Re: [pfSense] How do I harden my pfsense install WRT TLS and ssh?

2015-07-25 Thread Chris L
On Jul 24, 2015, at 5:18 PM, Ted Byers r.ted.by...@gmail.com wrote: On Fri, Jul 24, 2015 at 6:29 PM, Chris Buechler c...@pfsense.com wrote: On Fri, Jul 24, 2015 at 5:20 PM, Ted Byers r.ted.by...@gmail.com wrote: This is an external scan. We forward ports such as 443 and 22 to specific

[pfSense] bsd/pfsense equivalent to fail2ban

2015-07-25 Thread mayak
hi all, i have a number of asterisk instances behind pfsense -- 5060 is open to the public, and of course, i have incessant attempts to make free calls. for the moment, i use an iptables rule: iptables --append local-external --protocol udp -m udp --sport 5060 -m string --string SIP/2.0 403

[pfSense] DHCP Relay attaching to wrong interface

2015-07-25 Thread Juan Bernhard
Hi list, first I want to congratulates all pfsense developoers for this magnificent piece of software. I think I found a simple bug: I configuring a pfsense in a single server to replace a cisco 2821 and an asa 5520, and at the moment almost everithing is working great. But... I'm having