Re: [pfSense] Dynamic DNS

2012-01-09 Thread RB
On Mon, Jan 9, 2012 at 08:11, newsgroups.ma...@stefanbaur.de newsgroups.ma...@stefanbaur.de wrote: Now, could anyone please tell me how the client built into pfSense 2.0.1 handles this? Will it only trigger on a changed WAN IP, or does it dial home every 5 minutes, no matter what? The behavior

Re: [pfSense] Dynamic DNS

2012-01-09 Thread RB
On Mon, Jan 9, 2012 at 11:55, newsgroups.ma...@stefanbaur.de newsgroups.ma...@stefanbaur.de wrote: And how about no-ip.com? I don't use no-ip.com, so I don't have any experimental data to back it up. That said, it's the same core client on pfSense (just checked the code), so you're going to see

Re: [pfSense] Problem with IPsec VPN

2012-01-09 Thread Jeremy Bennett
Brian, You hit the nail on the head. PFS key group at site one was set to ‘Off’. Needed to be ‘2’ Thank you everyone. Mahalo, Jeremy On Jan 8, 2012, at 4:15 PM, Marc R. Meshurle Jr. wrote: PFS 2.0 has a new location for phase 2 setups. Make sure that you click the + sign and setup the

[pfSense] IPSec behaviour in 2.0.1

2012-01-09 Thread Fuchs, Martin
Hi ! Today we played around with our CARP cluster and IPSec config. We had to change a tunnel from RSA to PSK :( so we deactivated the RSA-config and set up PSK. The tunnel had dynamic IP so the config was neary identical (same IP-nets, hostname, ...) only the key was different from RSA (of