Re: [pfSense] SIP through IKEv2-tunnel

2017-03-23 Thread Martin Fuchs
Re: [pfSense] SIP through IKEv2-tunnel Time to do a pcap, and see what's actually happening. Look in the SIP session description (SDP) and see what IP addresses the client is telling the other side to communicate with. Divide and conquer. On 3/21/2017 5:42 AM, Martin Fuchs wrote: > what real

Re: [pfSense] SIP through IKEv2-tunnel

2017-03-21 Thread Martin Fuchs
what really irritates me is the fact (tried it just now) that using it over OpenVPN instead of IKEv2 it works... any idea ? i'm gonna look over it again... Von: List <list-boun...@lists.pfsense.org> im Auftrag von Martin Fuchs <mar...@fuchs-kiel.de&

Re: [pfSense] SIP through IKEv2-tunnel

2017-03-21 Thread Martin Fuchs
no change with sipproxd installed... very strange... Von: List <list-boun...@lists.pfsense.org> im Auftrag von Martin Fuchs <mar...@fuchs-kiel.de> Gesendet: Dienstag, 21. März 2017 10:44:36 An: pfSense Support and Discussion Mailing List Betreff: Re: [

Re: [pfSense] SIP through IKEv2-tunnel

2017-03-21 Thread Martin Fuchs
ething like this > https://doc.pfsense.org/index.php/Siproxd_package > > Eero > > 20.3.2017 11.56 ap. "Martin Fuchs" <mar...@fuchs-kiel.de> kirjoitti: > > > Hi ! > > > > I have a Fritz!Box (router) connected to the internet (no other > > possibilit

Re: [pfSense] SIP through IKEv2-tunnel

2017-03-21 Thread Martin Fuchs
Mailing List Betreff: Re: [pfSense] SIP through IKEv2-tunnel maybe you need something like this https://doc.pfsense.org/index.php/Siproxd_package Eero 20.3.2017 11.56 ap. "Martin Fuchs" <mar...@fuchs-kiel.de> kirjoitti: > Hi ! > > I have a Fritz!Box (router) connected to

Re: [pfSense] SIP through IKEv2-tunnel

2017-03-21 Thread Martin Fuchs
pfSense] SIP through IKEv2-tunnel Hi, Have you try to disable the STUN support on your phone? Cheers, Rosen Martin Fuchs wrote on 3/20/2017 3:36 AM: > Hi ! > > I have a Fritz!Box (router) connected to the internet (no other possibility). > > In i have NATted ESP, GRE, 4500, 500

Re: [pfSense] firewall rules with fqdn-alias

2016-05-18 Thread Martin Fuchs
g errors in there > before... > > -- > > Steve Yates > ITS, Inc. > -Original Message- > From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Martin Fuchs > Sent: Wednesday, May 18, 2016 4:22 AM > To: 'pfSense Support and Discussion Mailing List' &

Re: [pfSense] firewall rules with fqdn-alias

2016-05-18 Thread Martin Fuchs
g errors in there > before... > > -- > > Steve Yates > ITS, Inc. > -Original Message- > From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Martin Fuchs > Sent: Wednesday, May 18, 2016 4:22 AM > To: 'pfSense Support and Discussion Mailing List' &

Re: [pfSense] firewall rules with fqdn-alias

2016-05-18 Thread Martin Fuchs
g errors in there > before... > > -- > > Steve Yates > ITS, Inc. > -Original Message- > From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Martin Fuchs > Sent: Wednesday, May 18, 2016 4:22 AM > To: 'pfSense Support and Discussion Mailing List' &

Re: [pfSense] firewall rules with fqdn-alias

2016-05-18 Thread Martin Fuchs
remove it Br Stephan Am 18.05.2016 00:12 schrieb "Martin Fuchs" <mar...@fuchs-kiel.de>: > Hi, Steve ! > No dots in the alias, yurt in the fqdn-address, the lookup works fine, > so the resolved fqdn are visible in the tables, but it seems as if the > rule is not applied

Re: [pfSense] firewall rules with fqdn-alias

2016-05-17 Thread Martin Fuchs
lid alias names... 'The name > of the alias may only > consist of the characters "a-z, A-Z, 0-9 and _".' > > -- > > Steve Yates > ITS, Inc. > > -Original Message- > From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Martin Fuchs >

[pfSense] firewall rules with fqdn-alias

2016-05-17 Thread Martin Fuchs
Hi ! We're using pfSense 2.3_1 here in a CARP-cluster. We are using rules with fqdn-aliases and those rules do not work. When i look under diagnostics -> tables i see the tables filled with the correct IPs. When I change the rule not to use the alias, but the IP instead, the rules works

[pfSense] Quagga OSPF & VLAN

2015-09-04 Thread Martin Fuchs
Hi ! I'm wondering if i'm missing something. I tried to configure Quagga OSPF today. I have set up a Vlan where OSPF is running in the backbone area, but i cannot configure quagga to use this vlan, it seems to only support physical interfaces. Does anyone know how to handle this - is there

Re: [pfSense] Quagga OSPF & VLAN

2015-09-04 Thread Martin Fuchs
OMG ! - SHAME ON ME ;-) Seems it was far too early without any coffee ;-) Just forgot to add the interface... Fetching a coffee now and configure it ;-) Regards, martin --- Hi ! I'm wondering if i'm missing something. I tried to configure Quagga OSPF today. I have set up a Vlan where

Re: [pfSense] best way to change WAN interface after migration

2015-06-01 Thread Martin Fuchs
: [pfSense] best way to change WAN interface after migration On Tue, Apr 14, 2015 at 2:39 AM, Martin Fuchs mar...@fuchs-kiel.de wrote: I also thought about this, but can you tell me if the tules are attached tot he interface name or tot he interface port ? Everything is attached to the interface

Re: [pfSense] best way to change WAN interface after migration

2015-04-14 Thread Martin Fuchs
[mailto:list-boun...@lists.pfsense.org] Im Auftrag von Chris Buechler Gesendet: Dienstag, 14. April 2015 03:38 An: pfSense Support and Discussion Mailing List Betreff: Re: [pfSense] best way to change WAN interface after migration On Sat, Apr 11, 2015 at 1:46 PM, Martin Fuchs mar...@fuchs-kiel.de wrote

[pfSense] best way to change WAN interface after migration

2015-04-11 Thread Martin Fuchs
Hi ! Does anyone have any experience with changing WAN-interfaces ? We migrated out CARP-cluster from one provider to another. On em1 we have provider-old and On em7 we have provider-new. The old provider will switch off his connection soon. We changed the gateways and

[pfSense] new user with console menu

2014-09-26 Thread Martin Fuchs
Hi ! When i add a new user to pfSense, this user does not have a menu when logging into the shell. What rights does the user need to have the console menu displayed ? Regards, martin ___ List mailing list List@lists.pfsense.org

[pfSense] CARP-user

2014-09-23 Thread Martin Fuchs
Hi ! Does anyone have experience on CARP setup with a different user than admin ? Is there the possibility to create another user and use that for CARP ? I did not manage to get it working. Created user CARPsync with admin group-membership (and shell access) and set CARP up to use

[pfSense] CVE-2004-0230

2014-09-18 Thread Martin Fuchs
Hi ! Does CVE-2004-0230 affect pfSense 2.1.5 ? regards, Martin ___ List mailing list List@lists.pfsense.org https://lists.pfsense.org/mailman/listinfo/list

Re: [pfSense] CVE-2004-0230

2014-09-18 Thread Martin Fuchs
. Therefore, the answer to your question is technically yes but in practice no. On Thu, Sep 18, 2014 at 8:55 AM, Martin Fuchs mar...@fuchs-kiel.de wrote: Hi ! Does CVE-2004-0230 affect pfSense 2.1.5 ? regards, Martin ___ List mailing

Re: [pfSense] IPSec Phase2 deflate

2014-08-31 Thread Martin Fuchs
deflate On Fri, Aug 22, 2014 at 7:32 AM, Martin Fuchs mar...@fuchs-kiel.de wrote: Is there any possibility to disable the IPSec deflate option ? I wasn't aware that pfSense supported the deflate option for IPsec, what makes you think it does? -Dave

[pfSense] IPSec Phase2 deflate

2014-08-22 Thread Martin Fuchs
Hi ! Is there any possibility to disable the IPSec deflate option ? (It seems as if there are some problems with AVM-products and i would like to check this out) Regards, martin ___ List mailing list List@lists.pfsense.org

Re: [pfSense] pkg_add

2014-07-11 Thread Martin Fuchs
Hi ! Hmmm, sad... so i have to find another way ;-) But thanks a lot fort he very good explained and documented links, regards, martin Technically yes but not directly from the base OS, you'll need a FreeBSD 8.3 machine to build packages for. Remember that pfSense 2.1 is based on 8.3 and that

[pfSense] pkg_add

2014-07-09 Thread Martin Fuchs
Hi, Jim ! Is there a possibility to install a package from the ports tree for testing purposes ? Somethink like pkg_add or else ? Regards, martin ___ List mailing list List@lists.pfsense.org https://lists.pfsense.org/mailman/listinfo/list

Re: [pfSense] https transparent proxy project failed...

2014-06-26 Thread Martin Fuchs
It is also not legal everywhere ;-) -Ursprüngliche Nachricht- Von: List [mailto:list-boun...@lists.pfsense.org] Im Auftrag von Ryan Coleman Gesendet: Donnerstag, 26. Juni 2014 14:00 An: pfSense Support and Discussion Mailing List Betreff: Re: [pfSense] https transparent proxy project

Re: [pfSense] Intel Pro/1000 PT Quad Port PCI-e Gigabit Ethernet

2014-05-12 Thread Martin Fuchs
On Fri, May 9, 2014 at 6:02 PM, Dave Warren da...@hireahit.com mailto:da...@hireahit.com wrote: Anyone have experience with a Intel Pro/1000 PT Quad Port PCI-e Gigabit Ethernet Server Adapter EXP19404PT on pfSense? From wandering the forums it looks like it should be supported in pfSense 2,

Re: [pfSense] package installed but not appearing in services\diagnostics\etc drop-down menus

2014-04-28 Thread Martin Fuchs
Did you try to reinstall the xml gui components ? Von: List [mailto:list-boun...@lists.pfsense.org] Im Auftrag von Naor Livne Gesendet: Montag, 28. April 2014 16:25 An: pfSense Support and Discussion Mailing List Betreff: [pfSense] package installed but not appearing in

Re: [pfSense] after upgrade to 2.1.1: never ending Carp cluster member has resumed the state BACKUP mails

2014-04-17 Thread Martin Fuchs
:59 An: pfSense Support and Discussion Mailing List Betreff: Re: [pfSense] after upgrade to 2.1.1: never ending Carp cluster member has resumed the state BACKUP mails On Fri, Apr 11, 2014 at 3:00 AM, Martin Fuchs mar...@fuchs-kiel.de mailto:mar...@fuchs-kiel.de wrote: Same under pfSense

Re: [pfSense] after upgrade to 2.1.1: never ending Carp cluster member has resumed the state BACKUP mails

2014-04-12 Thread Martin Fuchs
upgrade to 2.1.1: never ending Carp cluster member has resumed the state BACKUP mails On Tue, Apr 8, 2014 at 9:26 AM, Martin Fuchs mar...@fuchs-kiel.de mailto:mar...@fuchs-kiel.de wrote: Hi ! We're running a clustered pfSense (2 Machines x86) and it runs fine. Yesterday i updated

Re: [pfSense] after upgrade to 2.1.1: never ending Carp cluster member has resumed the state BACKUP mails

2014-04-11 Thread Martin Fuchs
and Discussion Mailing List Betreff: Re: [pfSense] after upgrade to 2.1.1: never ending Carp cluster member has resumed the state BACKUP mails - Martin Fuchs mar...@fuchs-kiel.de wrote: Same under pfSense 2.1.2 Any hints ? Could it be helpful to play with the base ans skew values

[pfSense] after upgrade to 2.1.1: never ending Carp cluster member has resumed the state BACKUP mails

2014-04-08 Thread Martin Fuchs
Hi ! We're running a clustered pfSense (2 Machines x86) and it runs fine. Yesterday i updated to the 2.1.1 release and since then i contstantly receive Carp cluster member has resumed the state BACKUP mails. This has never been an issue before. and the cluster does not change roles since the

Re: [pfSense] pfSense routing and TCP sequence numbers

2013-09-14 Thread Martin Fuchs
/tcp.html Google is your friend ;-) On Fri, Sep 13, 2013 at 4:15 PM, Martin Fuchs mar...@fuchs-kiel.de mailto:mar...@fuchs-kiel.de wrote: Hi ! We use pfSense 2.0.1 and have a local LAN, a WAN and remote Offices connected by managed VPN-connections (pfsense does not need to stablish VPN tot