Re: [pfSense Support] Dual WAN failover not working

2009-01-09 Thread sai
On Fri, Jan 9, 2009 at 1:14 AM, Veiko Kukk wrote: > Veiko Kukk wrote: >> >> Hi! >> >> I have dual pfsense 1.2.1, LAN interface, WAN and OPT1, last two are >> different ISP's. I have configured 3 carp interfaces and gateway failover >> for load balancer. I only need failover, not load balancing. Tr

[pfSense Support] 1.2.2 upgrade signature issue

2009-01-09 Thread Volker Kuhlmann
On Sun 28 Dec 2008 15:35:47 NZDT +1300, Chris Buechler wrote: > http://blog.pfsense.org/?p=284 > > I added that info to the 1.2.1 release announcement as well. Maybe it would be a good idea to also add that to the 1.2.2 release announcement. As 1.2.1 had a life time of < 3 weeks, 1.2 stable is s

Re: [pfSense Support] 1.2.2 upgrade signature issue

2009-01-09 Thread Chris Buechler
On Fri, Jan 9, 2009 at 4:48 PM, Volker Kuhlmann wrote: > On Sun 28 Dec 2008 15:35:47 NZDT +1300, Chris Buechler wrote: > >> http://blog.pfsense.org/?p=284 >> >> I added that info to the 1.2.1 release announcement as well. > > Maybe it would be a good idea to also add that to the 1.2.2 release > an

Re: [pfSense Support] Multi-WAN PPTP?

2009-01-09 Thread Tim Nelson
On the increasingly rare occasions I set up PPTP, I put the server on .15 and clients starting at .16 for the LAN subnet. If your client 'subnet' does not begin on a CIDR boundary, pfSense will complain. Hence, the .16 choice. Tim Nelson Systems/Network Support Rockbochs Inc. (218)727-4332 x105

RE: [pfSense Support] Multi-WAN PPTP?

2009-01-09 Thread Christopher Iarocci
Chris, Thank you. I will try the new config tonight and report back. Christopher Iarocci Network Solutions Manager Twin Forks Office Products 631-727-3354 -Original Message- From: Chris Buechler [mailto:cbuech...@gmail.com] Sent: Friday, January 09, 2009 2:31 PM To: support@pfsense.co

Re: [pfSense Support] SVG graphs fixed in Google Chrome

2009-01-09 Thread Chris Buechler
On Fri, Jan 9, 2009 at 11:24 AM, Dave Warren wrote: > FWIW, I just switched to the Chrome developer channel, SVG graphs > started working in 1.2.1. > Interesting. I believe it was a Chrome bug, but we were able to work around it. --

Re: [pfSense Support] Multi-WAN PPTP?

2009-01-09 Thread Chris Buechler
On Fri, Jan 9, 2009 at 1:08 PM, Christopher Iarocci wrote: > Chris, > > Does it matter which IP address on my LAN it is? Should it be the LAN IP of > the PFSense box, or something other than that? > Just pick an unused IP on your LAN. > Does the radius server see requests coming from the IP ad

RE: [pfSense Support] Multi-WAN PPTP?

2009-01-09 Thread Christopher Iarocci
Chris, Does it matter which IP address on my LAN it is? Should it be the LAN IP of the PFSense box, or something other than that? [Christopher Iarocci] Does the radius server see requests coming from the IP address specified there or the LAN IP? In the past with the WAN IP in that field, reque

RE: [pfSense Support] Multi-WAN PPTP?

2009-01-09 Thread Christopher Iarocci
Chris, Does it matter which IP address on my LAN it is? Should it be the LAN IP of the PFSense box, or something other than that? Christopher Iarocci Network Solutions Manager Twin Forks Office Products 631-727-3354 -Original Message- From: cbuech...@gmail.com [mailto:cbuech...@gmail.co

Re: [pfSense Support] DMZ to LAN access

2009-01-09 Thread RB
On Fri, Jan 9, 2009 at 08:31, Chris Buechler wrote: > You rarely want to NAT between internal interfaces. Ditto. The only "internal" NAT I have is when traversing from a trusted VLAN to an untrusted one (open wireless) to mask the systems. If your routing (primarily on the clients) is configured

[pfSense Support] SVG graphs fixed in Google Chrome

2009-01-09 Thread Dave Warren
FWIW, I just switched to the Chrome developer channel, SVG graphs started working in 1.2.1. Upgrading to 1.2.2 anyway, just waiting on the download. -- Dave Warren, d...@djwcomputers.com Office: (403) 775-1700 / (888) 300-3480 ---

Re: [pfSense Support] Dual WAN failover not working

2009-01-09 Thread Chris Buechler
On Fri, Jan 9, 2009 at 4:14 AM, Veiko Kukk wrote: > > Please, somebody confirm this bug or help me solve possible > misconfiguration, I really need to have wan failover. > It's not a bug. you have something configured wrong, and not nearly enough info for anybody to tell what. -

Re: [pfSense Support] DMZ to LAN access

2009-01-09 Thread Chris Buechler
On Fri, Jan 9, 2009 at 3:15 AM, Peter Todorov wrote: > Curtus, I am no so familiar with pfsense architecture to do SSh login and > manual rewriting conf files. I have NAT yes it is AON because I have dual > WAN configuration. That's not necessary. There is very old, outdated documentation somewhe

Re: [pfSense Support] Auto Update page 1.2.1 / 1.2.2

2009-01-09 Thread Chris Buechler
On Fri, Jan 9, 2009 at 8:55 AM, Pete Boyd wrote: > After upgrading 1.2.1 to 1.2.2, /system_firmware_check.php says: > > "A new version is now available > > New version: 1.2.1 > Current version: 1.2.2 > Update source: http://updates.pfSense.com/_updaters"; That didn't get updated yet, Scott

RE: [pfSense Support] Auto Update page 1.2.1 / 1.2.2

2009-01-09 Thread Pete Boyd
> Same for me, though I upgrade to 1.2.2 manually I also upgraded manually. I'd not noticed the auto upgrade option till now. -- Pete Boyd Open Plan IT - http://openplanit.co.uk The Golden Ear - http://thegoldenear.org - To

RE: [pfSense Support] Auto Update page 1.2.1 / 1.2.2

2009-01-09 Thread k_o_l
Same for me, though I upgrade to 1.2.2 manually -Original Message- From: Pete Boyd [mailto:petes-li...@thegoldenear.org] Sent: Friday, January 09, 2009 8:56 AM To: support@pfsense.com Subject: [pfSense Support] Auto Update page 1.2.1 / 1.2.2 After upgrading 1.2.1 to 1.2.2, /system_firmwa

Re: [pfSense Support] DMZ to LAN access

2009-01-09 Thread Curtis LaMasters
No need of manual configuration needed, actually I would not recommend that at all. I was referring to using the SSH console to review your raw logs for quicker diagnosis if it indeed was a firewall rule issue. Curtis LaMasters http://www.curtis-lamasters.com http://www.builtnetworks.com On Fri

[pfSense Support] Auto Update page 1.2.1 / 1.2.2

2009-01-09 Thread Pete Boyd
After upgrading 1.2.1 to 1.2.2, /system_firmware_check.php says: "A new version is now available New version: 1.2.1 Current version: 1.2.2 Update source: http://updates.pfSense.com/_updaters"; I have nothing selected in /system_firmware_settings.php. (Also, it seems wrong that on /system_

Re: [pfSense Support] DMZ to LAN access

2009-01-09 Thread Peter Todorov
I add NAT rule and I got connection On Fri, Jan 9, 2009 at 11:41 AM, Peter Todorov wrote: > Maybe I need to update to 1.2.1 > > > On Fri, Jan 9, 2009 at 11:32 AM, Eugen Leitl wrote: > >> On Fri, Jan 09, 2009 at 11:14:50AM +0200, Peter Todorov wrote: >> > >> >Yes the are now in second p

[pfSense Support] newbie question

2009-01-09 Thread k_o_l
Is there a way to display current time/date on the dashboard? Sam - To unsubscribe, e-mail: support-unsubscr...@pfsense.com For additional commands, e-mail: support-h...@pfsense.com Commercial support available - https://portal

Re: [pfSense Support] adding carp in firewall cluster

2009-01-09 Thread Veiko Kukk
Paul Mansfield wrote: I note that when I add a new carp interface on the master, when it gets replicated to slave, the carp status page on the slave has a blank field in the "carp interface" column of the table. is this a known bug? does it matter, or should I reboot slave? No you don't need

Re: [pfSense Support] Dual WAN failover not working

2009-01-09 Thread Veiko Kukk
Veiko Kukk wrote: Hi! I have dual pfsense 1.2.1, LAN interface, WAN and OPT1, last two are different ISP's. I have configured 3 carp interfaces and gateway failover for load balancer. I only need failover, not load balancing. Tried with one and two failover pools with no success. When WAN isp

Re: [pfSense Support] DMZ to LAN access

2009-01-09 Thread Peter Todorov
Curtus, I am no so familiar with pfsense architecture to do SSh login and manual rewriting conf files. I have NAT yes it is AON because I have dual WAN configuration. I have only NAT between external and internal interfaces. I add some rules to bouth interfacese in the top just for test that has *