Re: [pfSense] 2.4.3 - cannot define table bogonsv6

2018-04-01 Thread Travis Hansen
I'm seeing this same issue on 2 separate 2.3.x boxes the last couple days as well that haven't been tampered with in ages.  Something strange going on for sure.. Travis hansentravisghan...@yahoo.com On Sunday, April 1, 2018, 5:35:32 PM MDT, Victor Padro wrote: Don't think so, since I

Re: [pfSense] FreeNAS Jail Connection

2017-11-13 Thread Travis Hansen
work? -- Steve Yates ITS, Inc. -Original Message- From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Travis Hansen Sent: Saturday, November 11, 2017 11:09 AM To: PfSense Support and Discussion Mailing List Subject: [pfSense] FreeNAS Jail Connection I cannot get pfSense to

[pfSense] FreeNAS Jail Connection

2017-11-11 Thread Travis Hansen
I cannot get pfSense to 'talk' to a jail running on a FreeNAS machine.  If I recall correctly a while back I did some tcpdumps in the jail and saw both incoming and outgoing icmp traffic but pfSense seems to ignore/throw it away or something.  I know I'm not the only one who's seen this because

[pfSense] Outbound NAT rule editing in 2.4

2017-10-24 Thread Travis Hansen
After updating to 2.4 I see this when opening all of my outbound NAT rules:  - Invalid characters detected "00". Please remove invalid characters and save again. It shows that as soon as I open the rule for editing and also prevents me from updating the rules.  Anyo

Re: [pfSense] RRD alternatives

2017-02-28 Thread Travis Hansen
While not entirely the same, I'm working on getting Prometheus node_exporter available inside pfsense. https://prometheus.io/ https://github.com/prometheus/node_exporter When prometheus is then combined with grafana dashboards it provides a pretty good experience. Travis hansentravisghan...@yaho

Re: [pfSense] pfsense twitter account making rude comments.

2017-02-21 Thread Travis Hansen
Regardless of this specific issue, I'd prefer the official twitter feed be a bit more...focused. In any case, thanks for the great project! Travis Hansen travisghan...@yahoo.com On Tuesday, February 21, 2017 9:45 AM, Ryan Coleman wrote: > On Feb 21, 2017, at 10:40 AM, Pau

Re: [pfSense] Documentation about acme

2017-02-18 Thread Travis Hansen
Ah, I missed the part about non-routable.   Apologies. Travis Hansen travisghan...@yahoo.com On Friday, February 17, 2017 1:05 PM, Vick Khera wrote: On Thu, Feb 16, 2017 at 5:12 PM, Travis Hansen wrote: > The certs should show up in System -> Cert Manager -> Certificates

Re: [pfSense] Documentation about acme

2017-02-16 Thread Travis Hansen
690924 https://github.com/janeczku/haproxy-acme-validation-plugin Standalone HTTPhttps://blog.brixit.nl/automating-letsencrypt-and-haproxy ^ this can be setup easily enough within pfSense/haproxy  Travis Hansen travisghan...@yahoo.com On Thursday, February 16, 2017 12:11 PM, Daniel wrote:

Re: [pfSense] HA and OpenVPN

2016-04-25 Thread Travis Hansen
r to do so I think you'd need clustered fs storage (glusterfs, nfs, etc) and maybe even OpenVPN-AS. If anyone knows how to achieve a full active/active cluster in pfsense I'd love to know how. Travis Hansen travisghan...@yahoo.com [1]  https://docs.openvpn.net/how-to-tutorialsguides/admini

Re: [pfSense] HA and OpenVPN

2016-04-25 Thread Travis Hansen
Did you select the carp IP as the 'interface' in the openvpn server config? or do you just have WAN selected? I have a similar setup that works fine.  Although if the carp address changes to a new machine I do need to reconnect (may be a way around this but my needs are simple). Tra

Re: [pfSense] Two queries from intending new user

2015-11-18 Thread Travis Hansen
very easy to export you whole config, install on the primary drive, and import the config. Travis Hansen travisghan...@yahoo.com On Tuesday, November 17, 2015 6:45 PM, Bret Busby wrote: Hello. I have been recommended to install and use pfSense to replace my existing firewall, which is

Re: [pfSense] Security packages, intrusion prevention

2015-06-25 Thread Travis Hansen
Are you after snort and/or suricata?  Probably others available as well..  Travis Hansen travisghan...@yahoo.com On Thursday, June 25, 2015 4:17 PM, Steve Yates wrote:     We're considering using something like pfSense for more active perimeter security for clients, in front o

Re: [pfSense] reverse proxy situation

2015-06-01 Thread Travis Hansen
ly.  In my current setup since they are just silly personal things (a personal gitlab, blog, rss reader, etc) I don't really get anything out of the 'load balancing' side of things but if you anticipate needing that it makes the decision over haproxy vs apache much easier. Travis

Re: [pfSense] reverse proxy situation

2015-05-30 Thread Travis Hansen
uild comes with that) etc that aren't easily done with haproxy. I could be wrong but if you're looking for SSL offloading (I ensure all traffic goes over SSL) varnish and squid would be out of the picture. Travis Hansen travisghan...@yahoo.com On Saturday, May 30, 2015 8:25 PM, A

Re: [pfSense] Recommendations for Analyzing Firewall logs

2014-05-14 Thread Travis Hansen
Yes, the combination of LOGSTASH/ELASTICSEARCH/KIBANA has been a massive improvement for our datacenter.  We literally have *everything* (syslog/http/haproxy/vpn/etc/etc) getting dumped into it.  Being able to find the proverbial needle in the haystack for the past year with 0 effort has made t

Re: [pfSense] Recommendations for Analyzing Firewall logs

2014-05-14 Thread Travis Hansen
Do you have some good grok patterns for indexing pfsense data? I started some a while back for this exact setup but gave up. > On Wednesday, May 14, 2014 8:37 AM, RB wrote: > > rsyslog + elasticsearch + kibana > > On Wed, May 14, 2014 at 8:22 AM, Jan Tichý wrote:

[pfSense] unable to access carp interfaces locally

2013-03-01 Thread Travis Hansen
service on the carp addresses first. Any help/tips?   Travis Hansen travisghan...@yahoo.com___ List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman/listinfo/list