Re: [pfSense] Seeking local support/reseller

2018-04-02 Thread Ryan Coleman
How’d I miss that? :) Thank you! > On Apr 2, 2018, at 7:15 PM, Chris L wrote: > > On Apr 2, 2018, at 4:32 PM, Ryan Coleman wrote: >> >> Jim, Ivork, et al Rubicon Employees on this list… >> >> My boss is looking for a regional support/reseller… is there a lis

[pfSense] Seeking local support/reseller

2018-04-02 Thread Ryan Coleman
Jim, Ivork, et al Rubicon Employees on this list… My boss is looking for a regional support/reseller… is there a list of authorized resellers and outside support providers? Thanks! — Ryan C ___ pfSense mailing list https://lists.pfsense.org/mailman/l

Re: [pfSense] a bit offtopic, vga header cable for netgate device

2018-02-17 Thread Ryan Coleman
Googlefu: https://www.google.com/search?q=VGA+header+to+15-pin+ribbon&source=lnms&tbm=shop&sa=X&ved=0ahUKEwiwybq2ma3ZAhVI2oMKHf9zBWwQ_AUICigB > On Feb 17, 2018,

Re: [pfSense] Port forwards don't work on one machine

2018-02-11 Thread Ryan Coleman
That should be in the logs… > On Feb 11, 2018, at 6:48 PM, Joseph L. Casale > wrote: > > -Original Message- > From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Marco > Sent: Sunday, February 11, 2018 2:30 PM > To: list@lists.pfsense.org > Subject: Re: [pfSense] Port forwa

Re: [pfSense] Finding the best network setup for pfsense.

2017-12-22 Thread Ryan Coleman
I think the overkill is all the extra appliances doing things that pfSense can do. You want the pfSense to be in the middle, you want the traffic to be filtered and routed… pfSense is great for this very task, you don’t need the Hawk or Netgear firewalls… aDSL modem -> pfSense -> switch -> Re

Re: [pfSense] pfsense 2.3 -> 2.4 upgrade?

2017-11-29 Thread Ryan Coleman
15 PM, Eero Volotinen wrote: > > anyway, why the upgrade routine does not remove packges as needed. update > process is a bit complex and unreliable.. > > 30.11.2017 0.31 "Ryan Coleman" kirjoitti: > >> Anything that isn’t a maintenance release (2.x.y … the “y”

Re: [pfSense] pfsense 2.3 -> 2.4 upgrade?

2017-11-29 Thread Ryan Coleman
Anything that isn’t a maintenance release (2.x.y … the “y” here) should be considered a major release. macOS 10.11 is a major release. 10.11.1 is not. — Ryan > On Nov 29, 2017, at 1:37 PM, Steve Yates wrote: > > Does it work if you uninstall haproxy first? I know pfSense recommends > uninst

Re: [pfSense] pfSense in AWS VPC

2017-11-24 Thread Ryan Coleman
Wasting space… Wasting space… Wasting space… Wasting space… Is there a point to this? > On Nov 24, 2017, at 11:00 AM, Peder Rovelstad wrote: > > Play me again... > Play me again... > Play me again... > Play me again... > > -Original Message- > From: List [mailto:list-boun...@lists.

Re: [pfSense] 2.4 Bricked my APU4 Netgate

2017-11-23 Thread Ryan Coleman
There’s likely a package you added to your APU4 that is stopping the upgrade. If you use reddit you can get some assistance from more NetGate staff there: http://reddit.com/r/pfsense/ > On Nov 23, 2017, at 10:08 AM, Elijah Savage wrote: > > I know it is an older model but after my attempt to u

Re: [pfSense] Multiple OpenVPNs (site to site) to one head end

2017-11-22 Thread Ryan Coleman
I’m doing keys… I figured that might be the root issue… Thanks! > On Nov 22, 2017, at 11:54 AM, Doug Lytle wrote: > I have one site working. But when I try to connect the second site it kills the first. > > I don't have anything written up, but I have this set up at home. Three

[pfSense] Multiple OpenVPNs (site to site) to one head end

2017-11-22 Thread Ryan Coleman
I want to pass the entire traffic from a few locations through one master. I have one site working. But when I try to connect the second site it kills the first. I have IPSec for some basic network connections as a backup for the moment that allows me to get to customer servers but I want to r

Re: [pfSense] pfSense 2.4.2 release

2017-11-22 Thread Ryan Coleman
Tis. And it works. I’m surprised I didn’t get a notification. > On Nov 22, 2017, at 3:30 AM, Doug Lytle wrote: > > I just noted that it's out. > > pfSense 2.4.2 > > > Doug > >

Re: [pfSense] malformed packets

2017-11-01 Thread Ryan Coleman
Look, dude, I saw two different signatures in two emails. Given that piece of information you would have come up with the same thing. We’re not in disagreement on thought. I wasn’t replying to YOU I was actually defending you… but, hey, Chicago? I’ll gladly take my bribe in Burboun County Stout

Re: [pfSense] malformed packets

2017-10-31 Thread Ryan Coleman
I concur but having checked out his previous posts… he has a cycling signature file with quotes… Aside from saying “adios” to this user there’s not a whole lot that could be done about that specific idiocracy. > On Oct 30, 2017, at 3:26 PM, Ryan Rodrigue wrote: > > >> -Original Message-

Re: [pfSense] 2.1.6 NAT BUG - All rules deleted !!

2017-06-07 Thread Ryan Coleman
Probably that 2.2 support ended 32-bit boards, IIRC. Or maybe that was 2.3 > On Jun 7, 2017, at 7:46 AM, Oliver Hansen wrote: > > Is there a reason you're still on version 2.1.6? > > On Jun 7, 2017 5:41 AM, "pfsense-l...@y-tech.co.il" < > pfsense-l...@y-tech.co.il> wrote: > >> Hi all, >> >

Re: [pfSense] Pithos (Pandora) package...

2017-05-20 Thread Ryan Coleman
~!@#%$ never mind. I see it’s a KDE package. Dammit. > On May 20, 2017, at 12:59 PM, Ryan Coleman wrote: > > Has anyone worked with the Pithos dpkg on fBSD? Or anyone know of someone > that has put in time for the package build? I have a couple of customers that > woul

[pfSense] Pithos (Pandora) package...

2017-05-20 Thread Ryan Coleman
Has anyone worked with the Pithos dpkg on fBSD? Or anyone know of someone that has put in time for the package build? I have a couple of customers that would be interested if such a package existed. — Ryan ___ pfSense mailing list https://lists.pfsens

Re: [pfSense] Found a Bug?

2017-05-16 Thread Ryan Coleman
Did you check the logs to see what was filling them? Sounds like a bad configuration of something, probably Squid. > On May 15, 2017, at 3:53 AM, Daniel wrote: > > Hi there, > > it seems i found a bug. 2 times i run in the same Problem. > Harddisk in my PfSense went to 100% Disk usages. (suri

Re: [pfSense] Sending web traffic through VPN

2017-04-23 Thread Ryan Coleman
I’ve gotten this to work for all traffic: https://doc.pfsense.org/index.php/Routing_internet_traffic_through_a_site-to-site_OpenVPN-connection_in_PfSense_2.1 I would just route i

Re: [pfSense] OpenVPN Full Tunnel Issue

2017-04-14 Thread Ryan Coleman
> :) > > On Apr 13, 2017 11:02 PM, "Ryan Coleman" <mailto:ryan.cole...@cwis.biz>> wrote: > >> Nevermind. I figured it out. :) >> >> >>> On Apr 14, 2017, at 12:00 AM, Ryan Coleman >> <mailto:ryan.cole...@cwis.biz>> >

Re: [pfSense] OpenVPN Full Tunnel Issue

2017-04-13 Thread Ryan Coleman
Nevermind. I figured it out. :) > On Apr 14, 2017, at 12:00 AM, Ryan Coleman wrote: > > Good morning everyone. > > I have configured a site-to-site VPN using > https://doc.pfsense.org/index.php/Routing_internet_traffic_through_a_site-to-site_OpenVPN-connection_in_PfSens

Re: [pfSense] new stuff

2017-04-02 Thread Ryan Coleman
Please ban. > On Apr 2, 2017, at 12:54 AM, List wrote: > > Hey! > > I found some new stuff for you, i think you're going to like it, more info > at http://weddingdressillustrations.com/complaint.php?7574 > > Take care, List > > ___ > pfSense ma

Re: [pfSense] pfsense twitter account making rude comments.

2017-02-21 Thread Ryan Coleman
> On Feb 21, 2017, at 10:40 AM, Paul Mather wrote: > > On Feb 21, 2017, at 11:30 AM, Ryan Coleman <mailto:ryan.cole...@cwis.biz>> wrote: > >> Not that we are anyone who would know anything about that… > > > The best thing to come out of this ugly

Re: [pfSense] pfsense twitter account making rude comments.

2017-02-21 Thread Ryan Coleman
I’d like to point out that when a competitor of yours had DNS issues you used it as an opportunity to state that your product was better because, well, it was still in business. If you were someone that actually cared about user experience you would have been there offering free (temporary) ser

Re: [pfSense] pfsense twitter account making rude comments.

2017-02-21 Thread Ryan Coleman
the most part, is a calm person. He’s passionate. You, on the other hand, are a prick. > On Feb 21, 2017, at 10:30 AM, Ryan Coleman wrote: > > Not that we are anyone who would know anything about that… > > >> On Feb 21, 2017, at 6:21 AM, Frank Schaffhaeuser >

Re: [pfSense] pfsense twitter account making rude comments.

2017-02-21 Thread Ryan Coleman
Not that we are anyone who would know anything about that… > On Feb 21, 2017, at 6:21 AM, Frank Schaffhaeuser wrote: > > Spamming mailing lists with profanity doesn't help in operating a > 'successfully business' [sic]. > > Settle your dispute in private please. > > > > > Original Messa

Re: [pfSense] pfsense twitter account making rude comments.

2017-02-20 Thread Ryan Coleman
a message privately and take the higher ground. When you stoop to his level you don’t win anyone over. And neither does Jim. — Ryan > On Feb 20, 2017, at 9:35 PM, Ryan Coleman wrote: > > Really? > >> > ⁨Jim Thompson ‏@gonzopancho ⁩ <⁨https://twitter.com/gonzopancho⁩&

Re: [pfSense] pfsense twitter account making rude comments.

2017-02-20 Thread Ryan Coleman
Really? > ⁨Jim Thompson ‏@gonzopancho ⁩ <⁨https://twitter.com/gonzopancho⁩> 9h9 hours ago More @Squidblacklist is there a reason you're so spammy? 1 reply0 retweets0 likes Reply 1 Retweet Like ⁨S

Re: [pfSense] Fake OpenVPN / IPSec IP

2017-02-05 Thread Ryan Coleman
I don’t think it can… I’ve never tried but the server handles the communications, I presume due to the security nature it’s a my way or the highway situation. > On Feb 5, 2017, at 6:40 AM, Chris wrote: > > Eero Volotinen wrote: >> it depends on ipsec configuration. > > Well, it is IKEV2, > >

Re: [pfSense] can I run dhcp v4 and v6 relay on the same LAN interface pfsense

2016-11-16 Thread Ryan Coleman
Are you running the most current? I ask only as a web developer - and some of the Rubicon team monitors this list and they will ask that question. > On Nov 16, 2016, at 1:28 PM, Shivaram Mysore > wrote: > > DHCPv6 relay from WebUI does not work. > > I was able to successfully get the v6 wo

Re: [pfSense] pfsense default firewall configuration

2016-11-15 Thread Ryan Coleman
I would add that it is “good enough” to start from and do what you need after that. > On Nov 15, 2016, at 7:46 AM, Vick Khera wrote: > > On Tue, Nov 15, 2016 at 3:17 AM, user49b wrote: >> I have heavily modified my IPcop configuration and just wanted to know if >> pfSesnse's default firewall

Re: [pfSense] pfsense 2.3.x 32bit?

2016-11-02 Thread Ryan Coleman
https://blog.pfsense.org/?cat=53 2.3.2 is current. > On Nov 2, 2016, at 12:42 PM, Larry Rosenman wrote: > > On 2016-11-02 12:40, Eero Volotinen wrote: >> Well, it just don't find any updates. (from console or from webgui) >> Eero >> 2016-11-02 19:29 GMT+02:00

Re: [pfSense] Diagnosing System lag

2016-10-24 Thread Ryan Coleman
ut trying another hardware? > > it's cheap nowadays.. > > Eero > > 2016-10-22 20:40 GMT+03:00 Ryan Coleman : > >> My NetGate APU installation hangs, seemingly randomly… and has for most of >> the two years since purchase and installation. >> >> Ho

Re: [pfSense] Diagnosing System lag

2016-10-24 Thread Ryan Coleman
Typo. > On Oct 24, 2016, at 7:09 AM, Vick Khera wrote: > > On Sun, Oct 23, 2016 at 1:38 PM, Ryan Coleman wrote: >> Why? 57,265 pings sent. 57,625 pings received. > > If you get more pings than you send, someone thinks they're you. Find > out who i

Re: [pfSense] Diagnosing System lag

2016-10-23 Thread Ryan Coleman
AN port on the APU and see if you get any > delays. > > On Sat, Oct 22, 2016 at 2:41 PM, Ryan Coleman wrote: >> I had in the past.. but I’ll admit right now… I’m not in the spot to check. >> I will do when I get home tonight (I live 90 miles from this customer) >> >&g

Re: [pfSense] Diagnosing System lag

2016-10-22 Thread Ryan Coleman
I had in the past.. but I’ll admit right now… I’m not in the spot to check. I will do when I get home tonight (I live 90 miles from this customer) > On Oct 22, 2016, at 1:35 PM, WebDawg wrote: > > did you look at the freebsd system logs? > > On Sat, Oct 22, 2016 at 1:32 P

Re: [pfSense] Diagnosing System lag

2016-10-22 Thread Ryan Coleman
cables in? Is > something else using that IP? > > Why do you say hangs, no web ui access? No logs? > > I mean it could be anything. > > On Sat, Oct 22, 2016 at 12:40 PM, Ryan Coleman wrote: >> My NetGate APU installation hangs, seemingly randomly… and has for mo

[pfSense] Diagnosing System lag

2016-10-22 Thread Ryan Coleman
My NetGate APU installation hangs, seemingly randomly… and has for most of the two years since purchase and installation. How might I diagnose these issues? > --- 10.20.0.1 ping statistics --- > 296 packets transmitted, 271 packets received, 8.4% packet loss > round-trip min/avg/max/stddev = 1.

Re: [pfSense] Active/Backup set of nics

2016-10-18 Thread Ryan Coleman
You’d have them both as active… https://doc.pfsense.org/index.php/Multi-WAN https://forum.pfsense.org/index.php?topic=28121.0 > On Oct 18, 2016, at 4:47 PM, Matt . wrote: > > Hi Guys, > > Is t

Re: [pfSense] pfSense 2.3.2-p1 RELEASE Now Available

2016-10-14 Thread Ryan Coleman
It’s been around since 2.3.0 was released, I believe. > On Oct 13, 2016, at 8:23 PM, Volker Kuhlmann wrote: > > On Fri 14 Oct 2016 11:21:10 NZDT +1300, Jim Pingle wrote: > >> There are no installers for 2.3.2-p1. You have to install 2.3.2 and >> update to patch 1 once it's installed. > > Ah

Re: [pfSense] Mailing List Posts from Non-Members

2016-09-22 Thread Ryan Coleman
Yay! You mean when I send from the wrong address it will just reject? WOOHOO! :) > On Sep 22, 2016, at 11:50 AM, Jim Pingle wrote: > > Hello, > > Lately the mailing list moderation queues have been overrun with a large > volume of spam on a daily basis. To make it easier on the list admins,

Re: [pfSense] New feature in ISC DHCP server v.4.3+ ( pfSense feature request )

2016-09-09 Thread Ryan Coleman
Touché. > On Sep 9, 2016, at 9:48 AM, Jim Thompson wrote: > > > >> On Sep 9, 2016, at 8:49 AM, Ryan Coleman wrote: >> >> >>> On Sep 8, 2016, at 10:37 PM, Jim Thompson wrote: >>> >>> >>>> On Sep 8, 2016, at 10:30 PM, R

Re: [pfSense] New feature in ISC DHCP server v.4.3+ ( pfSense feature request )

2016-09-09 Thread Ryan Coleman
> On Sep 8, 2016, at 10:37 PM, Jim Thompson wrote: > > >> On Sep 8, 2016, at 10:30 PM, Ryan Coleman wrote: >> >> >>> On Sep 8, 2016, at 9:14 PM, Jim Thompson wrote: >>> >>> On Thu, Sep 8, 2016 at 7:36 PM, Karl Fife wrote: >>&g

Re: [pfSense] New feature in ISC DHCP server v.4.3+ ( pfSense feature request )

2016-09-08 Thread Ryan Coleman
> On Sep 8, 2016, at 9:14 PM, Jim Thompson wrote: > > On Thu, Sep 8, 2016 at 7:36 PM, Karl Fife wrote: > >> There is a brand new feature/option in ISC dhcpd 4.3.0 (the DHCP server >> version in pfSense 2.3+). >> > > you could say, "Thank you". I drove the old crud out. You could say “you’r

Re: [pfSense] looking for perfect pfsense box for home?

2016-08-03 Thread Ryan Coleman
Ahh, well, it’s hard to tell when you don’t give a name but a blanket response without a quoted email. > On Aug 3, 2016, at 8:59 PM, Jim Thompson wrote: > > My response was not directed at you, Ryan. > > > > > On Wed, Aug 3, 2016 at 8:44 PM, Ryan Coleman wrote: &

Re: [pfSense] looking for perfect pfsense box for home?

2016-08-03 Thread Ryan Coleman
Correction. Instead the system is ON an open-SOURCE platform. > On Aug 3, 2016, at 8:43 PM, Ryan Coleman wrote: > > Instead the system is open platform. ___ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support th

Re: [pfSense] looking for perfect pfsense box for home?

2016-08-03 Thread Ryan Coleman
Jim, I realize that - I’ve purchased thousands of dollars of your branded equipment to be installed at my corporate customer sites. However I find them lacking in some regards and have moved on to buying other hardware. If you wanted to sell just your hardware to support the system you’d find a

Re: [pfSense] looking for perfect pfsense box for home?

2016-08-03 Thread Ryan Coleman
And there are many people on the list here who have vouched for the J1900 box mentioned earlier. I am pretty sure we’ve vetted it; I know I have and I am going to start deploying it at customer sites over NetGate hardware. > On Aug 3, 2016, at 10:58 AM, Karl Fife wrote: > > +1 > > You can b

Re: [pfSense] looking for perfect pfsense box for home?

2016-08-03 Thread Ryan Coleman
Mine is footprint vs function. For $200 I have a box that takes up less room on the wall than the NetGate product and offers more functionality (the J1900 device mentioned earlier). The SG-2220 is $100 more than I paid with half the ports. I’ll pass. > On Aug 3, 2016, at 10:43 AM, Steve Yates

Re: [pfSense] looking for perfect pfsense box for home?

2016-08-03 Thread Ryan Coleman
I second this product. Using it at home. VPN works great to my main servers 100 miles away. Tested local throughput in VPN to about 850Mbps. For USD200 it is a great product. I purchased mine through Amazon in April. Only hiccup I had was needing a VGA monitor to configure it. :) > On Aug 3,

Re: [pfSense] Alias duplicate - can't delete any of them

2016-08-02 Thread Ryan Coleman
Two choices that I’m aware of: 1) delete the main rule and recreate 2) Download backup config, remove from the file, upload new config and watch it wipe. > On Aug 2, 2016, at 6:58 PM, Ugo Bellavance wrote: > > Hi, > > First problem: some time ago a duplicate of an alias got created, I don't

Re: [pfSense] Installation issues of latest release (2.3.2) resolved?

2016-07-31 Thread Ryan Coleman
As I remember it Alix support is not part of 2.4. > On Jul 31, 2016, at 5:33 AM, Adrian Zaugg wrote: > > > > On 30.07.16 06:19, Jim Thompson wrote: >> As a reminder, pfSense 2.4 will not support i386, and will not support the >> 'nano' image. > Do you mean by "i386" 32-bit X86 or really just

Re: [pfSense] Installation issues of latest release (2.3.2) resolved?

2016-07-30 Thread Ryan Coleman
Thank you :) > On Jul 29, 2016, at 11:19 PM, Jim Thompson > wrote: > > > SG-2220 (eMMC and M.2), SG-2440 (eMMC and mSATA), SG-4860 (eMMC and mSATA), > SG-8860 (eMMC and mSATA), 7541 (CF and SSD), 7551 (CF and SSD), APU (not > APU2) (nano on SD, full install on SD, and m

Re: [pfSense] Installation issues of latest release (2.3.2) resolved?

2016-07-29 Thread Ryan Coleman
I presume you mean AMD… But that’s what the 64-bit code base is labeled as, regardless of Intel, AMD or other. > On Jul 29, 2016, at 9:50 PM, Alfredo Tapia Sabogal > wrote: > > So far i know pfsense have some issues related to the architecture of ADM > > CHEERS > > Alfredo Tapia Sabogal __

[pfSense] Installation issues of latest release (2.3.2) resolved?

2016-07-29 Thread Ryan Coleman
Have we established an official bug for the newest release? I can babysit one installation on Sunday without an issue but it’s the one I cannot afford to lose (retail shop) that needs updating sooner rather than later (as I won’t have the time for a month)…. So does this effect APUs running the

Re: [pfSense] Limiter on WAN based on time?

2016-05-24 Thread Ryan Coleman
miter. On a limiter you'd need at least two Bandwidth entries, one for > each schedule (day/night). > > -- > > Steve Yates > ITS, Inc. > > -Original Message- > From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Ryan Coleman > Sent: Tuesday,

[pfSense] Limiter on WAN based on time?

2016-05-24 Thread Ryan Coleman
So I’ve tried floating rules (blocks all traffic outside of schedule) and LAN rules (limits 24/7 or blocks outside of schedule). How do I throttle WAN from 9am to 10pm, say, and then open it up after hours? ___ pfSense mailing list https://lists.pfse

Re: [pfSense] What might be throttling my wireless?

2016-05-15 Thread Ryan Coleman
siness SG300-28P > On May 15, 2016 5:09 PM, "Ryan Coleman" wrote: > >> I have a bit of an odd setup, but it is working thus far. >> >> I have fiber -> GbE service from USInternet in Minneapolis >> >> That goes into my 28-port GbE managed swi

Re: [pfSense] What might be throttling my wireless?

2016-05-15 Thread Ryan Coleman
ut not too much, IME) noise in the air for the tests. The difference on that being, of course, the AC Apple Airport Extreme they have on cable right now pushes 400mbps easily on its own but I’m not plugging it into my network to play with (yet). > > > On Sun, May 15, 2016 at 3:0

[pfSense] What might be throttling my wireless?

2016-05-15 Thread Ryan Coleman
I have a bit of an odd setup, but it is working thus far. I have fiber -> GbE service from USInternet in Minneapolis That goes into my 28-port GbE managed switch. That is VLAN'd for safety and feeds my SuperMicro ESXi box (not the FiberVLAN) and my SuperMicro 1U firewall (FiberVLAN) which then

Re: [pfSense] pfSense on vmware ESXi 6.0

2016-04-14 Thread Ryan Coleman
> On Apr 14, 2016, at 4:54 PM, WebDawg wrote: > > https://blog.pfsense.org/?p=1716 > > They have an appliance you can purchase now. That’s why they killed the VM download… ::smdh:: ___ pfSense mailing list https://

Re: [pfSense] Broke my NAT reflection

2016-03-24 Thread Ryan Coleman
> On Mar 24, 2016, at 9:38 AM, WebDawg wrote: > > On Wed, Mar 23, 2016 at 7:14 PM, Ryan Coleman <mailto:ryan.cole...@cwis.biz>> wrote: >> And it would appear to be fixed again… clueless, I am. >> >> >>> On Mar 23, 2016, at 6:14 PM, Ryan Cole

Re: [pfSense] Broke my NAT reflection

2016-03-23 Thread Ryan Coleman
And it would appear to be fixed again… clueless, I am. > On Mar 23, 2016, at 6:14 PM, Ryan Coleman wrote: > > So I moved my server and firewall to a new location and am trying to get a > sliced network set up for the new location (trading gigabit internet for > electricity… g

[pfSense] Broke my NAT reflection

2016-03-23 Thread Ryan Coleman
So I moved my server and firewall to a new location and am trying to get a sliced network set up for the new location (trading gigabit internet for electricity… great deal!) and I am having some issues with the NAT reflection on my 1:1. Everything going out is OK but I everything is resolving i

[pfSense] Android and Windows use of RoadWarrior IPSec from guide?

2015-12-27 Thread Ryan Coleman
Using this guide (https://doc.pfsense.org/index.php/IPsec_Road_Warrior/Mobile_Client_How-To ) I have successfully gotten it to work on my Mac, iPhones and iPad. However I cannot get it to work in my Android emulators or

[pfSense] DHCP/Local DNS ping host name

2015-12-12 Thread Ryan Coleman
I’m totally having a brain far weekend on this… but there’s a way (or so I think) to link the DNS and DHCP hostnames… How do I do that? — Ryan ___ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https:

Re: [pfSense] darkstat

2015-11-08 Thread Ryan Coleman
From October 16 (Subject: "Bandwidth graph”): > Was it darkstat? https://unix4lyfe.org/darkstat/ > > > Packages are maintained by independent coders. > On Nov 7, 2015, at 8:11 PM, Josh Karli wrote: > > Hello all! > > Anyone know what happened to the darks

Re: [pfSense] Bandwidth graph

2015-10-16 Thread Ryan Coleman
Typically packages are removed because they are no longer supported by the developer. > On Oct 16, 2015, at 1:11 AM, Walter Parker wrote: > > Years ago, there was a package for pfSense that graphed total bandwidth for > the Day, Month, Year using bar charts. It would show the top days with > b

Re: [pfSense] github.com/google/google-authenticator/ on pfSense 2.2x

2015-10-15 Thread Ryan Coleman
So… you don’t know how well it will work in pfSense, then. > On Oct 14, 2015, at 3:34 PM, Vick Khera wrote: > > and only on FreeBSD servers (not pfSense) ___ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project wit

Re: [pfSense] client VPN on IOS

2015-09-15 Thread Ryan Coleman
I have had IPSEC going in the past but an initial 2.2 change broke it and I haven’t tried since. I intend to do it again soon and it’s way easier than openvpn, IMO. > On Sep 15, 2015, at 8:54 AM, Olivier Mascia wrote: > >> Le 15 sept. 2015 à 15:18, Ray Bagby a écrit : >> >> Greetings, >>

Re: [pfSense] client VPN on IOS

2015-09-15 Thread Ryan Coleman
I have had IPSEC going in the past but an initial 2.2 change broke it and I haven’t tried since. I intend to do it again soon and it’s way easier than openvpn, IMO. > On Sep 15, 2015, at 8:54 AM, Olivier Mascia wrote: > >> Le 15 sept. 2015 à 15:18, Ray Bagby a écrit : >> >> Greetings, >>

Re: [pfSense] pfSense 2.2.4, Services: Dynamic DNS client

2015-09-08 Thread Ryan Coleman
Yes. As I previously noted it already works from CenturyLink’s DSL modems. > On Sep 8, 2015, at 7:04 AM, Vick Khera wrote: > > > You'd have to ask Dyn if they can make host names within your own domain > dynamic. The dynamic DNS configuration in pfSense is for working with their > existing dyn

Re: [pfSense] pfSense 2.2.4, Services: Dynamic DNS client

2015-09-07 Thread Ryan Coleman
> On Sep 7, 2015, at 8:58 PM, Andrew Mitchell wrote: > > Ryan, > I know this is not your question but, my company setup Dynster.net > for DDNS needs. It's not built in to pfSense because we > are trying to get info from devs but, we do support a simple manual pfSense > i

Re: [pfSense] pfSense 2.2.4, Services: Dynamic DNS client

2015-09-07 Thread Ryan Coleman
Thank you. I’ll give it a whirl in a few days. > On Sep 7, 2015, at 9:15 PM, Chris Bagnall wrote: > > On 8/9/15 2:24 am, Ryan Coleman wrote: >> How do you get this to function with Dyn.com (formerly DynDNS.com >> <http://dyndns.com/>)? I have the paid domain

Re: [pfSense] pfSense 2.2.4, Services: Dynamic DNS client

2015-09-07 Thread Ryan Coleman
Yes, I know. I didn’t actually message you directly to ask - I asked the subscribers on the mailing list. > On Sep 7, 2015, at 11:08 PM, David Christensen > wrote: > > On 09/07/2015 06:24 PM, Ryan Coleman wrote: >> How do you get this to function with Dyn.com (formerly Dy

Re: [pfSense] pfSense 2.2.4, Services: Dynamic DNS client

2015-09-07 Thread Ryan Coleman
This begs the question from me, then… How do you get this to function with Dyn.com (formerly DynDNS.com )? I have the paid domain and I’ve gotten CenturyLink DSL modems to negotiate the IP without issue before but I cannot seem to figure out the configuration for pfSense. T

Re: [pfSense] GUI performance on an ALIX 2d3

2015-08-14 Thread Ryan Coleman
> On Aug 13, 2015, at 5:47 PM, Chris Buechler wrote: > > On Thu, Aug 13, 2015 at 4:50 PM, Rainer Duffner > wrote: > >> I just checked - I ordered it at the end of September 2008. >> It’s going to be seven years old in a couple of weeks. >> That’s quite impressive - do you still get firmware-up

Re: [pfSense] pfSense no access to web configurator from internal network

2015-08-08 Thread Ryan Coleman
You need to load the web interface from the LAN IP - I do not believe it will route properly from the remote one without getting the initial configuration done. What happens when you ping the laptop’s IP from the terminal in your VM Client? > On Aug 8, 2015, at 4:01 AM, Alfredo Tapia Sabogal

Re: [pfSense] How do I harden my pfsense install WRT TLS and ssh?

2015-07-28 Thread Ryan Coleman
> On Jul 28, 2015, at 2:50 PM, Moshe Katz wrote: > > On Tue, Jul 28, 2015 at 3:44 PM, Vick Khera <mailto:vi...@khera.org>> wrote: > >> On Sun, Jul 26, 2015 at 10:31 PM, Ryan Coleman >> wrote: >> >>> I have an issue with Qualy’s: They din

[pfSense] Issues reconnect to VPN after disconnect

2015-07-27 Thread Ryan Coleman
So it seems I cannot reconnect to the VPN I have after a disconnect (accidental or purposeful). I have the same thing happen from my laptop and my iPhone, and others have t happening from their Android devices. Thanks for the help! My logs: Last 500 IPsec log entries Jul 27 21:31:14 charon: 0

Re: [pfSense] Passing local data through firewall to NAT'd IPs

2015-07-27 Thread Ryan Coleman
Answered myself: NAT reflection here - /system_advanced_firewall.php > On Jul 27, 2015, at 5:22 PM, Ryan Coleman wrote: > > I know this has been discussed but a quick reminder - how do I get the > firewall to pass local remote traffic? Domains are locally hosted but only >

[pfSense] Passing local data through firewall to NAT'd IPs

2015-07-27 Thread Ryan Coleman
I know this has been discussed but a quick reminder - how do I get the firewall to pass local remote traffic? Domains are locally hosted but only accessible from remote IP. Thanks! ___ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/lis

Re: [pfSense] How do I harden my pfsense install WRT TLS and ssh?

2015-07-26 Thread Ryan Coleman
> On Jul 25, 2015, at 2:02 AM, Chris Buechler wrote: > > On Fri, Jul 24, 2015 at 8:11 PM, Ryan Coleman wrote: >> >>> On Jul 24, 2015, at 7:18 PM, Ted Byers wrote: >>> >>> On Fri, Jul 24, 2015 at 6:29 PM, Chris Buechler wrote: >>> >

Re: [pfSense] How do I harden my pfsense install WRT TLS and ssh?

2015-07-24 Thread Ryan Coleman
> On Jul 24, 2015, at 7:18 PM, Ted Byers wrote: > > On Fri, Jul 24, 2015 at 6:29 PM, Chris Buechler wrote: > >> On Fri, Jul 24, 2015 at 5:20 PM, Ted Byers wrote: >>> This is an external scan. We forward ports such as 443 and 22 to >> specific >>> Ubuntu machines. But both sshd and apache ha

Re: [pfSense] How do I harden my pfsense install WRT TLS and ssh?

2015-07-24 Thread Ryan Coleman
First off you’d upgrade the installation of pfSense - what version do you have installed/running? The current version is 2.2.3. > On Jul 24, 2015, at 3:51 PM, Ted Byers wrote: > > I have checked our installation of our website (a classic protected LAN > with a DMZ formed by two pfsense machine

Re: [pfSense] Access Point Recommendations?

2015-07-20 Thread Ryan Coleman
On Jul 20, 2015, at 1:20 PM, Jim Thompson wrote: > > > Firetide? > > LOL > > I’m good friends with the guy who did the design for Firetide. He was, after > all, the director of engineering there prior to the VCs moving the company > from Hawaii to California. > He’s the one who also contrib

Re: [pfSense] Access Point Recommendations?

2015-07-20 Thread Ryan Coleman
Well… this is my area of expertise at work: cheap hardware begets bad experiences. OTC hardware is cheap. Even if you pay a lot for it. Firetide, FluidMesh and Rajant are the best hardware on the market for what you’re describing. And VERY expensive. > On Jul 20, 2015, at 12:31 PM, Karl Fife

Re: [pfSense] Access Point Recommendations?

2015-07-17 Thread Ryan Coleman
I have Trendnet 653APs that work really well. it’s B/G/N (no AC or A or 5GHz) and runs as 2x3 quite well. They’re POE or DC, handle VLANs well, too. $65 on amazon NIB and I think they come with the AC/DC adapter. > On Jul 17, 2015, at 2:21 PM, compdoc wrote: > >> Does anyone have any recomm

[pfSense] Any update on 2.2.4?

2015-07-16 Thread Ryan Coleman
For those of us with IPsec needs: is there an update on the release of 2.2.4? I’m avoiding upgrading my secondary firewall because I cannot afford to lose some basic VPN functionality. — Ryan ___ pfSense mailing list https://lists.pfsense.org/mailman/l

Re: [pfSense] QoS for fairness usage

2015-07-14 Thread Ryan Coleman
My experience is on par with yours - especially with low-power connections (DSL or Cable under 10mbit). On my 50Mb cable line at home - no problems in my testing. I haven’t tested the Fiber yet but should be doing so in the next month. The DSL at the bar, however, QoS throttling was so horribl

Re: [pfSense] Cannot Spoof MAC

2015-07-11 Thread Ryan Coleman
> On Jul 11, 2015, at 5:22 PM, Chris Buechler wrote: > > On Sat, Jul 11, 2015 at 10:13 AM, Doug Lytle wrote: >> Everyone, >> >> I talked a small automotive shop into replacing their aging pfSense computer >> with a GA-J1900N-D3V. They purchased an all-in-one unit from mini-box.com >> >> http

Re: [pfSense] Cannot Spoof MAC

2015-07-11 Thread Ryan Coleman
Stupid question: but did you restart the firewall after putting the spoof in place? I had to do that on my 2.2.3 Intel box and it worked great after the reboot - both when I started spoofing and my ISP told me the right MAC was in place on their end. — Ryan > On Jul 11, 2015, at 10:13 AM, Do

Re: [pfSense] FTP issues on 1:1

2015-07-09 Thread Ryan Coleman
I switched it to port 21 and it’s still not working externally, either. PASV ports are opened up in Firewall Rules. It requests approving the TLS certificate. > On Jul 8, 2015, at 11:03 AM, Ryan Coleman wrote: > >> >> On Jul 8, 2015, at 9:30 AM, ED Fochler > <mailto:

Re: [pfSense] FTP issues on 1:1

2015-07-08 Thread Ryan Coleman
issue). I’ll look more into it tonight. > ED > >> On 2015, Jul 7, at 10:49 PM, Ryan Coleman wrote: >> >> Yes. >> >> ProFTPd reports the masquerading address properly when starting the service. >> >> — >> Ryan >> >> >

Re: [pfSense] FTP issues on 1:1

2015-07-07 Thread Ryan Coleman
Yes. ProFTPd reports the masquerading address properly when starting the service. — Ryan > On Jul 7, 2015, at 5:14 PM, Steve Yates wrote: > > Ryan Coleman wrote on Tue, Jul 7 2015 at 4:48 pm: > >>> http://www.proftpd.org/docs/directives/linked/config_ref_MasqueradeA

Re: [pfSense] FTP issues on 1:1

2015-07-07 Thread Ryan Coleman
> On Jul 7, 2015, at 4:41 PM, Steve Yates wrote: > > ED Fochler wrote on Tue, Jul 7 2015 at 1:10 pm: > >> FTP is a nasty beast. There’s active, passive, and extended passive >> connections. You may need a client that does extended passive (epsv?) to >> work >> properly. Standard passive wil

Re: [pfSense] FTP issues on 1:1

2015-07-07 Thread Ryan Coleman
And is included in the Kernel in 2.x but, alas, it’s not working. SFTP is not an option. > On Jul 7, 2015, at 1:10 PM, ED Fochler wrote: > > an ftp proxy is what the linux guys usually do, as iptables has a module for > that. ___ pfSense mailing lis

Re: [pfSense] FTP issues on 1:1

2015-07-07 Thread Ryan Coleman
Apache. > On Jul 6, 2015, at 10:35 PM, Jim Pingle wrote: > > On 7/6/2015 7:59 PM, Ryan Coleman wrote: >> Using 1:1 has turned most of my knowledge in pfSense completely useless. I >> feel like a beginner again. >> >> FTP worked on port 21. But for security re

[pfSense] FTP issues on 1:1

2015-07-06 Thread Ryan Coleman
Using 1:1 has turned most of my knowledge in pfSense completely useless. I feel like a beginner again. FTP worked on port 21. But for security reasons I do not want it there so I moved it to port 9000. ProFTPd is set up for Masquerading on its 1:1 IP, passive ports are dictated in the conf (49

Re: [pfSense] Issues with IPsec and 2.2.3

2015-07-06 Thread Ryan Coleman
Ahh good to know - that would explain the other thing I was experiencing but decided no to pursue right away. > On Jul 6, 2015, at 9:49 AM, Vick Khera wrote: > > On Sun, Jul 5, 2015 at 12:03 PM, Ryan Coleman wrote: > >> Neither my desktop nor my mobile (OS X 10.10.3 and iO

  1   2   3   4   >