Re: [pfSense] IPSec tunnels on AT&T U-Verse

2017-05-14 Thread Matthew Hall
Hello, In the last few months, I did some extensive experiments with UVerse residential service with and without PFSense. Both general purpose and with IPSec tunnels to a colocation facility. The primary defect I identified in UVerse itself was related to their router prohibiting you from alte

Re: [pfSense] Host Overrides in Services/DNS Forwarder not working until manual restart of DNS Forwarder Service

2017-05-14 Thread Chris L
Maybe this: "Do not use 'local' as a domain name. It will cause local hosts running mDNS (avahi, bonjour, etc.) to be unable to resolve local hosts not running mDNS.” > On May 13, 2017, at 9:08 AM, Stefan Baur > wrote: > > Hi, > > I'm seeing this on 2.3.3-RELEASE and 2.3.4-RELEASE, not sure

Re: [pfSense] IPSec tunnels on AT&T U-Verse

2017-05-14 Thread Laz C. Peterson
Matthew, That is excellent information. It really is a shame what AT&T does to destroy a perfectly good internet connection. We can't wait to give these things a try tomorrow. Along with Jim's suggestion about NAT-T, we are hoping to have something that works proper. The biggest troubleshooti

Re: [pfSense] IPSec tunnels on AT&T U-Verse

2017-05-14 Thread Jim Thompson
> On May 14, 2017, at 7:28 PM, Matthew Hall wrote: > > Hello, > > In the last few months, I did some extensive experiments with UVerse > residential service with and without PFSense. Both general purpose and with > IPSec tunnels to a colocation facility. > > The primary defect I identified i

Re: [pfSense] Host Overrides in Services/DNS Forwarder not working until manual restart of DNS Forwarder Service

2017-05-14 Thread Stefan Baur
Am 15.05.2017 um 03:29 schrieb Chris L: > Maybe this: > "Do not use 'local' as a domain name. It will cause local hosts running mDNS > (avahi, bonjour, etc.) to be unable to resolve local hosts not running mDNS.” Nope, sorry, it's not that easy. It fails *all* entries made in that list, even if