 Thanks in advance. -- Mark Street, D.C., RHCE Chief Technology Officer Alliance Medical Center

Re: [pfSense] IPSEC Phase 2 - Remote Network - Cisco ASA 5520

2013-05-06 Thread Mark Street
- Original Message - On Fri, May 3, 2013 at 4:04 PM, Mark Street mstr...@alliancemed.org wrote: Hi, I am creating a tunnel with another party that is using a Cisco ASA5520. Phase 1 is negotiating just fine. Phase 2 will not come up. I am using my LAN Subnet on my side

[pfSense] IPSEC Phase 2 - Remote Network - Cisco ASA 5520

2013-05-03 Thread Mark Street
I'. 2. error message: 'B'. 3. error message: 'n'. Best Regards, -- Mark Street, D.C., RHCE Chief Technology Officer Alliance Medical Center (707) 433-5494 ___ List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman