Re: [pfSense] Cannot get data about interface em0_vlan4

2013-03-05 Thread Dave Warren

On 3/5/2013 04:27, Jim Pingle wrote:

That's a known issue on 2.0.2, fixed on 2.0.3. Check the forum.


Thanks, I appreciate the info.

--
Dave Warren
http://www.hireahit.com/
http://ca.linkedin.com/in/davejwarren

___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Re: [pfSense] Dual WAN Failover to gateway default

2013-03-05 Thread Vick Khera
On Tue, Mar 5, 2013 at 3:57 AM,  wrote:

> Hi, I need configure the pfsense for output traffic WAN1, but when WAN1
> down I like redirect traffic to WAN2 and viceversa. I like only use WAN1
> for activity connections and if WAN1 down, the traffic redirect to WAN2.
>
> I have 2 WAN with ip static. I created the gateway group with WAN1 and
> WAN2 called WANFAILOVERGROUP.
>
> Now, add rule in LAN for use gateway WANFAILOVERGROUP. And now, when WAN1
> down, the traffic redirect to WAN2 but not works...
>
> When WAN1 disable manually, the command "netstat -ar" in pfsense with ssh
> not have default ...
>

This works for me. What does your configuration actually look like for the
gateway group definition, and the rule on the LAN?

My LAN rule looks like this:


*LAN net***CMST_Failovernone
And my group looks like this (where GW_WAN and GW_LAN are defined as
gateways that each point to the "default route" for that ISP).

Edit gateway entryGroup Name
Group NameGateway PriorityNeverTier 1Tier 2Tier 3Tier 4Tier 5 *GW_WAN -
Interface wan Static Gateway*
NeverTier 1Tier 2Tier 3Tier 4Tier 5 *GW_OPT1 - Interface Comcast Static
Gateway*

*Link Priority*
The priority selected here defines in what order failover and balancing of
links will be done. Multiple links of the same priority will balance
connections until all links in the priority will be exhausted. If all links
in a priority level are exhausted we will use the next available link(s) in
the next priority level.
Trigger Level  Member Down Packet Loss High Latency Packet Loss or High
Latency
When to trigger exclusion of a memberDescription
You may enter a description here for your reference (not parsed).
___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Re: [pfSense] FreeRadius2 - Need a simple Working Configuration

2013-03-05 Thread Nachtfalke
Visit this link and read the documentation.
http://doc.pfsense.org/index.php/FreeRADIUS_2.x_package



Von: list-boun...@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org]
Im Auftrag von Mehma Sarja
Gesendet: Dienstag, 5. März 2013 12:33
An: pfSense support and discussion
Betreff: [pfSense] FreeRadius2 - Need a simple Working Configuration

Would anyone like to share a working, simple configuration? I'm trying to
use it for a sshd server on the LAN. 

Mehma

___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Re: [pfSense] Dual WAN Failover to gateway default (SOLUCIONADO)

2013-03-05 Thread maykel

El 2013-03-05 09:09, may...@maykel.sytes.net escribió:

El 2013-03-05 08:57, may...@maykel.sytes.net escribió:

Hi, I need configure the pfsense for output traffic WAN1, but when
WAN1 down I like redirect traffic to WAN2 and viceversa. I like only
use WAN1 for activity connections and if WAN1 down, the traffic
redirect to WAN2.

I have 2 WAN with ip static. I created the gateway group with WAN1
and WAN2 called WANFAILOVERGROUP.

Now, add rule in LAN for use gateway WANFAILOVERGROUP. And now, when
WAN1 down, the traffic redirect to WAN2 but not works...

When WAN1 disable manually, the command "netstat -ar" in pfsense 
with

ssh not have default ...


Command OK:

Routing tables

Internet:
DestinationGatewayFlagsRefs  Use  Netif 
Expire

default92.136.156.141 UGS 06re1
10.100.0.0 link#1 U   014125re0
pfsenselink#1 UHS 00lo0
65.42.250.0link#3 U   0 5720re2
250.250.42.65.stat link#3 UHS 00lo0
92.136.156.0   link#2 U   06re1
92.136.156.141 link#2 UHS 00lo0
localhost  link#7 UH  0  761lo0


When I disabled WAN1...

Routing tables

Internet:
DestinationGatewayFlagsRefs  Use  Netif 
Expire

10.100.0.0 link#1 U   014246re0
pfsenselink#1 UHS 00lo0
65.42.250.0link#3 U   0 5889re2
250.250.42.65.stat link#3 UHS 00lo0
localhost  link#7 UH  0  771lo0


The field default not change and not show...


Can I help me please??

Sorry for my english.

Thanks in advanced.

___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Y forget the log:

Mar 5 09:49:33  check_reload_status: Syncing firewall
Mar 5 09:49:34  check_reload_status: Reloading filter
Mar 5 09:49:36	php: : MONITOR: WANGW is down, removing from routing 
group


And my pfsense versión is 2.0.2 i386
___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list



Ya está solucionado. El tema es que hay que realizar otro paso que no 
viene en la documentación. En el apartado de 
System/Advanced/Miscellaneous hay que habilitar el check de:


Allow default gateway switching
If the link where the default gateway resides fails switch the default 
gateway to another available one.


Ahora sí que le permite seleccionar otra gateway de salida como 
default, por eso antes no funcionaba.


Por cierto, funciona a las mil maravillas.

Saludos y gracias por todo.
___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Re: [pfSense] Cannot get data about interface em0_vlan4

2013-03-05 Thread Jim Pingle
On 3/3/2013 5:18 PM, Dave Warren wrote:
> A couple weeks ago I reconfigured a couple interfaces (primarily a IP
> and subnet change)
> 
> Since then, my dashboard traffic graphs inconsistently show me "Cannot
> get data about interface em0_vlan4" for various interfaces, including
> some interfaces that were not changed.
> 
> It's not entirely consistent, I'm in a multi-WAN environment, initially
> my main WAN wasn't working, today it is and my second WAN (named "DSL")
> isn't working.
> 
> Any pointers?
> 
> Chrome: 25.0.1364.97 m
> pfSense: 2.0.2-RELEASE (i386)
> 

That's a known issue on 2.0.2, fixed on 2.0.3. Check the forum.

Jim
___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


[pfSense] FreeRadius2 - Need a simple Working Configuration

2013-03-05 Thread Mehma Sarja
Would anyone like to share a working, simple configuration? I'm trying to
use it for a sshd server on the LAN.

Mehma
___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Re: [pfSense] 2.0.1-RELEASE, dual-WAN with loadbalancing

2013-03-05 Thread OSN | Marian Fischer
Hi,

u should also have a look at the state trimming – sloppy.
If ur packets go different ways, u always should use sloppy states with 
PortFilter.

U can Use different GWs for HTTPS btw.

Just try to tag ur packets “sloppy” in the ruleset.

-m.


Von: list-boun...@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org] Im 
Auftrag von Diego Barrios
Gesendet: Mittwoch, 20. Februar 2013 02:52
An: pfSense support and discussion
Betreff: Re: [pfSense] 2.0.1-RELEASE, dual-WAN with loadbalancing

This option "Sticky Connections" doesn`t wotk for dual-wan load balance, it`s 
made for the "Balancer" (load balance between two or more internal webservers 
from outside world for example).

You should force HTTPS to always use the same link instead (just create a 
gateway group with WAN Tier1 and OPT1 Tier2 in this case).

Seko



From: "Stefan Baur" 
mailto:newsgroups.ma...@stefanbaur.de>>
To: list@lists.pfsense.org
Sent: Tuesday, February 19, 2013 7:26:23 PM
Subject: Re: [pfSense] 2.0.1-RELEASE, dual-WAN with loadbalancing

Am 19.02.2013 23:06, schrieb Stefan Baur:

>> You may find enabling 'sticky connections' in Advanced Settings might
>> do what you wish.
>
> That's not quite where I would have searched for it, but it's great that
> the feature already exists.  Thanks for the pointer! :-)

Seems I was a little trigger-happy here.  Changing the setting didn't
alter the behavior.  I also rebooted the pfSense box just to make sure,
but it doesn't help. :-(  And this is even happening on web sites that
offer a "keep me logged in for two weeks" checkbox similar to what
Google Mail does.  (I usually don't use these checkboxes but just gave
it a try, to see if it changes anything.)

-Stefan
___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list

___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Re: [pfSense] Dual WAN Failover to gateway default

2013-03-05 Thread maykel

El 2013-03-05 08:57, may...@maykel.sytes.net escribió:

Hi, I need configure the pfsense for output traffic WAN1, but when
WAN1 down I like redirect traffic to WAN2 and viceversa. I like only
use WAN1 for activity connections and if WAN1 down, the traffic
redirect to WAN2.

I have 2 WAN with ip static. I created the gateway group with WAN1
and WAN2 called WANFAILOVERGROUP.

Now, add rule in LAN for use gateway WANFAILOVERGROUP. And now, when
WAN1 down, the traffic redirect to WAN2 but not works...

When WAN1 disable manually, the command "netstat -ar" in pfsense with
ssh not have default ...


Command OK:

Routing tables

Internet:
DestinationGatewayFlagsRefs  Use  Netif 
Expire

default92.136.156.141 UGS 06re1
10.100.0.0 link#1 U   014125re0
pfsenselink#1 UHS 00lo0
65.42.250.0link#3 U   0 5720re2
250.250.42.65.stat link#3 UHS 00lo0
92.136.156.0   link#2 U   06re1
92.136.156.141 link#2 UHS 00lo0
localhost  link#7 UH  0  761lo0


When I disabled WAN1...

Routing tables

Internet:
DestinationGatewayFlagsRefs  Use  Netif 
Expire

10.100.0.0 link#1 U   014246re0
pfsenselink#1 UHS 00lo0
65.42.250.0link#3 U   0 5889re2
250.250.42.65.stat link#3 UHS 00lo0
localhost  link#7 UH  0  771lo0


The field default not change and not show...


Can I help me please??

Sorry for my english.

Thanks in advanced.

___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


Y forget the log:

Mar 5 09:49:33  check_reload_status: Syncing firewall
Mar 5 09:49:34  check_reload_status: Reloading filter
Mar 5 09:49:36	php: : MONITOR: WANGW is down, removing from routing 
group


And my pfsense versión is 2.0.2 i386
___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list


[pfSense] Dual WAN Failover to gateway default

2013-03-05 Thread maykel
Hi, I need configure the pfsense for output traffic WAN1, but when WAN1 
down I like redirect traffic to WAN2 and viceversa. I like only use WAN1 
for activity connections and if WAN1 down, the traffic redirect to WAN2.


I have 2 WAN with ip static. I created the gateway group with WAN1 and 
WAN2 called WANFAILOVERGROUP.


Now, add rule in LAN for use gateway WANFAILOVERGROUP. And now, when 
WAN1 down, the traffic redirect to WAN2 but not works...


When WAN1 disable manually, the command "netstat -ar" in pfsense with 
ssh not have default ...



Command OK:

Routing tables

Internet:
DestinationGatewayFlagsRefs  Use  Netif 
Expire

default92.136.156.141 UGS 06re1
10.100.0.0 link#1 U   014125re0
pfsenselink#1 UHS 00lo0
65.42.250.0link#3 U   0 5720re2
250.250.42.65.stat link#3 UHS 00lo0
92.136.156.0   link#2 U   06re1
92.136.156.141 link#2 UHS 00lo0
localhost  link#7 UH  0  761lo0


When I disabled WAN1...

Routing tables

Internet:
DestinationGatewayFlagsRefs  Use  Netif 
Expire

10.100.0.0 link#1 U   014246re0
pfsenselink#1 UHS 00lo0
65.42.250.0link#3 U   0 5889re2
250.250.42.65.stat link#3 UHS 00lo0
localhost  link#7 UH  0  771lo0


The field default not change and not show...


Can I help me please??

Sorry for my english.

Thanks in advanced.

___
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list