[pfSense] pfSense VPN to Cisco (ASA 5520)

2012-05-02 Thread Eugen Leitl
I need to make terminate a VPN tunnel (users behind NAT) with above Cisco box. Parameters are ISAKMP Phase I preshared key AES128 SHA Group 2 Lifetime 28800 sec IPSEC Phase II AES 128 SHA Group 2 Perfect forwarding secrecy: No Lifetime 3600 sec Anyone terminating such IPsec tunnels to Cisco?

Re: [pfSense] pfSense VPN to Cisco (ASA 5520)

2012-05-02 Thread Eugen Leitl
On Wed, May 02, 2012 at 08:28:52AM -0400, Chris Buechler wrote: On Wed, May 2, 2012 at 8:25 AM, Eugen Leitl eu...@leitl.org wrote: I need to make terminate a VPN tunnel (users behind NAT) with above Cisco box. Parameters are ISAKMP Phase I preshared key AES128 SHA Group 2

[pfSense] VPN configuration for Blackberry devices

2012-05-02 Thread Robert Guerra
Would like to know if anyone has been able to successfully configure a Blackberry to connect to pfsense's IPSEC. If so, would you be so kind as to sharing the settings used . thanks robert -- R. Guerra Phone/Cell: +1 202-905-2081 Twitter: twitter.com/netfreedom Email: rgue...@privaterra.org

[pfSense] Vlan Trunk

2012-05-02 Thread steel max
Dear All, I am trying to implement a wireless network on my corporate environment using, Authentication by Domain Controller windows AD Radius on same Server as well with Pfsense Captive Portal! ***Thanks to you guys for the help, I have done that in my testing zone! *ABOUT My Corporate

Re: [pfSense] Vlan Trunk

2012-05-02 Thread Espen Johansen
What exactly is your question here? I don't see any issue implementing this. -lsf On Wed, May 2, 2012 at 7:08 PM, steel max steelmax11...@gmail.com wrote: Dear All, I am trying to implement a wireless network on my corporate environment using, Authentication by Domain Controller windows AD

Re: [pfSense] Vlan Trunk

2012-05-02 Thread Espen Johansen
With one exception, it seems you want to use the same vlan as both lan and wan (Vlan 10)??? On Wed, May 2, 2012 at 8:34 PM, Espen Johansen pfse...@gmail.com wrote: What exactly is your question here? I don't see any issue implementing this. -lsf On Wed, May 2, 2012 at 7:08 PM, steel max

Re: [pfSense] pfBlocker errors

2012-05-02 Thread Waugh G
On 05/01/2012 11:06 PM, k_o_l wrote: I'm getting the following errors after installing pfBlocker, I tried increasing the firewall maximum table size but still getting the errors, has anyone experience or has solution to this? There were error(s) loading the rules: /tmp/rules.debug:21:

Re: [pfSense] pfBlocker errors

2012-05-02 Thread k_o_l
From: list-boun...@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org] On Behalf Of Waugh G Sent: Wednesday, May 02, 2012 3:02 PM To: pfSense support and discussion Subject: Re: [pfSense] pfBlocker errors On 05/01/2012 11:06 PM, k_o_l wrote: I'm getting the following errors after

[pfSense] pfsense hardware for a proxy, 1U w/ 12 depth

2012-05-02 Thread Ugo Bellavance
Hi, I'm looking for hardware to replace an ASA unit that only allows 5 concurrent VPN connections for road warrior by a pfsense unit. However, I need to have a proxy on the server to have reports or logs on who does what on the internet, so I need a hard drive. Also, the physical space

Re: [pfSense] pfsense hardware for a proxy, 1U w/ 12 depth

2012-05-02 Thread Daniel Lloyd
I have 2x http://www.supermicro.com/products/system/1U/5015/SYS-5015A-EHF-D525.cfm. Should fit your depth limitation, I have yet to hit performance problems with it and know that others on the list use this system as well. On Wed, May 2, 2012 at 4:08 PM, Ugo Bellavance u...@lubik.ca wrote: Hi,

[pfSense] Hotel setup $$

2012-05-02 Thread Andrew @ ATMlogic.ca
Just wondering if some of you are willing to give me an idea what you charge for a pf setup for hotel wireless (or RV Park etc) I have done a few of them but really. I just charge whatever I think the market will bear ;-)(Sadly, in some cases I spend 4 hours setup, and pocket about

Re: [pfSense] Vlan Trunk

2012-05-02 Thread Abdullah Nihan
Espen thanks for your reply, that's correct I want I want to use Vlan10 to be WAN as well as LAN. Since I wrote about the scenario can you give me suggestions on how to do this? On 2 May 2012 23:37, Espen Johansen pfse...@gmail.com wrote: With one exception, it seems you want to use the same