[pfSense] [v2.1] configuring OPT1 as hosted services firewall?

2014-02-20 Thread Ryan Coleman
I’m moving away from single server design on my ESXi box to dedicated guests for each service but I cannot seem to get those dedicated services through the firewall. I have a 29bit subnet (IPs 1 through 5). Everything is internal to the ESXi (5.1) server. .1 = pfSense Firewall .2 = OPT1

Re: [pfSense] gateway not accepting alternative monitor IP

2014-02-20 Thread Ryan Coleman
I saw this today with 2.0.3 and it was caching the page. Have you tried a different browser? On Feb 20, 2014, at 7:11 PM, David Burgess apt@gmail.com wrote: pfsense 2.1 amd64 When I enter an alternative monitoring IP and hit save, pfsense takes me back to the list of gateways and the

Re: [pfSense] [v2.1] configuring OPT1 as hosted services firewall?

2014-02-21 Thread Ryan Coleman
Does anyone have an ideas? Thanks! On Feb 20, 2014, at 4:04 PM, Ryan Coleman ryanjc...@me.com wrote: I’m moving away from single server design on my ESXi box to dedicated guests for each service but I cannot seem to get those dedicated services through the firewall. I have a 29bit

Re: [pfSense] [v2.1] configuring OPT1 as hosted services firewall?

2014-02-21 Thread Ryan Coleman
wrong, but it seems like the problem is at that level...) -Adam On Feb 21, 2014 7:13 PM, Ryan Coleman ryanjc...@me.com wrote: Does anyone have an ideas? Thanks! On Feb 20, 2014, at 4:04 PM, Ryan Coleman ryanjc...@me.com wrote: I’m moving away from single server design on my

Re: [pfSense] [v2.1] configuring OPT1 as hosted services firewall?

2014-02-23 Thread Ryan Coleman
I think the “wiser” solution is to spin up another firewall for the shared services and give it all 4 IPs (.2-.5) On Feb 22, 2014, at 2:55 PM, Brian Candler b.cand...@pobox.com wrote: On 22/02/2014 20:43, Brian Candler wrote: And has been pointed out already, you definitely don't want your

Re: [pfSense] blank lines in DHCP lease list

2014-02-26 Thread Ryan Coleman
Did you update the software before they started appearing? I’ve seen things from 2.0 to 2.1 not carry over all their information. On Feb 26, 2014, at 4:18 PM, David Burgess apt@gmail.com wrote: Pic attached. This situation has survived many reboots. Is there are remedy for this? db

[pfSense] Captive Portal questions - Interstitial page

2014-02-27 Thread Ryan Coleman
Can I have the interstitial page go straight to a website to handle everything? Rather than locally handled on the system? I am activating this feature at a bar where I do tech work and would prefer to manage everything back on our website rather than trying to maintain code on the controller.

Re: [pfSense] Please Remove me

2014-02-27 Thread Ryan Coleman
List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman/listinfo/list To unsubscribe from List, get a password reminder, or change your subscription options enter your subscription email address: If you leave the field blank, you will be prompted for your email address

Re: [pfSense] no internet access on vlan

2014-02-27 Thread Ryan Coleman
When I set mine up they were pretty straight-forward, I didn’t have to do much inside of pfSense to get it going. So my thought is this: Is your switch configured correctly for VLAN3? On Feb 28, 2014, at 12:32 AM, J. Echter j.ech...@echter-kuechen-elektro.de wrote: Hi, i have 3 vlan's on

Re: [pfSense] no internet access on vlan

2014-02-27 Thread Ryan Coleman
...@echter-kuechen-elektro.de wrote: yep, i think so. all the needed ports have the right tags, also vlan 2 also used on the same ports, just works. switch operates in layer 2 mode. Am 28.02.2014 07:33, schrieb Ryan Coleman: When I set mine up they were pretty straight-forward, I didn’t

Re: [pfSense] Are WAN rules needed for ISAKMP and ESP?

2014-02-28 Thread Ryan Coleman
I believe so. I have two ports opened under Rules for my IPSEC configuration. On Feb 28, 2014, at 3:27 PM, Brian Candler b.cand...@pobox.com wrote: Is it necessary to add explicit rules to allow inbound ISAKMP (UDP 500) and ESP (IP protocol 50) on the WAN interface? I had a problem with

[pfSense] Blocking based on MAC

2014-02-28 Thread Ryan Coleman
I just checked google and the “best” solution from a few versions ago is to reserve the MAC IP to something out of range. I’d like to find a “simple” way to do that for my customer. Is there a better way to block a MAC? — Ryan ___ List mailing list

Re: [pfSense] Captive Portal questions - Interstitial page

2014-02-28 Thread Ryan Coleman
, 2014, at 8:17 AM, Ryan Coleman ryanjc...@me.com wrote: Can I have the interstitial page go straight to a website to handle everything? Rather than locally handled on the system? I am activating this feature at a bar where I do tech work and would prefer to manage everything back on our

Re: [pfSense] Altq on usb adapter - not showing

2014-03-01 Thread Ryan Coleman
It might have helped if you stated which version of pfSense you were running. As I have seen they sometimes change which base system it’s running on. On Mar 1, 2014, at 7:21 PM, Nenhum_de_Nos math...@eternamente.info wrote: On Sat, March 1, 2014 19:56, Chris Buechler wrote: On Wed, Feb 26,

[pfSense] Multiple static IPs from one ISP - Virtual IPs? - Trying this again

2014-03-02 Thread Ryan Coleman
How do I set up multiple static addresses? I used Virtual IP to create x.2 and I can ping it internally but not externally. I’ve tried using guides I’ve found online but I cannot seem to get them to work. What I want to do is have (for the time being) x.2 to assign out port forward assignments

Re: [pfSense] Multiple static IPs from one ISP - Virtual IPs? - Trying this again

2014-03-03 Thread Ryan Coleman
I’ve done this, but I won't route traffic out (NAT) until I have verifiable traffic coming in. The x.2 IP simply will not ICMP ping from outside the network (and, yes, I have it allowed). On Mar 3, 2014, at 4:16 AM, Bryan D. pfse...@derman.com wrote: If I understand your requirements, to

Re: [pfSense] [Bulk] Re: Multiple static IPs from one ISP - Virtual IPs? - Trying this again

2014-03-03 Thread Ryan Coleman
to the ping: WAN ICMP * * x.13 * x.206 * static VIP pings to internal system If that's not it, then someone else needs to chime in as you've exhausted my knowledge in this area. On 2014-Mar-03, at 7:59 AM, Ryan Coleman ryanjc...@me.com wrote: I’ve done this, but I won't

Re: [pfSense] Multiple static IPs from one ISP - Virtual IPs? - Trying this again

2014-03-03 Thread Ryan Coleman
that's configured to respond to pings) to respond to the ping: WAN ICMP * * x.13 * x.206 * static VIP pings to internal system If that's not it, then someone else needs to chime in as you've exhausted my knowledge in this area. On 2014-Mar-03, at 7:59 AM, Ryan Coleman ryanjc

Re: [pfSense] Multiple static IPs from one ISP - Virtual IPs? - Trying this again

2014-03-03 Thread Ryan Coleman
it comes to ping response whether that's required, or not (I'm guessing not ... PiBa: do you know for sure?). On 2014-Mar-03, at 1:45 PM, Ryan Coleman ryanjc...@me.com wrote: Everything pings inside… but nothing pings from outside. If I get out of the confines of my subnet I cannot get

[pfSense] Captive Portal: Per-client speed

2014-03-05 Thread Ryan Coleman
It appears I can throttle individual users on the Captive Portal, but how can I limit the speed of that entire network? Is that through Traffic Shaping? And how would I do that? The bar, I’m afraid, only has a 12x1 DSL connection. I might be able to convince them to upgrade the speed but

Re: [pfSense] hardware recommendation -- something with POE

2014-03-08 Thread Ryan Coleman
I love my GS110TPs - I have 4 and have installed over 100 at various customer sites. The latest project I’ve been working on and mentioning here is the 110s, NetGate 2D3 and Cisco WAP-4410Ns. On Mar 8, 2014, at 3:14 PM, Brian Candler b.cand...@pobox.com wrote: Just curious -- is there a

Re: [pfSense] Captive Portal: Per-client speed

2014-03-10 Thread Ryan Coleman
I think I'll have to write a white paper for it when I'm done. The first test with shaper killed the house network and we had to roll it back. -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On Mar 10, 2014, at 10:10, David QuayCendre david.quaycen...@gmail.com wrote

[pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-19 Thread Ryan Coleman
This is the second time, now, I’ve had to swap out hardware. This time around I just blanked the CF out and reinstalled 2.1-RELEASE and then imported my last good configuration to the board and we’re back up. But the symptoms are as follows: 80% of TCP traffic (not on 80/443) passes through -

Re: [pfSense] (no subject)

2014-03-19 Thread Ryan Coleman
Sounds about right - I had the same issue. I thought I got unsubscribed but never bothered to re-subscribe. On Mar 19, 2014, at 2:07 PM, Paul Galati paulgal...@gmail.com wrote: Is that why I didn’t get pfsense email for about a week and then got flooded this morning? Paul Galati

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-19 Thread Ryan Coleman
...@pobox.com wrote: On 19/03/2014 18:17, Ryan Coleman wrote: 95% of HTTP traffic does not pass. In fact if you load Yahoo.com it stalls when it hits a new hostname (s.yimg.com, for example, as part of their CDN). A couple of things spring to mind. (1) MTU problem / PMTU discovery / blocked

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-19 Thread Ryan Coleman
to beat it up for a few hours and see what happens. On Mar 19, 2014, at 4:00 PM, Ryan Coleman ryanjc...@me.com wrote: Ok so I have two boards so I’ll set up the other board at home (the one that’s not working right now) so I’ll fire it up and test it out tomorrow morning or tonight if I ever get

[pfSense] Embedded 4GB only has a 2GB Partition?

2014-03-19 Thread Ryan Coleman
Does anyone else know why the 4GB embedded download only has a 1.8GB partition? It dd’s into three slices: 1.8GB, 50MB and 1.8GB - the second 1.8GB slice never mounts. Also if I wanted to grow this for a 16GB or 32GB CF card (I have plenty as a photographer) how would I go about doing it? The

Re: [pfSense] Embedded 4GB only has a 2GB Partition?

2014-03-19 Thread Ryan Coleman
, 2014 at 9:15 PM, Ryan Coleman ryanjc...@me.com wrote: Does anyone else know why the 4GB embedded download only has a 1.8GB partition? It dd’s into three slices: 1.8GB, 50MB and 1.8GB - the second 1.8GB slice never mounts. Also if I wanted to grow this for a 16GB or 32GB CF card (I have

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-20 Thread Ryan Coleman
IPv4” I don’t have any block rules, especially on that network. On Mar 20, 2014, at 10:28 AM, Ryan Coleman ryan.cole...@cwis.biz wrote: And how do I get to the bottom of that? I can get to the network pieces remotely (it’s apparently not working right now). States: 100 out of 23,000

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-20 Thread Ryan Coleman
I cannot even open webpages after logging in via SSH and pointing. On Mar 20, 2014, at 10:29 AM, Ryan Coleman ryanjc...@me.com wrote: And how do I get to the bottom of that? I can get to the network pieces remotely (it’s apparently not working right now). States: 100 out of 23,000 DNS

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-20 Thread Ryan Coleman
that came with it is now in play and it is booting back up. On Mar 20, 2014, at 11:16 AM, David Burgess apt@gmail.com wrote: On Thu, Mar 20, 2014 at 10:12 AM, Ryan Coleman ryanjc...@me.com wrote: So I’m going to try and fix it if there’s someone that is willing to help me out today.. this just

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-20 Thread Ryan Coleman
, Android Tablet, a few laptops) Nothing internally is routing. All the lines above are blocked items in the firewall (The rule that triggered this action is: // @5 block drop in log inet all label Default deny rule IPv4”) On Mar 20, 2014, at 11:22 AM, Ryan Coleman ryanjc...@me.com wrote

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-20 Thread Ryan Coleman
I put the device that was working from home last night on the network with the configuration unchanged and it’s working again. Is this a situation I need to consider using CARP for? On Mar 20, 2014, at 11:44 AM, Ryan Coleman ryanjc...@me.com wrote: Filtered to show just the network I’m

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-21 Thread Ryan Coleman
Can you explain what would be the symptoms needing this? I honestly thing it was the time-schedule and throttling/shaping on the two VLANs for guests and regular customers… I just checked and I am now passing all traffic during hours for the guests and we’re still running. On Mar 21, 2014,

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-21 Thread Ryan Coleman
So exactly what I was going though. Interesting. On Mar 21, 2014, at 8:46 PM, Chris Buechler c...@pfsense.com wrote: On Fri, Mar 21, 2014 at 9:37 PM, Ryan Coleman ryanjc...@me.com wrote: Can you explain what would be the symptoms needing this? I honestly thing it was the time-schedule

Re: [pfSense] Odd symptoms from embedded 2.1-RELEASE

2014-03-22 Thread Ryan Coleman
I’m impressed, it worked. On Mar 21, 2014, at 8:46 PM, Chris Buechler c...@pfsense.com wrote: On Fri, Mar 21, 2014 at 9:37 PM, Ryan Coleman ryanjc...@me.com wrote: Can you explain what would be the symptoms needing this? I honestly thing it was the time-schedule and throttling/shaping

[pfSense] Sending logs to external server

2014-03-24 Thread Ryan Coleman
Now that I have the network stable (thank you so much!) I have another task I need/want to accomplish: Does anyone have recommendations or suggestions for off-loading log files at the end of the day to another server? Specifically I’m wanting the system log and the squid logs sent out and

Re: [pfSense] Android apps block

2014-03-24 Thread Ryan Coleman
Mohan, You might be better suited giving certain IP ranges (VLANs) a higher QoS/CoS rating and those other things that are a lower priority a lower rating. — Ryan On Mar 24, 2014, at 3:24 PM, Chris Bagnall pfse...@lists.minotaur.cc wrote: On 24 Mar 2014, at 19:19, A Mohan Rao

Re: [pfSense] DNS resolution issues under heavy load

2014-03-25 Thread Ryan Coleman
I’m perfectly content renting a DOCSIS3 from Comcast and have been doing so for two years. Cost be damned - it’s worth it to not have to own it. What model do you have? SMC? Nortel? Motorola? On Mar 25, 2014, at 8:45 AM, David Noel david.i.n...@gmail.com wrote: Well, it looks like it's the

Re: [pfSense] successor to ALIX is here

2014-04-02 Thread Ryan Coleman
Translated to English: http://translate.google.com/translate?sl=autotl=enjs=nprev=_thl=enie=UTF-8u=http%3A%2F%2Fwww.heise.de%2Fnewsticker%2Fmeldung%2FEmbeddded-Mainboard-mit-x86-CPU-und-Coreboot-2160404.htmlact=url — ryan On Apr 2, 2014, at 9:35 AM, Eugen Leitl eu...@leitl.org wrote: Apu.1c

Re: [pfSense] successor to ALIX is here

2014-04-02 Thread Ryan Coleman
That said - This might be what I need. The 2D13 board I have right now is getting pegged pretty hard. On Apr 2, 2014, at 9:38 AM, Ryan Coleman ryanjc...@me.com wrote: Translated to English: http://translate.google.com/translate?sl=autotl=enjs=nprev=_thl=enie=UTF-8u=http%3A%2F%2Fwww.heise.de

Re: [pfSense] successor to ALIX is here

2014-04-04 Thread Ryan Coleman
And you cannot eliminate three of this with a switch? Sounds like you should look at your design. -- Ryan Coleman On Apr 4, 2014, at 22:59, Thinker Rix thinke...@rocketmail.com wrote: On 2014-04-02 23:24, Ryan Coleman wrote: Wouldn’t a layer-3 switch be a good investment

Re: [pfSense] The Heartbleed Bug, CVE-2014-0160

2014-04-09 Thread Ryan Coleman
There was a post to the list at 0400 central US today that 2.1.2 was up but then he pulled it. I haven’t heard anything since then. You could turn off SSL or ust not use it for the time being from anywhere you don’t trust the system - if they don’t see traffic to the firewall they cannot snoop

Re: [pfSense] Version 2.1.2 - Thanks for the UNPRECEDENTED Level of Support

2014-04-10 Thread Ryan Coleman
+1 -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On Apr 10, 2014, at 20:18, Mehma Sarja mehmasa...@gmail.com wrote: Thanks go out to Chris, Jim and the whole pfSense team for what must be back breaking work coming on the heels of the 2.1.1 release! This kind

Re: [pfSense] pfSense 2.1.2 is released

2014-04-11 Thread Ryan Coleman
He gave you an option to subscribe to the list. Do what I’m going to do: Subscribe. On Apr 10, 2014, at 5:52 PM, Volker Kuhlmann hid...@paradise.net.nz wrote: On Fri 11 Apr 2014 09:27:07 NZST +1200, Jim Thompson wrote: It was posted on announce@, but it seems that I’m moderated there.

Re: [pfSense] vzw uml290

2014-04-17 Thread Ryan Coleman
I’ve found many devices do not honor this. On Apr 17, 2014, at 2:40 PM, Vick Khera vi...@khera.org wrote: On Thu, Apr 17, 2014 at 1:23 PM, Oliver Hansen oliver.han...@gmail.com wrote: Hi Vick, I don't think I have much information for you but I have seen those similar logs before. I don't

Re: [pfSense] DDNS Custom config

2014-04-28 Thread Ryan Coleman
A litle Google will go a long way: https://doc.pfsense.org/index.php/Remount_embedded_filesystem_as_read-write On Apr 28, 2014, at 6:53 PM, Nenhum_de_Nos math...@eternamente.info wrote: On Sun, April 27, 2014 17:26, Yehuda Katz wrote: The place you would need to modify in the PHP code is in

Re: [pfSense] Annoying Comcast Issue When Changing Hardware

2014-05-10 Thread Ryan Coleman
You may want to make sure the DHCP server is disabled on the modem completely. I’ve noticed that caused issues in the past for me. The default user/pass is cusadmin/highspeed on those modems. On May 10, 2014, at 2:19, Aaron C. de Bruyn aa...@heyaaron.com wrote: Yeah--I figured it was related

Re: [pfSense] My son is able to bypass my captivate portal

2014-05-11 Thread Ryan Coleman
I don’t have the brain power to rewrite this right now… but this page is pretty well written: http://en.wikipedia.org/wiki/Captive_portal Basically it takes a DNS call the first time and goes elsewhere. then it corrects itself. If he’s got a different DNS set up then either CP does not work

Re: [pfSense] blog.pfsense.org OCSP lookup fails

2014-05-11 Thread Ryan Coleman
They are using non HTTPS content on HTTPS content - their font CSS specifically… It’s not an “issue” but an oversight. On May 11, 2014, at 9:21, Angus Scott-Fleming an...@geoapps.com wrote: I was trying to read a post at https://blog.pfsense.org/ but Firefox reports an OCSP failure at this

Re: [pfSense] My son is able to bypass my captivate portal

2014-05-11 Thread Ryan Coleman
Correct. Using this feature will break any client with a hard-defined DNS - as we found out in testing at the bar. On May 11, 2014, at 13:48, Adam Thompson athom...@athompso.net wrote: On May 11, 2014 1:37:01 PM CDT, Mehma Sarja mehmasa...@gmail.com wrote: My Samsung Chromebook bypasses my

Re: [pfSense] My son is able to bypass my captivate portal

2014-05-11 Thread Ryan Coleman
No. On May 11, 2014, at 14:48, Stefan Baur newsgroups.ma...@stefanbaur.de wrote: Am 11.05.2014 21:28, schrieb Ryan Coleman: The simple solution is to block all outbound DNS at the firewall, but this can also break things (like some Google and Apple devices). Even broken devices usually

Re: [pfSense] My son is able to bypass my captivate portal

2014-05-11 Thread Ryan Coleman
of ISP and mobile data plans wince. We don’t include images (the biggest of all data hogs) or html in our emails. On May 11, 2014, at 15:48, Ryan Coleman ryanjc...@me.com wrote: No. On May 11, 2014, at 14:48, Stefan Baur newsgroups.ma...@stefanbaur.de wrote: Am 11.05.2014 21:28, schrieb

Re: [pfSense] test

2014-05-17 Thread Ryan Coleman
Received. On May 17, 2014, at 17:04, Brian Caouette bri...@dlois.com wrote: Not receiving list. Test. ___ List mailing list List@lists.pfsense.org https://lists.pfsense.org/mailman/listinfo/list ___

Re: [pfSense] test

2014-05-17 Thread Ryan Coleman
Hmm, that’s unfortunate. There’s been a lot going on here in the last month. On May 17, 2014, at 17:09, Brian Caouette bri...@dlois.com wrote: Thank you. First email received in almost a month. On 5/17/2014 6:06 PM, Ryan Coleman wrote: Received. On May 17, 2014, at 17:04, Brian

Re: [pfSense] test

2014-05-17 Thread Ryan Coleman
/2014 6:14 PM, Ryan Coleman wrote: Hmm, that’s unfortunate. There’s been a lot going on here in the last month. On May 17, 2014, at 17:09, Brian Caouette bri...@dlois.com wrote: Thank you. First email received in almost a month. On 5/17/2014 6:06 PM, Ryan Coleman wrote: Received

Re: [pfSense] Version 2.1.2 - Thanks for the UNPRECEDENTED Levelof Support

2014-05-18 Thread Ryan Coleman
here Ryan Coleman ryanjc...@me.com escreveu na mensagem news:33110045-3714-4e0c-af18-8c24cbba8...@me.com... +1 -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On Apr 10, 2014, at 20:18, Mehma Sarja mehmasa...@gmail.com wrote: Thanks go out to Chris, Jim

Re: [pfSense] Poweredge 2850

2014-05-19 Thread Ryan Coleman
Check the model of the Xeon processor but I believe its 64bit. Once you check the model if it's a 64 use the AMD version otherwise if you can't find out go with the intel. -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On May 19, 2014, at 17:37, Brian Caouette bri

Re: [pfSense] Poweredge 2850

2014-05-19 Thread Ryan Coleman
Itanium is the only one that’s different from AMD64. I’ve never touched an Itanium-driven machine. On May 19, 2014, at 18:06, Walter Parker walt...@gmail.com wrote: The amd64 is for all 64 bit machines (amd64 and Intel EMT64) The x86 is for all 32 bit machines (Intel and AMD) According

Re: [pfSense] Block Android apps and https facebook or youtube

2014-05-19 Thread Ryan Coleman
You can’t really block apps from a platform without blocking the entire platform… As for Facebook and Youtube look into Squid filtering. On May 19, 2014, at 21:09, A Mohan Rao mohanra...@gmail.com wrote: How to block android apps or https facebook and https youtube for specific pfsense

Re: [pfSense] Poweredge 2850

2014-05-20 Thread Ryan Coleman
On May 20, 2014, at 1:59, Giles Coochey gi...@coochey.net wrote: On 20/05/2014 02:12, Chris Bagnall wrote: Forgive me for saying so, but that's a massive overkill for routing a 15Mbps connection. Granted, it'd be entirely appropriate if you were routing multiple gig transits in a

Re: [pfSense] Poweredge 2850

2014-05-20 Thread Ryan Coleman
Same here - 4 servers around the country running it. On May 20, 2014, at 12:57, Doug Lytle supp...@drdos.info wrote: What software is available to do virtual machines? I'm currently using ESXi 5.10 Free version. Doug ___ List mailing list

Re: [pfSense] Poweredge 2850

2014-05-20 Thread Ryan Coleman
Many states, but not Minnesota, give you retail rates on putting power back on the grid… in Minnesota we get producer rates (about $.03kwh instead of $.13-16 [seasonally]). On May 20, 2014, at 15:48, Chris Bagnall pfse...@lists.minotaur.cc wrote: On 20 May 2014, at 21:37, Harlan Stenn

Re: [pfSense] vmware

2014-05-28 Thread Ryan Coleman
4.1? in 5.x you can assign VLANs to NICs and then different NICs to VMs. I don’t know about 4.1. On May 28, 2014, at 10:11, Brian Caouette bri...@dlois.com wrote: I'm looking to use vmware 4.1 on my poweredge 2850 when it arrives. I have a question on how virtual machines work. With a

Re: [pfSense] Setup advice

2014-05-28 Thread Ryan Coleman
. :-) On 5/28/2014 11:17 AM, Ryan Coleman wrote: I know pfsense will run on very limited specs but 512k(b) is a little extreme and I’m sure impossible :) On May 25, 2014, at 18:59, bri...@dlois.com wrote: Thank you for replying. Why so much? My test machine which I used to introduce

Re: [pfSense] Report Errors

2014-06-02 Thread Ryan Coleman
It’s also a mistake to not report them to the maintainers. :) On Jun 2, 2014, at 19:57, Jim Thompson j...@netgate.com wrote: On Jun 2, 2014, at 13:18, Brian Caouette bri...@dlois.com wrote: As much as I like pfSense it and packages are really prone to glitches and over all bugs.

Re: [pfSense] Report Errors

2014-06-03 Thread Ryan Coleman
What do your logs say? On Jun 3, 2014, at 6:56, Brian Caouette bri...@dlois.com wrote: That is true. It just seems like I get something working then it stops work a few hours later. I've seen packages not start up at on. This morning I can surf to porn sites despite them being blocked last

Re: [pfSense] Squid3 with https filtering

2014-06-16 Thread Ryan Coleman
And? This list is only as active as the people that read it. Posting additional emails without additional information is, at the least, annoying. On Jun 16, 2014, at 21:31, A Mohan Rao mohanra...@gmail.com wrote: Waiting... For new posts... On Jun 16, 2014 11:36 PM, A Mohan Rao

Re: [pfSense] https transparent proxy project failed...

2014-06-26 Thread Ryan Coleman
Typically that would because no one here has experience with it and you should try to find another resource. On Jun 26, 2014, at 2:45, A Mohan Rao mohanra...@gmail.com wrote: i think squid3-dev https transparent proxy project failed... still no body gave positive feedback. Thanks

Re: [pfSense] vhost

2014-07-02 Thread Ryan Coleman
It looks like it opens and dies. What does the lighttpd log file say? On Jul 02, 2014, at 02:22 PM, Brian Caouette bri...@dlois.com wrote: Can anyone tell me why this isn't working? The service doesn't start. Jul 2 11:10:42 php[38007]: /status_services.php: The command

Re: [pfSense] vhost

2014-07-02 Thread Ryan Coleman
not 80. Sent from my iPad On Jul 2, 2014, at 3:23 PM, Ryan Coleman ryanjc...@me.com wrote: It looks like it opens and dies. What does the lighttpd log file say? On Jul 02, 2014, at 02:22 PM, Brian Caouette bri...@dlois.com wrote: Can anyone tell me why this isn't working? The service

Re: [pfSense] Problem using wlan on mobile device with pptp, LCP: parameter negotiation failed

2014-07-03 Thread Ryan Coleman
You're trying to connect to the VPN over your local WLAN to the outside address assigned to the pfSense box? You really can't do that - does VPN to a local up for the box work? I suspect that does. -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On Jul 3, 2014, at 9:05

Re: [pfSense] pfsense slowing wan speed

2014-07-05 Thread Ryan Coleman
Brian, Here are my 6 questions: Exactly what kind of slowing is happening? Does it get resolved from a reboot? Are you the only person using the system? Are you certain of that? What’s the wireless in relation to your PFsense unit? Is it in the middle of the wireless router and the DSL modem? Is

Re: [pfSense] pfsense slowing wan speed

2014-07-06 Thread Ryan Coleman
there 5. yes 6. AP mode only. On Sat, Jul 5, 2014 at 10:32 PM, Ryan Coleman ryanjc...@me.com wrote: Brian, Here are my 6 questions: Exactly what kind of slowing is happening? Does it get resolved from a reboot? Are you the only person using the system? Are you certain of that? What’s

Re: [pfSense] Problem using wlan on mobile device with pptp, LCP: parameter negotiation failed

2014-07-09 Thread Ryan Coleman
Except that his boss is very pro Microsoft - which is why he owns an iPhone :) On Jul 9, 2014, at 14:06, Vick Khera vi...@khera.org wrote: On Fri, Jul 4, 2014 at 5:09 AM, Holger Bauer holger.ba...@gmail.com wrote: Have you considered using openvpn instead of pptp? Pptp is pretty insecure

Re: [pfSense] How to Enable/Disable DynDNS update e-mail notifiations?

2014-07-10 Thread Ryan Coleman
I am not sure that’s how Dyn works? As far as I understand it Dyn gets a request and it looks at the originating IP address, then makes the change. On Jul 10, 2014, at 3:27, Stefan Baur newsgroups.ma...@stefanbaur.de wrote: [I had already posted a similar message on 2014-06-27, but as it

Re: [pfSense] How to Enable/Disable DynDNS update e-mail notifiations?

2014-07-10 Thread Ryan Coleman
, schrieb Ryan Coleman: I am not sure that’s how Dyn works? As far as I understand it Dyn gets a request and it looks at the originating IP address, then makes the change. It's supposed to update the DNS entry, yes, but I don't want to receive an e-mail notification for each successful

Re: [pfSense] HELP

2014-07-10 Thread Ryan Coleman
Please take this conversation off list. -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On Jul 10, 2014, at 7:44, G.T.RAO netwebst...@gmail.com wrote: Hi, Mr Mohan Rao , no new update from ur end. Sent with MailTrack On Wed, Jul 9, 2014 at 4:40 PM, A Mohan Rao

Re: [pfSense] How to Enable/Disable DynDNS update e-mail notifiations?

2014-07-10 Thread Ryan Coleman
I totally get your point and you're ignoring my answer: IT DOES NOT EXIST AND YOU WILL HAVE TO CREATE IT ON YOUR OWN. Can you hear me now? -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On Jul 10, 2014, at 7:39, Stefan Baur newsgroups.ma...@stefanbaur.de wrote: Am

Re: [pfSense] HELP

2014-07-10 Thread Ryan Coleman
PLEASE take this conversation off the list. -- Ryan Coleman ryanjc...@me.com m. 651.373.5015 o. 612.568.2749 On Jul 10, 2014, at 9:15, A Mohan Rao mohanra...@gmail.com wrote: Hello mr rao, Its your work so i will not availble with your conditions and timings. better is u can take time

Re: [pfSense] Squid Problem and DNS?

2014-07-16 Thread Ryan Coleman
What version were you upgrading from? 2.1.3? 2.0.x? On Jul 16, 2014, at 9:25, Brian Caouette bri...@dlois.com wrote: I had issues upgrading to the new .4 version of pfSense. I was forced to start from scratch. That said I have it all up and running however I have two issues I can't figure

Re: [pfSense] 802.11ac Mini PCI Express adapter for pfSense

2014-07-20 Thread Ryan Coleman
The compatibility is strictly up to the software drivers. Is the driver for the card you’re looking at listed in the HCL? On Jul 20, 2014, at 16:52, Nickolai Leschov nlesc...@gmail.com wrote: I would like to use a PC Engines APU series board with pfSense as a wireless router. In their

Re: [pfSense] 802.11ac Mini PCI Express adapter for pfSense

2014-07-21 Thread Ryan Coleman
Nickolai - here is your answer: Version 2.2. On Jul 20, 2014, at 22:13, Jim Thompson j...@netgate.com wrote: there is no 802.11ac support in FreeBSD (and thus pfSense) as yet. 802.11n support is in FreeBSD 10 (and thus pfSense 2.2) On Jul 20, 2014, at 11:08 PM, Ryan Coleman ryanjc

[pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
Is there a difference between the 4 and the 1C4? Is Netgate just trying to fleece people for an extra $200 by packaging the entire thing together built and tested? http://store.netgate.com/kit-APU1C4.aspx http://store.netgate.com/APU4.aspx PC Engines only has the APU1C/APU1C4 listed with the

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
I asked the differences in the two line items from netgate. On Jul 22, 2014, at 9:56, Eugen Leitl eu...@leitl.org wrote: On Tue, Jul 22, 2014 at 02:40:44PM +, Ryan Coleman wrote: Is there a difference between the 4 and the 1C4? Is Netgate just trying to fleece people for an extra

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
Just like the others: dissipation through the aluminum case. Mine get toasty but they haven't cooked yet. You could cut a fan in the case if you needed to. On Jul 22, 2014, at 14:29, Nickolai Leschov nlesc...@gmail.com wrote: The difference is not $200, but about $100 with 8GB Sandisk

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
Do you happen to have an image of this? On Jul 22, 2014, at 16:28, Jim Thompson j...@smallworks.com wrote: On Jul 22, 2014, at 17:19, Nickolai Leschov nlesc...@gmail.com wrote: Just like the others: dissipation through the aluminum case How does the CPU connect to the aluminum case?

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
Look fuck nut: branded and shipped hardware is 100% on topic. Thank you. On Jul 22, 2014, at 20:10, Jim Thompson j...@netgate.com wrote: Very little if this thread is related to pfSense. Please stay on topic. -- Jim On Jul 22, 2014, at 17:32, Chris Bagnall

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
. Think of the others here instead of yourself, please. On Jul 22, 2014, at 20:23, Jim Thompson j...@netgate.com wrote: Ryan, Profanity and personal attacks have no place on this list. -- Jim On Jul 22, 2014, at 20:12, Ryan Coleman ryanjc...@me.com wrote: Look fuck nut: branded

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
::applause:: I may have fired off the message in a fit of frustration but you made it a public statement - if you wanted to be the “mom” and handle it you should have sent it privately instead of publicly. — Ryan On Jul 22, 2014, at 21:15, Chris Bagnall pfse...@lists.minotaur.cc wrote: On

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
Sorry, that was at our wonderful list mom. I should have noted it that way. On Jul 22, 2014, at 22:18, Chris Bagnall pfse...@lists.minotaur.cc wrote: On 23/7/14 4:11 am, Ryan Coleman wrote: I may have fired off the message in a fit of frustration but you made it a public statement - if you

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-22 Thread Ryan Coleman
...@corequick.com wrote: Who is the list mom and why is he/she not responding to this? On Jul 22, 2014, at 6:12 PM, Ryan Coleman ryanjc...@me.com wrote: Look fuck nut: branded and shipped hardware is 100% on topic. Thank you. On Jul 22, 2014, at 20:10, Jim Thompson j...@netgate.com wrote

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-23 Thread Ryan Coleman
to do with my list, hosted by my company, about a project that I have supported from the very start with time and money, is a short path to the ban list. Got it? -- Jim On Jul 22, 2014, at 22:35, Ryan Coleman ryanjc...@me.com wrote: Actually the margin is more like $250 - the board

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-27 Thread Ryan Coleman
Nickolai, I don’t know about you but I get my 8GB SDHC Class 10 cards for between $5 and $15. — Ryan On Jul 22, 2014, at 14:29, Nickolai Leschov nlesc...@gmail.com wrote: The difference is not $200, but about $100 with 8GB Sandisk Extreme Secure [sic!] SDHC card included. 1. What's

Re: [pfSense] Restoring config

2014-07-29 Thread Ryan Coleman
The new hardware has new MAC Addresses - they are assigned based on the MAC and not LAN1, LAN2 and LAN3. On Jul 29, 2014, at 18:06, Joseph L. Casale jcas...@activenetwerx.com wrote: I had to restore a config from a 2.1.4 system to new hardware. The original system had vlans and as expected

Re: [pfSense] Restoring config

2014-07-29 Thread Ryan Coleman
So 1 out of 3 upgrades failed to re-assign the NICs? What are you saying? On Jul 29, 2014, at 18:22, Joseph L. Casale jcas...@activenetwerx.com wrote: The new hardware has new MAC Addresses - they are assigned based on the MAC and not LAN1, LAN2 and LAN3. Not from the two systems I just

Re: [pfSense] pfsense, IPSec, and Mac OS X

2014-08-19 Thread Ryan Coleman
I had been before I was relieved of my duties 8 months ago. It does work but I have little to suggest to you at ht moment. On Aug 19, 2014, at 16:19, Paul Galati paulgal...@gmail.com wrote: Anybody on the list using Mac OS X 10.6 or later and the built in Cisco IPSec Client connecting to

Re: [pfSense] Upgrade 2.1 to 2.1.4 failure

2014-08-20 Thread Ryan Coleman
And the solution: Backup your configuration, re-image the drive and restore your configuration. On Aug 20, 2014, at 16:44, Adam Williams a...@spreedly.com wrote: I'm convinced that my issue on this one box is the same as those here: https://forum.pfsense.org/index.php?topic=75069.0 On

Re: [pfSense] Netgate APU2 SSD module question

2014-08-27 Thread Ryan Coleman
Wait, so the SDHC slot on this board is simply for show? On Aug 26, 2014, at 13:56, Sergii Cherkashyn ser...@accurategroup.com wrote: Thank you Espen, Squid is for filtering purpose only, not to save bandwidth. On Netgate they have only this SSD as an option. But I’ll keep your advice in

Re: [pfSense] Netgate APU2 SSD module question

2014-08-27 Thread Ryan Coleman
Why not answer the question? On Aug 27, 2014, at 7:56, Jim Thompson j...@netgate.com wrote: Ryan, Don't troll. On Aug 27, 2014, at 7:33 AM, Ryan Coleman ryanjc...@me.com wrote: Wait, so the SDHC slot on this board is simply for show? On Aug 26, 2014, at 13:56, Sergii

  1   2   3   >