Re: [pfSense Support] Happy Birthday Chris

2011-08-18 Thread Shali K.R.
Happy Birthday Chris

On Thu, Aug 18, 2011 at 3:05 PM, Bart Grefte  wrote:

> Happy birthday :)
>
> -Oorspronkelijk bericht-
> Van: Chris Buechler [mailto:cbuech...@gmail.com]
> Verzonden: donderdag 18 augustus 2011 11:31
> Aan: support@pfsense.com
> Onderwerp: Re: [pfSense Support] Happy Birthday Chris
>
> On Thu, Aug 18, 2011 at 1:18 AM, Glenn Kelley  wrote:
> > Happy Birthday Chris
> >
>
> Thanks!
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>
> __ NOD32 6387 (20110817) Informatie __
>
> Dit bericht is gecontroleerd door het NOD32 Antivirus Systeem.
> http://www.nod32.nl
>
>
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] captive portal firewall rules

2011-08-04 Thread Shali K.R.
Dear all,

i am trying to configure captive portal in my network, its working only if i
enabled 'allow from all to all" in firewall anybody please tell me whats
ports are using captive portal service.

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Upgrade to pfsense 2.0

2011-07-26 Thread Shali K.R.
Try rebooting the machine..

On Tue, Jul 26, 2011 at 3:57 PM, Raimund Sacherer <
raimund.sache...@logitravel.com> wrote:

> Hello, I am experiencing sometimes the same, and I am not sure what's the
> problem at my end.
>
> Maybe it could be that google is redirecting the login to a non-standard
> https port and you are blocking this outgoing traffic?
>
> In my case it's working sometimes fine and sometimes it just times out.
> Hope to get on the bottom of this soon.
>
> best
> Ray
>
> --
> *From: *"Aymen Belkhiria" 
> *To: *support@pfsense.com
> *Sent: *Tuesday, July 26, 2011 12:24:26 PM
> *Subject: *[pfSense Support] Upgrade to pfsense 2.0
>
>
> Hi All,
>
> I upgraded my firewall from pfsense 1.2.3 to 2.0 RC3 using the console
> upgrade method but After feeling every thing works fine,
> I find that:
>
>- I can't access to gmail(problem to log-in) but I have internet access
>- I have a problem to manage rules on wan interface.
>
>
> Any Idea?
>
>
> Thanks
>
> --
> Aymen Belkhiria
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Squidguard / squid getting default access

2011-07-12 Thread Shali K.R.
Dear All,

i found a serious issue with my pfSense box. my configurations are working
fine but some certain point of time squidguard getting default access. that
means allow all to all.And when i restart or save or apply squid /squidguard
it will work fine. i need to do this daily one or two , any body please help
me.

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Cant access Cisco.com through pfSense

2011-06-22 Thread Shali K.R.
When i try to access Cisco.com i am getting error message "Oops! Google
Chrome could not connect to www.cisco.com

Try reloading: www.­cisco.­com <http://www.cisco.com/> "

On Wed, Jun 22, 2011 at 1:42 PM, Seth Mos  wrote:

>
> Op 22 jun 2011, om 09:28 heeft Shali K.R. het volgende geschreven:
>
> > Dear All,
> >
> > i cant access Cisco site through pfSense yesterday i enabled ipv6 traffic
> in System-> Advanced page but today its not working,any idea???
>
> Do you actually have IPv6 addressing from your ISP? Just blindly enabling
> it will do nothing. Cisco.com did have a quad A record for the domain for
> ipv6 day, but not currently.
>
> what does host www.cisco.com tell you? Does it return a quad A record?
>
> Regards,
> Seth
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Cant access Cisco.com through pfSense

2011-06-22 Thread Shali K.R.
Dear All,

i cant access Cisco site through pfSense yesterday i enabled ipv6 traffic in
System-> Advanced page but today its not working,any idea???

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Finding the mac of squid users

2011-05-04 Thread Shali K.R.
Dear Sir,

i cant find any "OT: A Dansguardian package" in packages section, do i need
to configure it manually?

On Wed, May 4, 2011 at 2:16 PM, Benjamin Fromme <
benjamin.fro...@login-online.de> wrote:

> OT: A Dansguardian package would be so nice!
>
> Am Mittwoch, den 04.05.2011, 13:49 +0530 schrieb Shali K.R.:
> > Dear Sir,
> >
> >
> > Thank you very much for your detailed reply...
> >
> > On Wed, May 4, 2011 at 11:05 AM, Adam Thompson 
> > wrote:
> > This is a frequently asked question both here and elsewhere,
> > including squid-specific forums.
> >
> > The question arises from an imperfect understanding of IP
> > networking.  One of the cornerstones of IP is the decoupling
> > of data-link and network layers.  There is no inherent
> > requirement in IP to even have a MAC address - that is a
> > peculiarity of Ethernet (and several other network types).
> >  The ARP protocol exists to *prevent* administrators from
> > needing to know MAC addresses!
> >
> > Any method for tying squid ACLs to MAC addresses relies on
> > several unjustifiable assumptions.  One, that MAC addresses
> > are fixed, unique identifiers.  They are not - it is trivial
> > to change MAC addresses.  And two, that the squid server can
> > know the client's MAC address.  This is only valid in the case
> > of a single, unrouted Ethernet LAN.  As soon as an IP packet
> > crosses a router, you lose the MAC data.  There are several
> > scenarios where using a wireless network will produce
> > untrustable MAC addresses.
> >
> > Lastly, this concept attempts to directly couple the top and
> > bottom layers of the OSI model.  The layers of the OSI model
> > exist precisely so that the Data Link layer is fully
> > independent from the Session layer.
> >
> >     The best solution is generally considered to be the use of
> > proxy authentication, which ties rules to individual users -
> > this is usually the goal anyway!
> >
> > -Adam
> >
> >
> >
> > "Shali K.R."  wrote:
> >
> > >Dear all,
> > >
> > >I have a doubt , i am using pfsense with squid and squidguard
> > and my
> > >different privilege configurations are based on ip address in
> > squidguard but
> > >some of my users chaning their ips and getting unauthorized
> > access. is there
> > >any method to trace the mac ids ???
> > >--
> > >Thanks & Regards
> > >
> > >Shali K R
> > >Server Administrator
> > >Vidya Academy of Science & Technology
> > >Thrissur,Kerala.
> > >Mob:9846303531
> >
> >
> >
> >
> > --
> > Thanks & Regards
> >
> > Shali K R
> > Server Administrator
> > Vidya Academy of Science & Technology
> > Thrissur,Kerala.
> > Mob:9846303531
> >
> >
>
> --
> Benjamin
>
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Finding the mac of squid users

2011-05-04 Thread Shali K.R.
Dear Sir,

Thank you very much for your detailed reply...

On Wed, May 4, 2011 at 11:05 AM, Adam Thompson wrote:

> This is a frequently asked question both here and elsewhere, including
> squid-specific forums.
>
> The question arises from an imperfect understanding of IP networking.  One
> of the cornerstones of IP is the decoupling of data-link and network layers.
>  There is no inherent requirement in IP to even have a MAC address - that is
> a peculiarity of Ethernet (and several other network types).  The ARP
> protocol exists to *prevent* administrators from needing to know MAC
> addresses!
>
> Any method for tying squid ACLs to MAC addresses relies on several
> unjustifiable assumptions.  One, that MAC addresses are fixed, unique
> identifiers.  They are not - it is trivial to change MAC addresses.  And
> two, that the squid server can know the client's MAC address.  This is only
> valid in the case of a single, unrouted Ethernet LAN.  As soon as an IP
> packet crosses a router, you lose the MAC data.  There are several scenarios
> where using a wireless network will produce untrustable MAC addresses.
>
> Lastly, this concept attempts to directly couple the top and bottom layers
> of the OSI model.  The layers of the OSI model exist precisely so that the
> Data Link layer is fully independent from the Session layer.
>
> The best solution is generally considered to be the use of proxy
> authentication, which ties rules to individual users - this is usually the
> goal anyway!
>
> -Adam
>
>
> "Shali K.R."  wrote:
>
> >Dear all,
> >
> >I have a doubt , i am using pfsense with squid and squidguard and my
> >different privilege configurations are based on ip address in squidguard
> but
> >some of my users chaning their ips and getting unauthorized access. is
> there
> >any method to trace the mac ids ???
> >--
> >Thanks & Regards
> >
> >Shali K R
> >Server Administrator
> >Vidya Academy of Science & Technology
> >Thrissur,Kerala.
> >Mob:9846303531
>



-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Finding the mac of squid users

2011-05-03 Thread Shali K.R.
Dear all,

I have a doubt , i am using pfsense with squid and squidguard and my
different privilege configurations are based on ip address in squidguard but
some of my users chaning their ips and getting unauthorized access. is there
any method to trace the mac ids ???
-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] package Syncing taking too long whlie booting

2011-04-06 Thread Shali K.R.
Dear squid users,

i am using pfsense 1.2.3 , and while booting package syncing : squid,squid
cache,squid traffic, squidguard etc taking a long time...and i felt that
when the time of installation its boot time is less than 3 mins and after
using it for two months it increased to 10 mins ...is it will increase day
by day?

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Package Syncing Time

2011-04-02 Thread Shali K.R.
Dear Administrators,

My pfSense box taking long time for package syncing while booting , anybody
have this issue ??? please help me 

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Additional SSl porton squid not working

2011-03-25 Thread Shali K.R.
Dear all,

i added one additional ssl port 8443 in squid's GUI acl sslports but its not
working ??/

any idea??




-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Squid with LDAP not working

2011-03-17 Thread Shali K.R.
ok Thank you sir.

On Thu, Mar 17, 2011 at 9:30 PM, Dominic  wrote:

> Hi Shali,
>
> Sorry I am still using 1.2.3, perhaps someone else on the list using
> 2.0 can advise?
>
> I will be doing a test with 2.0 tomorrow and should I find something I
> will let you know.
>
> On Thu, Mar 17, 2011 at 1:17 PM, Shali K.R. 
> wrote:
> > Dear sir,
> >
> > Actually i am using pfsense 2.0 and how to check the openldap-client
> version
> > ???
> >
> > On Thu, Mar 17, 2011 at 4:22 PM, Dominic  wrote:
> >>
> >> Hi Shali,
> >>
> >> Have you reinstalled openldap as per the forum post? I found this a
> >> key factor in getting mine working.
> >>
> >> Remove openldap on system ;
> >> # pkg_delete -f openldap-client-2.4.10
> >>
> >> install new openldap version ;
> >> # pkg_add -r
> >> http://files.pfsense.org/packages/7/All/openldap-client-2.4.11.tbz
> >> # rehash
> >>
> >> On Thu, Mar 17, 2011 at 12:43 PM, Shali K.R. 
> >> wrote:
> >> > Dear Domanic sir,
> >> >
> >> > after searching several topics i have changed my settings as ,
> >> >
> >> > Authentication method  :LDAP
> >> > LDAP V:3
> >> > Authentication server :10.1.1.25
> >> > Authentication server port :389
> >> > LDAP server user DN : ou=people,dc=lan,dc=com
> >> > LDAP base domain : dc=lan,dc=com
> >> > LDAP username DN attribute :uid
> >> > LDAP search filter :uid=%s
> >> >
> >> > but its not working...
> >> >
> >> > On Thu, Mar 17, 2011 at 2:44 PM, Dominic 
> wrote:
> >> >>
> >> >> Hi Shali,
> >> >>
> >> >> Take a look at this forum post, it helped me resolve this problem.
> >> >>
> >> >> http://forum.pfsense.org/index.php?topic=20666.0
> >> >>
> >> >> Kind Regards,
> >> >>
> >> >> Dominic.
> >> >>
> >> >> On Thu, Mar 17, 2011 at 11:03 AM, Shali K.R. <
> sh...@vidyaacademy.ac.in>
> >> >> wrote:
> >> >> > Dear all,
> >> >> >
> >> >> > I have a working LDAP server ( tested with JXplorer )and i am
> trying
> >> >> > to
> >> >> > use
> >> >> > squid with LDAP following information provided but working any
> >> >> > idea???
> >> >> >
> >> >> > Authentication method  :LDAP
> >> >> > LDAP V:3
> >> >> > Authentication server :10.1.1.25
> >> >> > Authentication server port :389
> >> >> > LDAP server user DN : cn=Administrator,dc=lan,dc=com
> >> >> > LDAP password :password
> >> >> > LDAP base domain : dc=lan,dc=com
> >> >> >
> >> >> > --
> >> >> > Thanks & Regards
> >> >> >
> >> >> > Shali K R
> >> >> > Server Administrator
> >> >> > Vidya Academy of Science & Technology
> >> >> > Thrissur,Kerala.
> >> >> > Mob:9846303531
> >> >> >
> >> >> >
> >> >> >
> >> >>
> >> >> -
> >> >> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> >> >> For additional commands, e-mail: support-h...@pfsense.com
> >> >>
> >> >> Commercial support available - https://portal.pfsense.org
> >> >>
> >> >
> >> >
> >> >
> >> > --
> >> > Thanks & Regards
> >> >
> >> > Shali K R
> >> > Server Administrator
> >> > Vidya Academy of Science & Technology
> >> > Thrissur,Kerala.
> >> > Mob:9846303531
> >> >
> >> >
> >> >
> >
> >
> >
> > --
> > Thanks & Regards
> >
> > Shali K R
> > Server Administrator
> > Vidya Academy of Science & Technology
> > Thrissur,Kerala.
> > Mob:9846303531
> >
> >
> >
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Squid with LDAP not working

2011-03-17 Thread Shali K.R.
Dear Domanic sir,

after searching several topics i have changed my settings as ,

Authentication method  :LDAP
LDAP V:3
Authentication server :10.1.1.25
Authentication server port :389
LDAP server user DN : ou=people,dc=lan,dc=com
LDAP base domain : dc=lan,dc=com
LDAP username DN attribute :uid
LDAP search filter :uid=%s

but its not working...

On Thu, Mar 17, 2011 at 2:44 PM, Dominic  wrote:

> Hi Shali,
>
> Take a look at this forum post, it helped me resolve this problem.
>
> http://forum.pfsense.org/index.php?topic=20666.0
>
> Kind Regards,
>
> Dominic.
>
> On Thu, Mar 17, 2011 at 11:03 AM, Shali K.R. 
> wrote:
> > Dear all,
> >
> > I have a working LDAP server ( tested with JXplorer )and i am trying to
> use
> > squid with LDAP following information provided but working any idea???
> >
> > Authentication method  :LDAP
> > LDAP V:3
> > Authentication server :10.1.1.25
> > Authentication server port :389
> > LDAP server user DN : cn=Administrator,dc=lan,dc=com
> > LDAP password :password
> > LDAP base domain : dc=lan,dc=com
> >
> > --
> > Thanks & Regards
> >
> > Shali K R
> > Server Administrator
> > Vidya Academy of Science & Technology
> > Thrissur,Kerala.
> > Mob:9846303531
> >
> >
> >
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Squid with LDAP not working

2011-03-17 Thread Shali K.R.
Dear all,

I have a working LDAP server ( tested with JXplorer )and i am trying to use
squid with LDAP following information provided but working any idea???

Authentication method  :LDAP
LDAP V:3
Authentication server :10.1.1.25
Authentication server port :389
LDAP server user DN : cn=Administrator,dc=lan,dc=com
LDAP password :password
LDAP base domain : dc=lan,dc=com

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Youtube throttle

2011-03-08 Thread Shali K.R.
Dear all,

is there any way to throttle youtube through squid+pfsense??/

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Network usage monitoring

2011-03-07 Thread Shali K.R.
Dear all,

i need to monitor live bandwidth usage by the lan clients what packages need
to be installed???

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Squidguard blacklist update not working

2011-03-04 Thread Shali K.R.
Dear all,

i installed pfsense 1.2.3 and installed squid and squid guard and then
trying to start squidguard i got an error message and corrected that error
using
http://translate.google.co.in/translate?hl=en&sl=ru&tl=en&u=http%3A%2F%2Fforum.pfsense.org%2Findex.php%3Ftopic%3D33733.0
 then its working but when i try to update the black list using
http://urlblacklist.com/cgi-bin/commercialdownload.pl?type=download&file=bigblacklist

its not working , the log file says

Begin blacklist update
Start download.
Download archive
http://urlblacklist.com/cgi-bin/commercialdownload.pl?type=download
Download complete
Unpack archive
Scan blacklist categories.
Start rebuild DB.
Copy DB to workdir.
Reconfigure Squid proxy.
Blacklist update complete.

any idea??/

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Clearing squid and squidguard logs

2011-03-02 Thread Shali K.R.
Dear all,

My pfsense box is taking too long to boot i think its due to large log
files, how can i clear the log files???

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] boot time increased

2011-03-01 Thread Shali K.R.
Dear all,

I have stared using pfSense before 2 months ,am using squid ,squidguard
,lightsquid etc...today i restarted the machine but it taking 20 mins for
booting squidguard sync takes 10 mins is there any way to optimize this??/

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Microsoft updates through pfSense

2011-02-18 Thread Shali K.R.
Dear James Bensley,

Just redirect to local WSUS server will solve this issue?

On Fri, Feb 18, 2011 at 2:06 PM, James Bensley  wrote:

> If you cant use a domain with a WSUS server, why not redirect the IP ranges
> of MS update servers to your WSUS server on your firewall?
>
> --James. (This email was sent from a mobile device)
>



-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Blocking a MAC id through squid

2011-02-17 Thread Shali K.R.
Dear all,

is there any way to block a MAC id using squid in pfSense.

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Microsoft updates through pfSense

2011-02-17 Thread Shali K.R.
Dear Mike McLaughlin,

But WSUS requires a domain controller for the perfect functioning, i also
tried this without domain controller but its not working well


On Fri, Feb 18, 2011 at 9:25 AM, Mike McLaughlin  wrote:

> The proper way to handle that many clients is to run a WSUS update server
> (or its new replacement, System Center).
>
> Mike McLaughlin - System Administrator
> Clientworks, Inc - 721 Zion St, Nevada City, CA 95959
> Office 530-470-0104 - Cell 530-559-9606
>
>
>
> On Thu, Feb 17, 2011 at 7:52 PM, Shali K.R. wrote:
>
>> Dear db,
>>
>> i have tried this, but it showing a high bandwidth usage, is this a proper
>> way??
>>
>> On Fri, Feb 18, 2011 at 9:14 AM, David Burgess  wrote:
>>
>>> On Thu, Feb 17, 2011 at 8:42 PM, Shali K.R. 
>>> wrote:
>>> > Dear all,
>>> >
>>> > I am having 500 windows client machines connected through pfSense and
>>> squid,
>>> > please suggest me a suitable method for handling updates.
>>>
>>> You'll find the appropriate info here:
>>>
>>> http://doc.pfsense.org/index.php/Squid_Package_Tuning
>>>
>>> db
>>>
>>> -
>>> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
>>> For additional commands, e-mail: support-h...@pfsense.com
>>>
>>> Commercial support available - https://portal.pfsense.org
>>>
>>>
>>
>>
>> --
>> Thanks & Regards
>>
>> Shali K R
>> Server Administrator
>> Vidya Academy of Science & Technology
>> Thrissur,Kerala.
>> Mob:9846303531
>>
>>
>>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Microsoft updates through pfSense

2011-02-17 Thread Shali K.R.
Dear db,

i have tried this, but it showing a high bandwidth usage, is this a proper
way??

On Fri, Feb 18, 2011 at 9:14 AM, David Burgess  wrote:

> On Thu, Feb 17, 2011 at 8:42 PM, Shali K.R. 
> wrote:
> > Dear all,
> >
> > I am having 500 windows client machines connected through pfSense and
> squid,
> > please suggest me a suitable method for handling updates.
>
> You'll find the appropriate info here:
>
> http://doc.pfsense.org/index.php/Squid_Package_Tuning
>
> db
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Microsoft updates through pfSense

2011-02-17 Thread Shali K.R.
Dear all,

I am having 500 windows client machines connected through pfSense and squid,
please suggest me a suitable method for handling updates.

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Help on lightsquid

2011-02-06 Thread Shali K.R.
Dear all,

I have installed squid and lightsquid on my pfSense and was working fine,
but now i am planning to take a report of last two days ( 5 and 6) but it
displaying only todays report i pressed refresh full and refresh now button
several time then i got 6h but no report on 5th   i am stared using these
reports before 2 months. and was working fine. any log rotate refresh
schedule is required? i am using 1 TB HDD.  any idea??

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Allow exe form a site only

2011-02-01 Thread Shali K.R.
How can i create it???

 You must create the first Destination category, what allow EXE from M$

On Tue, Feb 1, 2011 at 10:36 PM, Serg  wrote:

>
>
> - Original Message -
> *From:* Shali K.R. 
> *To:* support@pfsense.com
> *Sent:* Tuesday, February 01, 2011 2:16 PM
> *Subject:* [pfSense Support] Allow exe form a site only
>
> Dear all,
>
> I have blocked exe  using squidguard.Is it possible to allow exes only from
> microsoft.com???
>
> --
> Thanks & Regards
>
> Shali K R
> Server Administrator
> Vidya Academy of Science & Technology
> Thrissur,Kerala.
> Mob:9846303531
>
> Hello.
> Yes, it's possible.
> You must create the first Destination category, what allow EXE from M$ and
> allow it as whitelist in the ACL.
> Also need create the second Destination category for block EXE from any
> site.
>
> Regards
> Sergey
>



-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Allow exe form a site only

2011-02-01 Thread Shali K.R.
Dear all,

I have blocked exe  using squidguard.Is it possible to allow exes only from
microsoft.com???

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Re: Network Traffic difference

2011-01-19 Thread Shali K.R.
Based on this tutorial
http://doc.pfsense.org/index.php/Squid_Package_Tuningi had enabled
microsoft updates but now i cleared all these from squid
configuration but still its same as before

On Thu, Jan 20, 2011 at 10:18 AM, David Burgess  wrote:

> On Wed, Jan 19, 2011 at 9:44 PM, Shali K.R. 
> wrote:
> >
> > sir ..
> > In my pfsense traffic graphic shows WAN in 4 Mbps LAN out 1Mbps   Why
> this
> > differenceanything wrong with mypfsense?
>
> http://forum.pfsense.org/index.php/topic,31855.0.html
>
> For pcap use tcpdump on the pfsense console.
>
> bd
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Network Traffic difference

2011-01-19 Thread Shali K.R.
Dear all,

In my pfsense traffic graphic shows WAN in 4 Mbps LAN out 1Mbps   Why this
differenceanything wrong with mypfsense?

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] SquidGuard blocking all blogspot sites

2011-01-19 Thread Shali K.R.
How can i rebuild the squidGuard DB???

On Wed, Jan 19, 2011 at 2:08 PM, James Bensley  wrote:

> Hi,
>
> I don't run squidGuard on pfSense specifically but typically with
> squidGuard you must remove the entry from its blocking category and then
> rebuild the squidGuard DB, before finally restarting squid.
>
> To prevent it being blocked again though from a future BL update you should
> whitelist the entry rather than removing it from its blocking category.
>
> --James. (This email was sent from a mobile device)
>



-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] SquidGuard blocking all blogspot sites

2011-01-18 Thread Shali K.R.
Dear all,

SquidGuard blocking all blogspot sites under category "adult" how can i
exclude good blogspot sites, i removed entry blogspot.com from
/var/squidGuard/arcdb/blk_blacklists_adult/domains but no effect

please help me
-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Squidguard Fatal Error

2011-01-17 Thread Shali K.R.
i got a solution from ,

http://forum.pfsense.org/index.php?topic=31171.0

now its working fine

On Tue, Jan 18, 2011 at 3:52 AM, Chris Buechler  wrote:

> On Mon, Jan 17, 2011 at 12:06 AM, Shali K.R. 
> wrote:
> > Dear all,
> >
> > When my system starts i am getting an error message error in squidguard
> > error,
> > When i checked the proxyfilter log i can see an error,
> >
> >
> >  "Fatal error: Call to undefined function: str_split() in
> > /usr/local/pkg/squidguard.inc on line 1329"
> >
> > what is this?
> >
>
> Some kind of problem in the squidguard package, are you on the latest
> version?
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Squidguard Fatal Error

2011-01-16 Thread Shali K.R.
Dear all,

When my system starts i am getting an error message error in squidguard
error,
When i checked the proxyfilter log i can see an error,


 "Fatal error: Call to undefined function: str_split() in
/usr/local/pkg/squidguard.inc on line 1329"

what is this?

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Re: MultiWAN help

2011-01-14 Thread Shali K.R.
Dear all,

Finally i have configured multiWAN but squid not working with multiWAN, i am
using pfsense 1.2.3 version any suggestions???

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Multi WAN

2011-01-13 Thread Shali K.R.
Dear sir,

How can i create rule for out going? i already created all allow rule for
OPT1 in firewal-> Rules

On Fri, Jan 14, 2011 at 11:46 AM, Chris Buechler wrote:

> On Fri, Jan 14, 2011 at 1:12 AM, Shali K.R. 
> wrote:
> > OPT1 as wan (public IP and gateway ) i can ping from out side.first i
> need
> > to configure the connection right? then NAT ing and all these...
> >
> > i cant make any ping from GUI choosing OPT1 as interface
>
> Read the page - "Note: Multi-wan is not supported from this utility
> currently."
>
> Setup your rules to send some traffic out of it to test.
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Multi WAN

2011-01-13 Thread Shali K.R.
OPT1 as wan (public IP and gateway ) i can ping from out side.first i need
to configure the connection right? then NAT ing and all these...

i cant make any ping from GUI choosing OPT1 as interface

On Fri, Jan 14, 2011 at 11:03 AM, David Burgess  wrote:

> On Thu, Jan 13, 2011 at 10:29 PM, Shali K.R. 
> wrote:
> > Dear all,
> >
> > I have 2 WAN ( Static and another PPPOE )connections and a LAN connection
> >
> >
> > i added PPPOE as WAN and static as OPT1 two connections are active and i
> > added a firewall rule for OPT1 allow all to all  then i check the
> > connectivity of OPT1, i can ping to OPT1 from out side but cant ping from
> > OPT1 to anywhere, any idea??/
>
> You said OPT1 is a WAN with static IP, so I assume you configured it
> with a gateway. If you didn't turn off automatic outbound NAT then
> OPT1 will not accept any LAN-destined traffic unless you define port
> forward rules.
>
> Alternately, you could turn off AON if your LAN is in public IP
> address space (or if one of your WANs is).
>
> db
>
> -
> To unsubscribe, e-mail: support-unsubscr...@pfsense.com
> For additional commands, e-mail: support-h...@pfsense.com
>
> Commercial support available - https://portal.pfsense.org
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Multi WAN

2011-01-13 Thread Shali K.R.
Dear all,

I have 2 WAN ( Static and another PPPOE )connections and a LAN connection


i added PPPOE as WAN and static as OPT1 two connections are active and i
added a firewall rule for OPT1 allow all to all  then i check the
connectivity of OPT1, i can ping to OPT1 from out side but cant ping from
OPT1 to anywhere, any idea??/



-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] DAP bypassing squid bandwidth throttling

2011-01-08 Thread Shali K.R.
i configured Overall bandwidth throttling 100 and per user 20 and its
working fine with normal downloads but when  i use DAP software i can bypass
the bandwidth throttling... any idea to block it?

i think DAP creating multiple connections for a single downloadany idea
?

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


Re: [pfSense Support] Squid traffic management Maximum download size not working

2011-01-07 Thread Shali K.R.
Thank you sir its working fine now

On Fri, Jan 7, 2011 at 4:00 PM, Fuchs, Martin  wrote:

>  Hi !
>
>
>
> I found the error, i’ll try to fix it as soon as time permits…
>
>
>
> Until then please change the following lines
>
>
>
> /usr/local/pkg/squid.inc: line 896:
>
> FROM   $conf .= 'reply_body_max_size ' . ($down_limit * 1024) . " allow
> all\n";
>
> TO  $conf .= 'reply_body_max_size ' . ($down_limit * 1024) . " deny
> all\n";
>
>
>
> Then configure and save again !
>
>
>
> Regards,
>
>
>
> Martin !
>
> *Von:* Shali K.R. [mailto:sh...@vidyaacademy.ac.in]
> *Gesendet:* Freitag, 7. Januar 2011 10:17
> *An:* support@pfsense.com
> *Betreff:* [pfSense Support] Squid traffic management Maximum download
> size not working
>
>
>
> Dear all,
>
> i added 51200 ( 50 MB) in Maximum download size of proxy  page  but its not
> working i checked squid.conf file it shows
> reply_body_max_size 52428800 allow all but i can download large files. is
> there any way to configure it properly
>
> --
> Thanks & Regards
>
> Shali K R
> Server Administrator
> Vidya Academy of Science & Technology
> Thrissur,Kerala.
> Mob:9846303531
>
>


-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531


[pfSense Support] Squid traffic management Maximum download size not working

2011-01-07 Thread Shali K.R.
Dear all,

i added 51200 ( 50 MB) in Maximum download size of proxy  page  but its not
working i checked squid.conf file it shows
reply_body_max_size 52428800 allow all but i can download large files. is
there any way to configure it properly

-- 
Thanks & Regards

Shali K R
Server Administrator
Vidya Academy of Science & Technology
Thrissur,Kerala.
Mob:9846303531