Re: [pfSense] client VPN on IOS

2015-09-17 Thread Erik Anderson
On Thu, Sep 17, 2015 at 2:15 PM, Usama Ahmad  wrote:
> Just a heads up Openvpn TLS Authentication does not work with iOS.

What makes you say that? We've been using it successfully for years.

Just for kicks, I just now tested it on iOS 9, and that works fine as well.
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


Re: [pfSense] client VPN on IOS

2015-09-17 Thread Justin Edmands
Also, aside from not requiring a Jailbreak anymore, it now shows your
OpenVPN profiles/connections in the iOS Settings menu.

If you are still jailbroken, like me, you can map awesome button combos or
gestures to hop on VPN super fast. I set Triple home screen click to fire
up OpenVPN and i'm on that network instantly.

On Thu, Sep 17, 2015 at 3:07 PM, Vick Khera  wrote:

> On Tue, Sep 15, 2015 at 9:18 AM, Ray Bagby  wrote:
>
> > Anyone have any luck connecting iphone via VPN?
> >
>
> Yes, with the built-in Cisco VPN client. Works great unless you have
> pfSense 2.2.3 (older and newer work ok)
> ___
> pfSense mailing list
> https://lists.pfsense.org/mailman/listinfo/list
> Support the project with Gold! https://pfsense.org/gold
>
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


Re: [pfSense] client VPN on IOS

2015-09-17 Thread Usama Ahmad
Just a heads up Openvpn TLS Authentication does not work with iOS.

On Thu, Sep 17, 2015 at 3:07 PM, Vick Khera  wrote:

> On Tue, Sep 15, 2015 at 9:18 AM, Ray Bagby  wrote:
>
> > Anyone have any luck connecting iphone via VPN?
> >
>
> Yes, with the built-in Cisco VPN client. Works great unless you have
> pfSense 2.2.3 (older and newer work ok)
> ___
> pfSense mailing list
> https://lists.pfsense.org/mailman/listinfo/list
> Support the project with Gold! https://pfsense.org/gold
>
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


Re: [pfSense] client VPN on IOS

2015-09-17 Thread Vick Khera
On Tue, Sep 15, 2015 at 9:18 AM, Ray Bagby  wrote:

> Anyone have any luck connecting iphone via VPN?
>

Yes, with the built-in Cisco VPN client. Works great unless you have
pfSense 2.2.3 (older and newer work ok)
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


Re: [pfSense] Unbound DHCP leases refresh

2015-09-17 Thread Chris Buechler
On Thu, Sep 17, 2015 at 6:58 AM, Tom Fanning  wrote:
> Quick question regarding the unbound resolver.
>
> I can't find it documented anywhere how often unbound refreshes the DHCP
> leases table.
>

Instantaneously, normally. There is this situation though where it's
not instantaneous, you can have an hour or so delay before it picks up
new names.
https://redmine.pfsense.org/issues/4931

Can restart dhcpleases manually as a workaround in the mean time.
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold


[pfSense] Unbound DHCP leases refresh

2015-09-17 Thread Tom Fanning
Quick question regarding the unbound resolver.

I can't find it documented anywhere how often unbound refreshes the DHCP
leases table.

I'd expect for a DHCP lease to be immediately reflected in the results of a
DNS query to unbound. However this is not the case.

Use case one:
 - a DHCP lease for a newly commissioned PC
 - expected: unbound to return IP that was allocated by DHCP
 - actual: unbound returns NXDOMAIN

Use case two:
 - a DHCP lease for an existing hostname but a different mac address,
resulting in a new IP
 - expected: unbound to return new IP
 - actual: unbound returns old IP

In both cases restarting unbound and querying again results in the query
succeeding and the correct result being returned.

This is 2.2.2-RELEASE (amd64) with "Register DHCP leases in the DNS
Resolver" and "Register DHCP static mappings in the DNS Resolver" both
ticked.

How can I force unbound to reflect changes to DHCP leases immediately?

Thanks
Tom
___
pfSense mailing list
https://lists.pfsense.org/mailman/listinfo/list
Support the project with Gold! https://pfsense.org/gold