Re: [Efw-user] Problem with green network traffic...any suggestions?

2009-10-27 Thread McJerry
a UDP so I don't see QoS being an issue on this network at this point. Is EFW 2.2 capable of reading the QoS packet tagging? McJerry wrote: > > Customer has a point-to-point fiber lan on 10.0.0.0/24 subnet between two > locations. At the main location, the fiber to ethernet conn

Re: [Efw-user] Problem with green network traffic...any suggestions?

2009-10-23 Thread McJerry
compdoc, I thought about that yesterday while the Esi technician was onsite and he wouldn't give me a straight answer. He's being hush hush about the system and I'm having difficulty finding information about it. Very few manuals I can find. The ports I'm dealing with are TCP ports 59001 and 59

[Efw-user] Problem with green network traffic...any suggestions?

2009-10-23 Thread McJerry
Customer has a point-to-point fiber lan on 10.0.0.0/24 subnet between two locations. At the main location, the fiber to ethernet connects to a 24 port switch. The internet fiber to ethernet connects to the WAN port (Red) interface with static public IP on the EFW box. The GREEN interface is ass

Re: [Efw-user] 2.3Rc1 port forwarding problems

2009-10-18 Thread McJerry
Yes, the internal servers and all workstations have the EFW box as the default gateway. As I mentioned in my previous posts, all works fine with EFW2.2 using same settings. Jorge Armando Medina-2 wrote: > > McJerry wrote: >> OK, so all I'm seeing at the community download

Re: [Efw-user] 2.3Rc1 port forwarding problems

2009-10-16 Thread McJerry
ports 5900 for VNC, port 1723 for VPN and port 25 for SMTP to an internal exchange server. All works fine on 2.2. compdoc wrote: > > Don't use 2.3rc1 - 2.3 has been released. What ports are you > forwarding? > > > -Original Message- > From: McJerry [mailt

[Efw-user] 2.3Rc1 port forwarding problems

2009-10-16 Thread McJerry
I've tried installing 2.3Rc1 twice now and it loads fine and routes traffic outbound and via system access rules just fine. I've added a few port forwarding rules to a couple of internal servers and it simply won't work. Am I missing something here or is does port forwarding require additional s

[Efw-user] Strange HTTP Proxy issue both 2.2rc2 and 2.2 28 May 09 release

2009-06-04 Thread McJerry
I've had efw 2.2rc2 running since its release and until today have had NO problems. I have it configured with multiple uplinks on red, green+blue+orange. Today, with 2.2rc2 running, client browsing became extremely slow and at times would time out. I tried disabling uplinks one at a time to rul

[Efw-user] block individual website access from one green IP

2008-09-23 Thread McJerry
EFW release 2.2.rc2 Green 192.168.0.0/24 Blue 10.1.0.0/24 Orange 192.168.4.0/24 Red with multiple uplinks (2 uplinks) HTTP proxy w/content filtering on HTTP proxy transparent HTTP proxy port 8080 I need to block access to xyz.com website for two systems on LAN 192.168.0.54 and 192.168.0.55 I ha

Re: [Efw-user] Re move Unknown Headers

2008-09-17 Thread McJerry
their programmers for more info, meanwhile, thanks for the tip on spamassassin. If other suggestions, please post thoughts... Thanks, Jerry McJerry wrote: > > Running Endian Firewall Community release 2.2.rc2 at customer site and one > of their vendors is asking we make sure tha

Re: [Efw-user] Re move Unknown Headers

2008-09-17 Thread McJerry
their programmers for more info, meanwhile, thanks for the tip on spamassassin. If other suggestions, please post thoughts... Thanks, Jerry McJerry wrote: > > Running Endian Firewall Community release 2.2.rc2 at customer site and one > of their vendors is asking we make sure tha

Re: [Efw-user] Re move Unknown Headers

2008-09-17 Thread McJerry
their programmers for more info, meanwhile, thanks for the tip on spamassassin. If other suggestions, please post thoughts... Thanks, Jerry McJerry wrote: > > Running Endian Firewall Community release 2.2.rc2 at customer site and one > of their vendors is asking we make sure tha

Re: [Efw-user] Re move Unknown Headers

2008-09-17 Thread McJerry
their programmers for more info, meanwhile, thanks for the tip on spamassassin. If other suggestions, please post thoughts... Thanks, Jerry McJerry wrote: > > Running Endian Firewall Community release 2.2.rc2 at customer site and one > of their vendors is asking we make sure tha

[Efw-user] Re move Unknown Headers

2008-09-17 Thread McJerry
Running Endian Firewall Community release 2.2.rc2 at customer site and one of their vendors is asking we make sure that "Remove unknown headers in the firewall is unchecked." Since this is likely a default setting for some commercial firewalls, what would be the equivilent action to take with EFW

Re: [Efw-user] Understanding Endian Load Balancing Feature

2008-08-24 Thread McJerry
I am experiencing similar but not exact problem with 2.2.rc2: NO VMWare... P4 2.0Ghz, 1GB Ram, 80GB IDE 5 Nics Green/Orange/Blue/Red(Main Uplink)/Red(2nd Uplink) 192.168.2.1/192.168.3.1/192.168.4.1/192.168.1.139/10.28.210.251 With Main Uplink and 2nd Uplink in Managed mode, unplugging Main Upl

[Efw-user] Proxy logs slow rendering

2008-07-29 Thread McJerry
What would cause proxy logs...specificaly smtp proxy logs to render slowly in the webgui? Same problem persists for IE and Firefox. Viewing one page of SMTP logs takes approximately 2 minutes. Using EFW 2.2RC2 -- View this message in context: http://www.nabble.com/Proxy-logs-slow-rendering-tp1

Re: [Efw-user] web server

2008-05-20 Thread McJerry
Can you be more specific as to what Web Server Software you are running on both web servers? (i.e. iis or apache?) As is my case: I have Domain1 dns pointing to my ip, Domain2 dns also pointing to my ip. Domain1 resides on iis7 server while Domain2 resides on apache2 server. All port 80 traffic

Re: [Efw-user] EFW 2.1.2 install in Windows server 2003 environment...

2008-05-20 Thread McJerry
Nothing special, just configure your routing rules as you would any other situation. While I do not use EFW presently in production, I am using IPCop to accomodate like setups to what you described. It works well and EFW worked well when we used it. Windows 2003 Server or Windows 2008 Server ar

[Efw-user] re placing IPCop and URLFilter addon

2008-05-16 Thread McJerry
I had to abandon EFW almost a year ago due to a customer's filtering needs and the ability of IPCop with the Copfilter and URLFilter addons. What would be the best approach to accomplishing the same functionality with efw-2.2rc1? URLFilter allows custom whitelist and addition of workstation's IP

[Efw-user] Problem with Clamav-0.91.1

2007-07-26 Thread McJerry
Is anyone having trouble with Clamav-0.91.1 and POP3 scanning? I upgraded with the latest packages and am having to reset the POP3 proxy scan. Email clients are unable to communicate with pop3 server. After downgrading to Clamav-0.90.3 I am not having this issue. Anyone else with same problem?

[Efw-user] VPN Question

2007-07-24 Thread McJerry
I have EFW 2.0 running at several locations. VPN Server running with one location as VPN Client. The Server location is 10.28.210.xx and the client location is 10.28.215.xx. VPN connection is fine and traffic is routing from client lan to server lan just fine. Server side LAN has a server runni

Re: [Efw-user] Thanks Jerry

2007-07-20 Thread McJerry
Should work no differently than having a router upstream with your ISP. My only concern would be if you have incoming ports forwarded to specific servers or IP's then you would have to forward a forward so to speak. But all should work. I had tested a similar setup here once and also had two su

Re: [Efw-user] Server sent forbidden Transfer-Encoding header

2007-04-30 Thread McJerry
See if this post answers you question and helps http://www.nabble.com/Havp-0.86-posted-tf3602461.html Bent Are Fikse-3 wrote: > > Thanks alot for the precise answer :-) > > -- > Bent, Norway > > > - > This SF.net email

[Efw-user] p3scan or clamav problem, suggestions?

2007-04-27 Thread McJerry
I have an internal server running a program called email2db. The program polls a pop3 server and parses the emails ini certain accounts based on triggers. The problem I am having is that when the pop3 email scanner is enabled on green, email2db can connect to the pop3 account and see how many me

Re: [Efw-user] problem with pop3 email efw 2.0

2007-02-05 Thread McJerry
Have enabled pop3 proxy again and will watch for errors in logs, will let you know when it happens again. Jerry McJerry wrote: > > Mike, > > Not sure where else to look, but the filtering the firewall log for P3SCAN > results in following: > > Time Chain Iface Prot

Re: [Efw-user] problem with pop3 email efw 2.0

2007-02-02 Thread McJerry
previous days and see no error. Where else would I need to look? Thanks, Jerry Mike Tremaine wrote: > > McJerry wrote: >> How much memory did you have before and after? >> This particular server has 1GB. Running free -m results: >> >> [EMAIL PROTECTED]:~ # free -m &g

Re: [Efw-user] problem with pop3 email efw 2.0

2007-02-02 Thread McJerry
/cache:186824 Swap: 2023 34 1989 Not sure if adding another 1GB will offer better results. What do you think? Jerry Esteban Ordóñez wrote: > > El Viernes, 2 de Febrero de 2007 10:35, McJerry escribió: >> >> on efw 2.0 production firewall

[Efw-user] problem with pop3 email efw 2.0

2007-02-02 Thread McJerry
on efw 2.0 production firewall i have pop3 proxy enabled with antivirus and antispan checked. everything works fine, spam messages are being tagged correctly for the most part. after 2 or 3 days, users are unable to access email accounts. outlook users get error...unable to access the pop3 mail se

Re: [Efw-user] help: efw 2.1 port forwarding not working

2007-01-13 Thread McJerry
Glad you got it working! Jerry Mircea Draghici wrote: > > Hi Jerry, > > thx for your answer. I reinstalled endian myself and stoped everything > just to make sure. In the end it turned out that it was a stupid mistake - > the destination machine had a different gateway set up on the LAN > in

Re: [Efw-user] help: efw 2.1 port forwarding not working

2007-01-12 Thread McJerry
Performed fresh install of efw 2.1 on development box today. Had no problems with port forwarding. Could you please advise what ports/applications you are attempting to forward. Have you made sure any software firewall on the destination machine is not blocking the ports you are forwarding. Re

[Efw-user] blocking proxy redirect sites

2006-12-18 Thread McJerry
What would be an acceptable solution for blocking proxy sites that allow users to browse sites even though they are blocked in the content filter. For example, I have pornography blocked and several sites listed that are not allowed; however, employees are still able to access these sites by firs

Re: [Efw-user] Outgoing Firewall Port Range

2006-12-14 Thread McJerry
ne is running on production system - but > you > can give it a try! > > regards, > mario > > > McJerry wrote: >> >> Is there a way to add a port range as opposed to creating a rule for > each >> single port? (i.e. 5800-5900 for VNC) I have a client who requir

[Efw-user] Outgoing Firewall Port Range

2006-12-13 Thread McJerry
Is there a way to add a port range as opposed to creating a rule for each single port? (i.e. 5800-5900 for VNC) I have a client who requires numerous ports in a range opened for a video multicast streaming from multiple locations. I am having to enter 12 different ports with varying TCP or UDP or

[Efw-user] EFW Captive Portal

2006-12-12 Thread McJerry
Is there any way we could implement a captive portal on the same EFW 2.0 box. Currently I have a RED and GREEN interface. If I add a BLUE Interface and install a Linksys WRT54GS wireless router would there be anyway to have the EFW box redirect redirect my wifi users to a captive portal page whe

Re: [Efw-user] Cant access Web interface

2006-10-31 Thread McJerry
Did you get problem resolved? After establishing Green link and successfully accessing browser interface, did you configure RED interface to use DHCP or static settings from your ISP? If so, cycle power to modem(internet) then set RED interface to use DHCP and obtain new IP lease. Then if prefe

Re: [Efw-user] Cannot access Web site

2006-10-31 Thread McJerry
Questions: Is it a DNS resolution error? Have you tried opening the site by using the sites IP address? When hooked to your first internet connection do you have your RED interface obtaining public IP address via DHCP or are you setting Static IP? When hooking to second internet connection is

Re: [Efw-user] HAVP 0.81 problems

2006-10-31 Thread McJerry
if you need me to test any other updates as I have two pc's running EFW community. Regards, Jerry Yayad wrote: > > Jerry, any trouble on your production EFW? > > > McJerry wrote: >> >> Mike, >> >> Thanks for the quick response!!! >> >>

Re: [Efw-user] HAVP 0.81 problems

2006-10-25 Thread McJerry
: > > McJerry wrote: >> The current 2.0 and 2.0 RESPIN ISO's contain 0.81 HAVP release which has >> confirmed bug reading headers. This causes some pages to become >> inaccessible. >> >> Are there any plans to release an rpm that will provide current HAVP >> re

[Efw-user] HAVP 0.81 problems

2006-10-24 Thread McJerry
The current 2.0 and 2.0 RESPIN ISO's contain 0.81 HAVP release which has confirmed bug reading headers. This causes some pages to become inaccessible. Are there any plans to release an rpm that will provide current HAVP release for EFW? How can I compile newer HAVP version for EFW myself? An