Re: [pfSense-discussion] FTP Server Logging

2006-12-13 Thread Scott Ullrich
The only way to do this is turn off the FTP helper and port forward 21 and the dynamic port range defined on the FTP server. Scott On 12/13/06, Ben Flores <[EMAIL PROTECTED]> wrote: Is there a way to pass the original external source IP to the internal server? The only IP that shows in the lo

Re: [pfSense-discussion] help me

2006-11-23 Thread Scott Ullrich
You need to reinstall. Scott On 11/23/06, Carlos Julio Sánchez [ACC-SIS] <[EMAIL PROTECTED]> wrote: Hi! I upgrades pfsense RC2 to Release 1.0.1 and i have an error in the banner that say "[filter load]" there were error(s) loading the rules: pfctl: DIOCSETSTATUSIF the line in question reads [

Re: [pfSense-discussion] NAT on tun0 used with OpenVPN

2006-11-14 Thread Scott Ullrich
On 11/13/06, Stefan Tunsch <[EMAIL PROTECTED]> wrote: The problem is that push route options need to be established on both sides of the tunnel. If I establish them only on one side, routing does not happen. Can you please confirm me that there is no way to route traffic from a local network thr

Re: [pfSense-discussion] NAT on tun0 used with OpenVPN

2006-11-13 Thread Scott Ullrich
On 11/13/06, Stefan Tunsch <[EMAIL PROTECTED]> wrote: I have seen several posts in the forum stating that tun or tap interfaces should not be assigned to an interface of pfSense. That any/any firewall rules are automatically created when openvpn client establishes connection. And that no traffic

Re: [pfSense-discussion] NAT on tun0 used with OpenVPN

2006-11-13 Thread Scott Ullrich
Tun0 is no longer used. Everything is handled automatically. See the forum where this has been hashed out quite a bit since 1.0. On 11/13/06, Stefan Tunsch <[EMAIL PROTECTED]> wrote: The problem is that when I go to the assign option for interfaces the tap0 interface does NOT appear. I'm tr

Re: [pfSense-discussion] Hotspot accounting software

2006-11-08 Thread Scott Ullrich
On 11/8/06, Jason Brunk <[EMAIL PROTECTED]> wrote: Never used one before. Could be done I suppose. Any suggestions on a good one? I will give it a shot. Give http://asp2php.naken.cc/ a try. Scott

Re: [pfSense-discussion] Hotspot accounting software

2006-11-08 Thread Scott Ullrich
On 11/8/06, Jason Brunk <[EMAIL PROTECTED]> wrote: It won't run within the box itself. I wrote it in asp. But I could probably redo it in php. What about a ASP -> PHP code converter and just clean it up? Seems like it would be the path of least resistance but then again I have no used such

Re: [pfSense-discussion] Hotspot accounting software

2006-11-08 Thread Scott Ullrich
On 11/8/06, Jason Brunk <[EMAIL PROTECTED]> wrote: I built something awhile back. This was my setup. 1. multiple captive portals at different locations 2. a freeradius server for authentication 3. mod to freeradius to use mysql for storing info instead of flat text files 4. an entry into th

Re: [pfSense-discussion] purpose of VLAN on LAN interface?

2006-11-08 Thread Scott Ullrich
http://en.wikipedia.org/wiki/Vlan On 11/8/06, Jonathan Horne <[EMAIL PROTECTED]> wrote: i was wondering, what exactly is the purpose of the VLAN support on the LAN interface? can someone give me a quick example of how, why or where this might be used? thanks, jonathan

Re: [pfSense-discussion] keeping dev edition in-sync

2006-11-01 Thread Scott Ullrich
Yes: cd /home/pfsense/tools/builder_scripts/ ./cvsup_current On 11/1/06, Florent Parent <[EMAIL PROTECTED]> wrote: Is there a recommended method to keep a development install in-sync with pfsense repository? I currently have a 1.0 pfsense development installation and would like to upgrade to

Re: [pfSense-discussion] FTP helper change in 1.0.1?

2006-10-30 Thread Scott Ullrich
It is required. See the faq.pfsense.com entries. On 10/30/06, Benson, Chuck <[EMAIL PROTECTED]> wrote: I upgraded from 1.0 to 1.0.1 on a Soekris 4801 running from disk (not flash). From looking at the change list, I expected to remove the rules permitting access to 127.0.0.1. Without such a ru

Re: [pfSense-discussion] dnsmasq config file support

2006-10-18 Thread Scott Ullrich
On 10/18/06, Josh Stompro <[EMAIL PROTECTED]> wrote: I have come across a few situations where I have wanted to be able to add wildcard dns entries to a pfsense box. Dnsmasq does support this through it's config file, dnsmasq.conf with an entry like this. address=/proxy.dns.net/192.168.1.1 or on

Re: [pfSense-discussion] IDS yet?

2006-10-05 Thread Scott Ullrich
On 10/5/06, Jason J. Ellingson <[EMAIL PROTECTED]> wrote: Snort is kicking some great arse! I'm really loving it. Any way to get it to syslog? I see a lot of MS-SQL worms and such and would (for giggles) like to see all the snort alerts. System logs only shows the attacking IP and not what ki

Re: [pfSense-discussion] IDS yet?

2006-10-05 Thread Scott Ullrich
On 10/5/06, Chris Godwin <[EMAIL PROTECTED]> wrote: Am I correct about Snort being able to block as well as detect? Isn't this IDS/IPS, not just IDS. It is a delayed IDS. Generally an IPS hooks into the network stack directly and does not allow the traffic to pass through until its scanned.

Re: [pfSense-discussion] add support for per-user bandwidth limitation

2006-10-04 Thread Scott Ullrich
This is not feasible. Dummynet (which is what is used on the CP) is not compatible with PF due to a rdr bug of some sort. The problem has been brought up on the FreeBSD lists but nobody is interested in fixing it. Scott On 10/4/06, Jan-Patrick Perisse <[EMAIL PROTECTED]> wrote: Jonathan De G

Re: [pfSense-discussion] IDS yet?

2006-10-04 Thread Scott Ullrich
SH. Don't tell anyone this. ;) Scott On 10/4/06, Donald Pulsipher <[EMAIL PROTECTED]> wrote: The /pkg_mgr.php and related files are still in the www directory, I just pointed to them in my url. If I upgrade to RC3, is there an easy way to change the embedded image to support packages

Re: [pfSense-discussion] IDS yet?

2006-10-04 Thread Scott Ullrich
Snort requires 1.0-RC3. On 10/4/06, Donald Pulsipher <[EMAIL PROTECTED]> wrote: I tried to install the snort package but get an error. This was on my Soekris embedded box with the embedded version 1.0-RC1a. Here is the output : - Installation of snort FAILED! Downloading package configura

Re: [pfSense-discussion] IDS yet?

2006-10-03 Thread Scott Ullrich
On 9/20/06, Scott Ullrich <[EMAIL PROTECTED]> wrote: There is no IDS package with no intention on creating one. We are waiting for you all to step up to the plate. I somewhat lied about this. For some reason after seeing your post something clicked in my head and I spent a good 35 hour

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-03 Thread Scott Ullrich
On 10/3/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Am Dienstag, den 03.10.2006, 12:15 -0500 schrieb Bill Marquette: > I wonder if the package system is called far enough into the boot > process to shim this in after start_ftp_helpers is called. You might > be able to create a start script tha

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-03 Thread Scott Ullrich
On 10/3/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Hi Scott, hi Bill! Am Dienstag, den 03.10.2006, 10:05 -0400 schrieb Scott Ullrich: > With the afterfilterchangeshellcmd command. It is run every time a > filter change occurs as the last item. So you can override *ANYTHING*

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-03 Thread Scott Ullrich
On 10/3/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Am Dienstag, den 03.10.2006, 09:09 -0400 schrieb Scott Ullrich: > I am telling you how to solve your problem now, not long term. I > agree that the FTP system is a mess. Ok, fine, how? At the moment I start the ftpsesame pe

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-03 Thread Scott Ullrich
On 10/3/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Am Montag, den 02.10.2006, 19:10 -0400 schrieb Scott Ullrich: > You want to use: > > o afterfilterchangeshellcmd > > http://pfsense.blogspot.com/2005/06/new-xml-system-tag-introduced.html No, since system_s

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-02 Thread Scott Ullrich
You want to use: o afterfilterchangeshellcmd http://pfsense.blogspot.com/2005/06/new-xml-system-tag-introduced.html Scott On 10/2/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Am Sonntag, den 01.10.2006, 19:33 -0400 schrieb Scott Ullrich: > We already run ftp-sesame fo

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-01 Thread Scott Ullrich
We already run ftp-sesame for bridged interfaces. Scott On 10/1/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Hi Scott! No, CARP isn't the answer (I saw your posting in the FAQ already). We are using CARP for HA already (and that IMHO should be the only reason for anyone to use CARP at all).

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-01 Thread Scott Ullrich
Use CARP. On 10/1/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Hi Scott! Am Sonntag, den 01.10.2006, 21:09 +0200 schrieb Peter Allgeyer: > But that only works with port forwarding, right? What about an FTP > server listening on 62.13.14.55 instead of 10.0.0.180? Ok, I can try to > configure a

Re: [pfSense-discussion] FTP Helper on WAN - bug?

2006-10-01 Thread Scott Ullrich
On 10/1/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: Hi all! I do know of that problem since RC1 (possibly the first version I tried it). It hasn't been fixed in 1.0-SNAPSHOT-09-27-06. Since there are some tweaks with it I wanted to discuss about it before writing a bug report. The main proble

Re: [pfSense-discussion] Tutorial - configuring the captive portal with the integrated user manager

2006-09-28 Thread Scott Ullrich
On 9/28/06, Richard Davis <[EMAIL PROTECTED]> wrote: I was looking at the pfSense tutorial section and tried to connect to "configuring the captive portal with the integrated user manager ". All I got was dead links. Does anybody know if this is a good tutorial and if it is where can I get it?

Re: [pfSense-discussion] IDS yet?

2006-09-20 Thread Scott Ullrich
On 9/20/06, Sam Newnam <[EMAIL PROTECTED]> wrote: I've read a couple places but couldn't find a clear answer to whether SQUID or another intrusion diction system had been integrated yet. I found those screen shots where it showed the package manager but then read where its being re-written. Anywa

Re: [pfSense-discussion] Nat reflection

2006-09-20 Thread Scott Ullrich
On 9/20/06, Chris Godwin <[EMAIL PROTECTED]> wrote: I have several 1:1 nat mappings (replacing a pix). How do I get nat reflection to work. There's a check box that disables it but I do not have it checked. Also I've noticed that there is a note under the checkbox that say it only works for portf

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: When at work tomorrow I'll forward you the xml directly. If the system is crashing, chances are the xml will be incomplete. Please double check before sending or send over the raw information. Thanks

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
Oh, and I should add that you need to be using the latest snapshot. On 9/18/06, Scott Ullrich <[EMAIL PROTECTED]> wrote: On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: > Still get a panic after trying to add more than 4 vips. Then my box gets > thrown into an infinite fs

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: Still get a panic after trying to add more than 4 vips. Then my box gets thrown into an infinite fsck and panic. Took single user mode to recover. It really shouldn't. What are the IP's that you are adding and what adv skew, vhid, did you use

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: Really? I just downloaded the newest RC2 today. I'll try it. What constitutes a invalid configuration? No, you need a newer snapshot: http://www.pfsense.com/~sullrich/1.0-SNAPSHOT-09-12-06/ Not reusing the vhid, adding an ip that is outside

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: You've got to be kidding me. Hahahaha. All works and is good. Thanks. Cannot wait till carp doesn't kernel panic bsd. It shouldnt panic any longer. We added input validation code to prevent invalid configurations. Scott

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: The test was setting a proxy arp or other type ip and simply pinging it. In the case where my behind is in a mess of hornets (work) I'm simply using a laptop, switch and pfsense machine. In the other case (home) I'm also very simply using a cabl

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: I'm sorry I thought you said Crisco? The popular gear that generally has a bridge on the front as its logo. Either way clear the arp cache on whatever equipment you have. Reboot the modem if it's a cable modem, etc.

Re: [pfSense-discussion] Proxy arp

2006-09-18 Thread Scott Ullrich
On 9/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: I cannot get proxy arp to work, nor can I get VIP's to work as type other. Carp vip's work but when I add more than a few I get a kernel panic. Can anyone point me in the right direction to posts either here or in the forum on this issue so tha

Re: [pfSense-discussion] OpenVPN auth-ldap plugin?

2006-09-07 Thread Scott Ullrich
On 9/7/06, Nathan Osborne <[EMAIL PROTECTED]> wrote: The auth-ldap plugin for OpenVPN looks very interesting. Has anyone taken a look at this for inclusion in pfSense? Authentication against Active Directory seems like a key feature that could help OpenVPN to replace PPTP once and for all. htt

Re: [pfSense-discussion] pfSense and TTL (time to live) = 1

2006-09-04 Thread Scott Ullrich
On 9/4/06, Georgi Petrov <[EMAIL PROTECTED]> wrote: Hello everybody, I've sent this feature request to the m0n0wall mailing list, so it's a copy-paste. Everything written can be applied to pfSense as well! Here in Bulgaria we love m0n0wall and many people use it for home routing purposes. Our

Re: [pfSense-discussion] Dynamic DNS - no password encryption

2006-08-29 Thread Scott Ullrich
On 8/29/06, DarkFoon <[EMAIL PROTECTED]> wrote: I was looking through my XML configuration recently, and I noticed that my Dynamic DNS password is not encrypted like the PFsense password is. It seems to me that this is a rather important password and should be encrypted (if possible). http://fa

Re: [pfSense-discussion] Hamachi and PFSense

2006-08-18 Thread Scott Ullrich
On 8/18/06, Chris Godwin <[EMAIL PROTECTED]> wrote: Hello All, My name is Chris. I use Hamachi which is supposed to be a zero conf vpn solution. I am having this problem: when creating a 1:1 bimap from my wan's interface to my local pc I can use hamachi fine… I can connect to the hamachi s

Re: [pfSense-discussion] FreeBSD LSI Logic fixes for VMware

2006-08-17 Thread Scott Ullrich
On 8/16/06, Dmitry Sorokin <[EMAIL PROTECTED]> wrote: I'm not sure how you did that, but ESX Server doesn't support IDE Hard Drives (neither physical nor virtual). So your VM with IDE Virtual disk just wouldn't run on ESX Server (it's not FreeBSD related, just any OS). Maybe you moved the VM to G

Re: [pfSense-discussion] source-hash and sticky-address in pf pools

2006-08-17 Thread Scott Ullrich
On 8/17/06, Heath Henderson <[EMAIL PROTECTED]> wrote: Thanks, I might hit you up for that script when I get to it. I have a DSL/Cable modem setup(2 WAN) 1 DMZ and 1 LAN. I am getting ready to setup. I haven't worked with this before, and the routing tables are a bit confusing the first time t

Re: [pfSense-discussion] source-hash and sticky-address in pf pools

2006-08-17 Thread Scott Ullrich
On 8/17/06, Bill Marquette <[EMAIL PROTECTED]> wrote: slbd isn't used for gateway balancing, just for monitoring the gateways. The sticky patches that Scott committed (not me) were for server load balancing. My apologies, I thought he was talking about incoming load balancing.

Re: [pfSense-discussion] source-hash and sticky-address in pf pools

2006-08-17 Thread Scott Ullrich
On 8/17/06, Raja Subramanian <[EMAIL PROTECTED]> wrote: Hi, I have a pfSense box with 5 wan links, 1 wan and 1 dmz and the load balancing and policy based routing in pfSense is simply fantastic. The one missing feature that I would like to see, is the ability to specify the source-hash or stick

Re: [pfSense-discussion] FreeBSD LSI Logic fixes for VMware

2006-08-16 Thread Scott Ullrich
Interesting. We merged what we thought was all of the fixes from FreeBSD current but they where not working. I'll look into this further as w really want ESX supported for pfSense. On 8/16/06, Dmitry Sorokin <[EMAIL PROTECTED]> wrote: Hi All, First, thanks a lot for a GREAT product. pfSense

Re: [pfSense-discussion] Problem with ipsec

2006-08-09 Thread Scott Ullrich
On 8/9/06, Carlos Julio Sánchez [ACC-SIS] <[EMAIL PROTECTED]> wrote: Hello! anybody can help me please? I have an error when I set up vpn with ipsec, my computer A have pfsense and my computer B have Centos(Linux) In the ipsec logs I have: racoon: ERROR: failed to get sainfo. racoon:

Re: [pfSense-discussion] ipv6 stuff

2006-08-07 Thread Scott Ullrich
On 8/3/06, Nick Buraglio <[EMAIL PROTECTED]> wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Is there an easy way to get the pfsense gui to see a gif interface that I create manually? I'm working on some v6 stuff via a public v6 delegation (and a tunnel) and want to be able to use the gui

Re: [pfSense-discussion] xorp

2006-08-02 Thread Scott Ullrich
On 3/6/06, Scott Ullrich <[EMAIL PROTECTED]> wrote: You would need to start from ground 0 with this. Its meant to be a router and does not have PF, etc. Nor does it have CARP, nor does it have insert another feature here. XORP is a great project but to "integrate" it wou

Re: [pfSense-discussion] Limiting access through table

2006-07-27 Thread Scott Ullrich
On 7/26/06, Peter Allgeyer <[EMAIL PROTECTED]> wrote: [snip] There's another table for , but it's not referenced anywhere in a ruleset. Don't know, if useful for anything, nor if it's a stub already for a general solution to SSH brute force attacks. This works with our ssh lockout utility that

Re: [pfSense-discussion] Multiwan and openvpn problems

2006-07-18 Thread Scott Ullrich
On 7/18/06, Carlos Julio Sánchez [ACC-SIS] <[EMAIL PROTECTED]> wrote: Thanks Scott. I explain what is my problem. I have 2 link to Internet, one link is for my openvpn and internet, and the other is only internet when I create the pool with the load balancer(my pool contains the 2 links). My op

Re: [pfSense-discussion] Multiwan and openvpn problems

2006-07-18 Thread Scott Ullrich
At this point I do not know. Fernando? On 7/18/06, Carlos Julio Sánchez [ACC-SIS] <[EMAIL PROTECTED]> wrote: Ok, this is my build time RELENG_1_SNAPSHOT-07-12-2006 built on Thu Jul 13 01:43:01 UTC 2006 -Original Message- From: Scott Ullrich [mailto:[EMAIL PROTECTED] Sent: T

Re: [pfSense-discussion] Multiwan and openvpn problems

2006-07-18 Thread Scott Ullrich
When you login to pfSense it will show a build time and version. What is it? On 7/18/06, Carlos Julio Sánchez [ACC-SIS] <[EMAIL PROTECTED]> wrote: I don´t understand your question, i am from Ecuador and my english is not very technical -Original Message- From: Scott Ullrich [

Re: [pfSense-discussion] Multiwan and openvpn problems

2006-07-18 Thread Scott Ullrich
What does your build time say? On 7/18/06, Carlos Julio Sánchez [ACC-SIS] <[EMAIL PROTECTED]> wrote: Hi Scott! I probe the snapshot and I am still having the same problem, please anybody can help me with this error -Original Message- From: Scott Ullrich [mailto:[EMAIL PROTECTED

Re: [pfSense-discussion] Multiwan and openvpn problems

2006-07-18 Thread Scott Ullrich
On 7/18/06, Carlos Julio Sánchez [ACC-SIS] <[EMAIL PROTECTED]> wrote: Thanks, but my destination subnet behind the openvpn is not balanced it have default, i create and activate a interface opt2(that is my tun0), I put a rule that permit all, when I probe my tunnel and that's ok, but when a res

Re: [pfSense-discussion] New Developer Edition

2006-07-13 Thread Scott Ullrich
New ISO's automatically install vmware entries and automatically bootstrap so the vmware editions are not really needed any longer. On 7/13/06, Tommaso Di Donato <[EMAIL PROTECTED]> wrote: Hi! Sorry.. I know that this is a very critical period (hackaton, RC1, and so on), but I'd like to know if

Re: [pfSense-discussion] Captive portal per user bandwitdh limiting

2006-07-05 Thread Scott Ullrich
Yep, sure does. On 7/5/06, Nick Buraglio <[EMAIL PROTECTED]> wrote: Does m0n0 still use dummynet for it's packet scheduling? I have not used it in years. nb On Jul 5, 2006, at 10:14 AM, Scott Ullrich wrote: > On 7/5/06, Jan-Patrick Perisse <[EMAIL PROTECTED]> wrote: &

Re: [pfSense-discussion] Captive portal per user bandwitdh limiting

2006-07-05 Thread Scott Ullrich
On 7/5/06, Jan-Patrick Perisse <[EMAIL PROTECTED]> wrote: I see that captive portal with per user bandwitdh limiting has been implemented in monowall 1.23b1. Has it been ported to pfsense? Is anyone planning to do it? Already done in -HEAD/CVS but will not be included in 1.0. No ETA, not usabl

Re: [pfSense-discussion] PFSense and Tables

2006-06-25 Thread Scott Ullrich
On 6/25/06, Forrest Aldrich <[EMAIL PROTECTED]> wrote: [snip] Is there any mechanism to communicate with the firewall via command-line. For example, if I redirect mail to another host, and on that host I monitor logs for abuse - can I issue a command from inside to the firewall to add an IP or /

[pfSense-discussion] Re: [pfSense Support] What happens if the soekris hardware is defective upon arrival? The Cortex Systems way.

2006-06-23 Thread Scott Ullrich
On 6/23/06, Jonathan Gonzalez <[EMAIL PROTECTED]> wrote: Hi group, just writting this short note to let you know how Cortex Systems - "your soekris provider" operate. I did a bank transfer for a soekris net4801-60 (256MB RAM) and other elements. When it arrived the hardware only recognizes 128M

Re: [pfSense-discussion] anti p2p block list integration?

2006-06-22 Thread Scott Ullrich
On 6/22/06, Andrew C Burnette <[EMAIL PROTECTED]> wrote: Hey guys, Personally, I think the available "themes" are just dandy! Even my non-techie wife navigates it with ease when 'comcast' has issues and I'm out of town :-) :) Onto actual subjects of interest perhaps. Any thoughts into integ

Re: [pfSense-discussion] artwork

2006-06-21 Thread Scott Ullrich
On 6/21/06, Eugen Leitl <[EMAIL PROTECTED]> wrote: Sorry, my FLOSS universe works different from yours. If I was a *BSD person and had the time I wouldn't have even brought it up. And with this, I'm out of this thread. (What *is* it with *BSD people?) More inflamatory comments. You really ar

Re: [pfSense-discussion] artwork

2006-06-21 Thread Scott Ullrich
On 6/21/06, Eugen Leitl <[EMAIL PROTECTED]> wrote: If you think I'm ever going to submit any ticket or recommend pfsense to anybody (I admit of having been guilty of this in the past) you're out of your fucking mind. Do us all a favor and just go away. Thanks.

Re: [pfSense-discussion] artwork

2006-06-21 Thread Scott Ullrich
On 6/21/06, Eugen Leitl <[EMAIL PROTECTED]> wrote: Bugs are not classified by clown noses. Bugs are classified by what users think are bugs. I can live with the current optics, but rest assured: if you think the current theme is superior, by objective criteria it's not (how about a poll?). Again,

Re: [pfSense-discussion] artwork

2006-06-21 Thread Scott Ullrich
On 6/21/06, Bill Marquette <[EMAIL PROTECTED]> wrote: That's kind of inflamatory, but change the theme to pfsense and you'll have the ugly old look back. It is indeed fnlamatory and I would go as far to say it is rude and a slap in the face to Holger, one of the people that have helped this pro

Re: [pfSense-discussion] artwork

2006-06-21 Thread Scott Ullrich
On 6/21/06, Eugen Leitl <[EMAIL PROTECTED]> wrote: I suggest to move back to default m0n0wall design and artwork. System -> Theme -> pfSense It is much superior in look and usability, imo. I would go so far to file this as a bug. Get real. Thats the silliest thing I have heard all week.

Re: [pfSense-discussion] Missing gzsig package

2006-06-14 Thread Scott Ullrich
On 6/14/06, Roberto Gordo Saez <[EMAIL PROTECTED]> wrote: Are the other ports in this directory required when I build pfSense from source? So far the only one missing that I've noticed is gzsig... That is the only one required. Everything else resides in tools/pfPorts if you need to recompile

Re: [pfSense-discussion] Missing gzsig package

2006-06-14 Thread Scott Ullrich
On 6/14/06, Roberto Gordo Saez <[EMAIL PROTECTED]> wrote: While hacking pfSense sources from CVS I've seen that gzsig is used to verify signatures. I know gzsig is on OpenBSD, but I can't find a package nor a port for FreeBSD. Is there an unofficial port anywhere, or I should use the OpenBSD sou

Re: Re[2]: [pfSense-discussion] P2P Blocker

2006-06-06 Thread Scott Ullrich
On 6/6/06, DarkFoon <[EMAIL PROTECTED]> wrote: I may have over looked it, but where in pfSense can you set the maximum number of states a workstation can have? I like that idea for P2P blocking. Firewall -> Rules -> Edit -> Advanced

Re: Re[2]: [pfSense-discussion] P2P Blocker

2006-06-06 Thread Scott Ullrich
On 6/6/06, Chris Noble <[EMAIL PROTECTED]> wrote: ===8<==Original message text=== >> > How about Bandwidth Arbitrator? Works very well for us, and is GPL. > http://sourceforge.net/projects/arbitrator/ > Kirk ===8<===End of original message text===

Re: [pfSense-discussion] Known PFsense Limits?

2006-06-06 Thread Scott Ullrich
Dejavu. I just saw this exact message on the m0n0wall with s/pfSense/m0n0wall/. On 6/6/06, Odette <[EMAIL PROTECTED]> wrote: Hi all, I need to substitute our production firewall, and I'd like to use PFsense which I've already successfully used for home or small office environments. The solut

Re: [pfSense-discussion] newbie questions concerning BETA4

2006-05-31 Thread Scott Ullrich
Thats a really good question and I wish that I knew the answer. If you don't get an answer here try the freebsd-mobile@ list. I very rarely run FreeBSD on a latpop :/ On 5/31/06, Marius Schrecker <[EMAIL PROTECTED]> wrote: Hi, I'm a BSD newbie with quite a lot of Linux experience.

Re: [pfSense-discussion] cant get the Developer's edition Iso anymore

2006-05-25 Thread Scott Ullrich
ftp://reflection.ncsa.uiuc.edu/pub/pfSense/downloads/developers/pfSense-Developers-04-18-2006.iso.gz On 5/25/06, Jeffrey Lim <[EMAIL PROTECTED]> wrote: hi guys, as per subject. Is there going to be a developer's editition iso released for 1.0 beta4? The 1.0 beta*3* developer's edition iso was a

Re: [pfSense-discussion] CF-IDE install help

2006-05-16 Thread Scott Ullrich
On 5/16/06, Angelo Turetta <[EMAIL PROTECTED]> wrote: And what about the case in original post? He has installed the full version from CD-ROM to a CF (used as a hard disk). I'm confident that such a setup results in a platform setting of 'pfsense'. If I later change the platform to 'embedded', ca

Re: [pfSense-discussion] CF-IDE install help

2006-05-16 Thread Scott Ullrich
On 5/16/06, Angelo Turetta <[EMAIL PROTECTED]> wrote: Lars Rasmussen wrote: I think you have to change the 'platform' type to 'embedded' if you use a CF as boot media. The 'pfsense' type is mounting the hard disk RW, and you risk burning your CF. I don't know if the embedded config can be run wi

Re: [pfSense-discussion] xmlrpc_client.inc on /usr/local?

2006-05-16 Thread Scott Ullrich
Fixed. Thanks! On 5/10/06, Roberto Gordo Saez <[EMAIL PROTECTED]> wrote: Looking at the CVS sources, I was wondering why is the file xmlrpc_client.inc located on /usr/local. Shouldn't it be on /etc/inc?

Re: [pfSense-discussion] broken http interface install..

2006-05-16 Thread Scott Ullrich
On 5/16/06, Gregory Machin <[EMAIL PROTECTED]> wrote: Hi Lookis like I did the imposible and broke the web interface .. here is the error i'm getting ... Notice: Object of class PEAR_Error could not be converted to int in /etc/inc/xmlparse.inc on line 135 XML error: No pfsense object found! U

Re: [pfSense-discussion] Captive portal bandwidth limiting

2006-05-04 Thread Scott Ullrich
On 5/4/06, Christian Gerlitz <[EMAIL PROTECTED]> wrote: Post a bounty in the forum, I will join in with $100! I (and many other I think) am waiting patiently for a per user traffic shaping and in combination with captive it would be realy cool to... I would suggest offering this money to Jonath

Re: [pfSense-discussion] Captive portal bandwidth limiting

2006-05-04 Thread Scott Ullrich
On 5/4/06, Jan-Patrick Perisse <[EMAIL PROTECTED]> wrote: Technically, it would be possible to get use the same trigger that adds a firewall rule to let the user through the gateway when he authenticates to setup a CBQ rule for it. Would it be difficult to implement within pfsense? Difficult?

Re: [pfSense-discussion] Captive portal bandwidth limiting

2006-05-04 Thread Scott Ullrich
On 5/4/06, Jan-Patrick Perisse <[EMAIL PROTECTED]> wrote: Is someone planning of implementing bandwidth limiting into the captive portal so that each user can have its bandwidth defined? Not unless m0n0wall does it. All of the captive portal magic is happening in the m0n0wall developers circl

Re: [pfSense-discussion] Problem While Sync setting

2006-05-04 Thread Scott Ullrich
On 5/4/06, Ispánovits Imre <[EMAIL PROTECTED]> wrote: I have also experienced this, and in that case it was caused by some non-ascii characters in the description field. (like in Márcio) Removing them solved my problem. Best regards Imre It could also be a username / password mismatch. The goo

Re: [pfSense-discussion] No altq support on linitx.com appliances? Also, plug for packaging on embedded version.

2006-05-02 Thread Scott Ullrich
We where missing the RE driver in our is_altq_capable() routine. This is now fixed and will be included in beta4. On 5/2/06, Chris Buechler <[EMAIL PROTECTED]> wrote: Rainer Duffner wrote: > I think the latest-generation RealTek's are not that bad - I may be > wrong, because I avoid them like t

Re: [pfSense-discussion] No altq support on linitx.com appliances? Also, plug for packaging on embedded version.

2006-05-02 Thread Scott Ullrich
On 5/2/06, Carl Youngblood <[EMAIL PROTECTED]> wrote: I am new to pfsense and have a question and a suggestion. I just installed pfsense on a brand new appliance that we bought from linitx.com, found here: http://linitx.com/product_info.php?cPath=4&products_id=909&osCsid=9be4eef80f6c2fa682ad294

Re: [pfSense-discussion] Vmware Tools and pfSense

2006-04-26 Thread Scott Ullrich
Try the em1000 interfaces instead of lnc. On 4/26/06, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote: > > == > > Date: Mon, 24 Apr 2006 11:10:52 -0500 > > From: "Bill Marquette" <[EMAIL PROTECTED]> > > To: discussion@pfsense.com > > Subject: Re: [pfSense-discussion] Vmware Too

Re: [pfSense-discussion] VMware developers' edition, vs Developer ISO

2006-04-25 Thread Scott Ullrich
On 4/25/06, Jeffrey Lim <[EMAIL PROTECTED]> wrote: > On 4/26/06, Scott Ullrich <[EMAIL PROTECTED]> wrote: > > All the developers edition > > vmware developers' edition, u mean? Yes, sorry.

Re: [pfSense-discussion] VMware developers' edition, vs Developer ISO

2006-04-25 Thread Scott Ullrich
All the developers edition contains is a full bootstrapped dev environment with VMWare modifications. All of the mods and changes are now built into the ISO installer so it somewhat renders this version useless. On 4/24/06, Jeffrey Lim <[EMAIL PROTECTED]> wrote: > hi, folks, i'm just wondering,

Re: [pfSense-discussion] Packages installation without direct Internet connection

2006-04-24 Thread Scott Ullrich
Sorry, not at this time. It requires a connection at time of install. 1.1 was supposed to address this but the person working on the functionality is now gone so I am not sure what will happen in the future in this regard. On 4/24/06, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote: > Hello, > > I'

Re: [pfSense-discussion] pfSense themes and new Nifty update

2006-03-23 Thread Scott Ullrich
s something good in it, make version 1 do the same? ;) > > > On 3/23/06, Scott Ullrich <[EMAIL PROTECTED] > wrote: > > Big problem. 1st version was not GPL: > > > > http://pro.html.it/esempio/nifty/ > > > > New version is... This is not going in. > &g

Re: [pfSense-discussion] pfSense themes and new Nifty update

2006-03-23 Thread Scott Ullrich
Big problem. 1st version was not GPL: http://pro.html.it/esempio/nifty/ New version is... This is not going in. On 3/23/06, Rajkumar S <[EMAIL PROTECTED]> wrote: > Rajkumar S wrote: > > I am trying to change some pfSense pages to new use the new nifty and if > > it works well, and if there ar

Re: [pfSense-discussion] PPTP

2006-03-16 Thread Scott Ullrich
. > > thanks. > A > > - Original Message - > From: "Scott Ullrich" <[EMAIL PROTECTED]> > To: > Sent: Thursday, March 16, 2006 10:53 AM > Subject: Re: [pfSense-discussion] PPTP > > > Not sure which one it is. Whatever m0n0wall uses, we u

Re: [pfSense-discussion] [QUESTION] How to package a software distrubution?

2006-03-16 Thread Scott Ullrich
On 3/16/06, Daniel S. Haischt <[EMAIL PROTECTED]> wrote: > Another question which is related to the above notice... > > Say I do want a DSPAM package that is compiled against PostgreSQL > but the official FreeBSD package uses MySQL. Am I in that case > required to create my own DSPAM package using

Re: [pfSense-discussion] [QUESTION] How to package a software distrubution?

2006-03-16 Thread Scott Ullrich
On 3/16/06, Daniel S. Haischt <[EMAIL PROTECTED]> wrote: > Scott Ullrich schrieb: > > > > These are freebsd package files. DSPAM should already be available > > so you shouldnt have to do anything but point the manifest at the > > package. > > I already

Re: [pfSense-discussion] PPTP

2006-03-16 Thread Scott Ullrich
Not sure which one it is. Whatever m0n0wall uses, we use. Scott On 3/16/06, DarkFoon <[EMAIL PROTECTED]> wrote: > > I was wondering what authentication method is used by the PPTP server in > pfsense: MSCHAP-v2 or EAP-TLS? > > Where can I find more information about the PPTP implmentation used b

Re: [pfSense-discussion] [QUESTION] How to package a software distrubution?

2006-03-16 Thread Scott Ullrich
On 3/15/06, Daniel S. Haischt <[EMAIL PROTECTED]> wrote: > Hello, > > I am trying to create a DSPAM package for DSPAM. It's quite easy > to figure out how to compose a web interface using some arbitrary > XML files. > > Tho I do have some understanding issues if it comes to figure out > > * what s

Re: [pfSense-discussion] Incoming load balancing with passive ftp

2006-03-15 Thread Scott Ullrich
Load balancing FTP is most likely not going to work very well do to the nature of how FTP works in pfSense. Sorry! On 3/15/06, Daniel Leaberry <[EMAIL PROTECTED]> wrote: > I would like to incoming load balance ftp traffic. When I go to Services > -> Load balancer and try to create a pool or a vir

Re: [pfSense-discussion] First bug of beta 2?

2006-03-11 Thread Scott Ullrich
While this may or may not fix your proble, there is a newer version available that includes a lot of recent fixes in FreeBSD. Please give this a try: http://www.pfsense.com/~sullrich/RELENG_1_SNAPSHOT_03-10-2006/ Scott On 3/11/06, DarkFoon <[EMAIL PROTECTED]> wrote: > I'm experiencing some str

Re: [pfSense-discussion] Re: [Spam SpamAssassin=3,07] Re: [pfSense-discussion] Everything else sucks

2006-03-11 Thread Scott Ullrich
rquette" <[EMAIL PROTECTED]> > To: > Sent: Saturday, March 11, 2006 5:07 PM > Subject: [Spam SpamAssassin=3,07] Re: [pfSense-discussion] Everything else > sucks > > > "Now with better traffic shaping". Many thanks go to our new dev. > Leon on the fin

Re: [pfSense-discussion] Everything else sucks

2006-03-10 Thread Scott Ullrich
Fresh out of the oven: http://www.pfsense.com/~sullrich/RELENG_1_SNAPSHOT_03-10-2006/ On 3/11/06, Randy B <[EMAIL PROTECTED]> wrote: > I've spent the last month making a grand tour of the firewall world - > tried everything from IPCop to Smoothwall, a fully-licensed PIX-515E > from work to m0n0w

Re: [pfSense-discussion] XML pasrse error ?

2006-03-07 Thread Scott Ullrich
I have not seen this error on the index page. Please take a screenshot. On 3/7/06, Gregory Machin <[EMAIL PROTECTED]> wrote: > Hi > this error comes up when in try to open the index page > XML error: No pfsense object found! > which xml file is it talking about ? > > -- > Gregory Machin > [EMAIL P

Re: [pfSense-discussion] vmware workstation + no interface

2006-03-07 Thread Scott Ullrich
What!? On 3/7/06, Gregory Machin <[EMAIL PROTECTED]> wrote: > Hi > I'm using vmware workstation, (VMware Workstation 5.5.1 build-19175 for > Linux), with pfSense Beta2 running from the iso. It does not want to > acnolage the > > -- > Gregory Machin > [EMAIL PROTECTED] > [EMAIL PROTECTED] > www.

<    1   2   3   4   5   >