[pfSense] Ipsec and Double Nat

2016-06-07 Thread Raphaël RIGNIER
Hi, we try to converge all our WANS to one pfsense box. We intend to simplify our inter vlan routingand flexibility for internet connexions. Actually some of our wans maintain site to site VPN Ipsec tunnels. They are mostly PPPoe and Bridge DHCP modems. Local : LAN - pfsense WAN PPPoe +

Re: [pfSense] Sync problem betweens 2 nodes

2016-04-01 Thread Raphaël RIGNIER
responding. -- Steve Yates ITS, Inc. Thank you. -Original Message- From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Raphaël RIGNIER Sent: Friday, April 1, 2016 10:23 AM To: List@lists.pfsense.org Subject: [pfSense] Sync problem betweens 2 nodes Hi community. I'm trying to

[pfSense] Sync problem betweens 2 nodes

2016-04-01 Thread Raphaël RIGNIER
Hi community. I'm trying to sync 2 SG-8860 nodes for high avaibality. Relase 2.2.6-RELEASE I've read the doc on HA from portal.pfsense.org but I'm having an issue. Configuration sync from master to slave is almost working. But SYNC interface's Firewall rules are cleared on slave each sync

Re: [pfSense] Sync problem betweens 2 nodes

2016-04-04 Thread Raphaël RIGNIER
- Mail original - De: "Chris L" <c...@viptalk.net> À: "Raphaël RIGNIER" <r.rign...@leschartreux.net> Envoyé: Vendredi 1 Avril 2016 20:09:15 Objet: Re: [pfSense] Sync problem betweens 2 nodes > On Apr 1, 2016, at 8:23 AM, Raphaël RIGNIER <r.rign.

[pfSense] pfsense multi-wan load balancing with internal squid server

2017-02-15 Thread Raphaël RIGNIER
Hello list. I've read many things about multi-wan load balancing and squid problem on the same box. This is not working. We have in our DMZ a dedicataed squid proxy server for all intenet acces from inside. Most domain's windows user's hosts are configured with gpo, or wpad to use this

Re: [pfSense] Nat between vlans

2018-03-30 Thread Raphaël RIGNIER
Le 30/03/2018 à 19:03, Yılmaz Bilgili a écrit : Thank you for your reply. Especially IOS devices can not find others if they are not on the same subnet. This is why I want this way. Native Access is difficult, as Airprint uses Bonjour Protocol wich works only on the same subnet. Bonjour is