Re: [pfSense] Release 2.2 - Wake on Lan different behaviour on alix and apu

2015-01-27 Thread Ryan Coleman
It wouldn't hurt to include a link... -- Ryan Coleman On Jan 27, 2015, at 05:57, Jim Thompson j...@smallworks.com wrote: open a bug report. On Jan 27, 2015, at 3:51 AM, WolfSec-Support supp...@wolfsec.ch wrote: Hello, ALIX issue: I can confirm this. In WebGUI on Alix the WoL is

[pfSense] CVE-2015-0235 - Uncertain if pfSense/OpenBSD is vulnerable?

2015-01-27 Thread Wolf Noble
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0235 http://www.openwall.com/lists/oss-security/2015/01/27/9 a glibc bug in gethostbyname allows for a remote execution exploit... I don't see a mention of exposure, or lack thereof, for openbsd (and thus pfSense). Hoping someone on the

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Moshe Katz
On Tue, Jan 27, 2015 at 12:29 PM, Adam Thompson athom...@athompso.net wrote: On 2015-01-27 11:22 AM, Wolf Noble wrote: Hi Adam, Thanks for the response. Yeah, I know about SNMP. it's a route I might go, but wanted to see what else was available. Strangely enough, I did actually look on

Re: [pfSense] CVE-2015-0235 - Uncertain if pfSense/OpenBSD is vulnerable?

2015-01-27 Thread Wolf Noble
Hi Walter, Thanks for that. Bah. I'd mistakenly had it in my head pfSense was based on OpenBSD... Nasure why. I work in Linux land most of the day, and often forget where the line in the sand gets drawn as far as what GNU tools are relevant to BSD. Thanks for setting me straight.

Re: [pfSense] Release 2.2 - Wake on Lan different behaviour on alix and apu

2015-01-27 Thread Chris Buechler
On Tue, Jan 27, 2015 at 2:10 AM, Chris Suter chris.su...@loewenfels.ch wrote: Hello, Upgrade worked fine on multiple hardware installations (all on alix / apu). The only thing I've realised is, that WOL via the Web is not working on the Alix Plattform, on my APU it seems working well.

Re: [pfSense] CVE-2015-0235 - Uncertain if pfSense/OpenBSD is vulnerable?

2015-01-27 Thread Walter Parker
First, pfSense is from FreeBSD, not OpenBSD. Second xBSD uses libc by default, not glibc. glibc is a GNU/Linux port of the libc from UNIX systems. I wouldn't expect to see recent glibc errors in xBSD, as there are separate code bases at the system level. Walter On Tue, Jan 27, 2015 at 10:45 AM,

Re: [pfSense] CVE-2015-0235 - Uncertain if pfSense/OpenBSD is vulnerable?

2015-01-27 Thread Ryan Coleman
We are all brothers from different mothers… but a shared grandmother (Unix). :) On Jan 27, 2015, at 1:24 PM, Wolf Noble w...@wolfspyre.com wrote: Hi Walter, Thanks for that. Bah. I'd mistakenly had it in my head pfSense was based on OpenBSD... Nasure why. I work in Linux land most

Re: [pfSense] Release 2.2 - Wake on Lan different behaviour on alix and apu

2015-01-27 Thread WolfSec-Support
Hello, ALIX issue: I can confirm this. In WebGUI on Alix the WoL is not working any more I can confirm: wake vr0 e0:cb:4e:xx.yy.zz is working on command line May also other platforms are affected ? I have actuall only some ALIXes which use WoL feature fore some clients Best Regards, Stephan

[pfSense] Release 2.2 - Wake on Lan different behaviour on alix and apu

2015-01-27 Thread Chris Suter
Hello, Upgrade worked fine on multiple hardware installations (all on alix / apu). The only thing I've realised is, that WOL via the Web is not working on the Alix Plattform, on my APU it seems working well. If I issue the commands: wake vr1 :xx:xx: wol -i xx.xx.xx.255 xx:xx:xx:.. pc seems

[pfSense] Release 2.2 - more problems than success by upgrades / looping packet installations / sshd is not working any more / crashes on X5550 CPU

2015-01-27 Thread WolfSec-Support
hello all, we have general problems with v2.2 I tried to update 13 devices, and only some worked fine (1 ALIX), and one virtual machine (afterwards crashes see below) Most we had problems, e.g: - looping packet installations without ending - reboot is not solving it - packets cron / squid /

Re: [pfSense] Release 2.2 - more problems than success by upgrades / looping packet installations / sshd is not working any more / crashes on X5550 CPU

2015-01-27 Thread Chris Buechler
On Tue, Jan 27, 2015 at 4:07 AM, WolfSec-Support supp...@wolfsec.ch wrote: hello all, we have general problems with v2.2 I tried to update 13 devices, and only some worked fine (1 ALIX), and one virtual machine (afterwards crashes see below) Most we had problems, e.g: - looping packet

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Wolf Noble
Great! That's honestly more what I was hoping to get at/to Is there likely to be an API to interact with pfSense? For my specific use-case, a simple authtoken-based metrics API framework would be awesome, but I could see a lot of benefit for automation for a more interactive API. Admittedly,

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Aaron C. de Bruyn
Forget a dashboard for the moment. A decent API would go a long ways for writing automation tools. I've already recommended to the opnsense guys that they add on an API. If I only knew a bit more about packaging, I'd make my own fork with the tools. ;) -A On Tue, Jan 27, 2015 at 11:15 AM,

Re: [pfSense] Release 2.2 - more problems than success by upgrades / looping packet installations / sshd is not working any more / crashes on X5550 CPU

2015-01-27 Thread Dr. Peter Voigt
On Tue, 27 Jan 2015 11:07:00 +0100 WolfSec-Support supp...@wolfsec.ch wrote: hello all, we have general problems with v2.2 I tried to update 13 devices, and only some worked fine (1 ALIX), and one virtual machine (afterwards crashes see below) Most we had problems, e.g: - looping

[pfSense] hi every body

2015-01-27 Thread mohsen Abbaspour
hi every body i want to use pfsense in large scale network these service are in my favorite to use in the network and i need them VPN , IDPS , Firewall , Monitoring and log traffic i dont know possible problems aboutusing pfsense on large scale network there are

Re: [pfSense] Release 2.2 - Wake on Lan different behaviour on alix and apu

2015-01-27 Thread Jim Thompson
open a bug report. On Jan 27, 2015, at 3:51 AM, WolfSec-Support supp...@wolfsec.ch wrote: Hello, ALIX issue: I can confirm this. In WebGUI on Alix the WoL is not working any more I can confirm: wake vr0 e0:cb:4e:xx.yy.zz is working on command line May also other platforms are

Re: [pfSense] Soekris 6501-50/SSD upgrade failure

2015-01-27 Thread Erik Anderson
I should note that in addition to the symptoms I mentioned earlier that followed the 2.2.0 upgrade, there were several messages like this on the console: cannot get uid for user 'root' ...and similar. Unfortunately I don't have the full context of those logs. Thank you- Erik On Tue, Jan 27,

[pfSense] squidGuard Stopped

2015-01-27 Thread A Mohan Rao
Hello, After i upgrade pfsense from 2.1.5 to 2.2-i386 squidGuard service is stopped i already uninstall then install with 5 times still its not started please give any idea. Also i m not get package squid3-dev on 2.2 Thanks mohan ___ pfSense

Re: [pfSense] Release 2.2 - Wake on Lan different behaviour on alix and apu

2015-01-27 Thread Jeremy Porter
https://redmine.pfsense.org/ On 1/27/2015 6:46 AM, Ryan Coleman wrote: It wouldn't hurt to include a link... -- Ryan Coleman On Jan 27, 2015, at 05:57, Jim Thompson j...@smallworks.com mailto:j...@smallworks.com wrote: open a bug report. On Jan 27, 2015, at 3:51 AM, WolfSec-Support

[pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Wolf Noble
I'm sure this has been asked, but I've not found anything in the few minutes I poked around on the forums/google. I'm looking to pull some metrics from my pfSense firewall to display on a dashboard. I was wondering what my options are for API-esque access, or curl-able graph images with

Re: [pfSense] Release 2.2 - more problems than success by upgrades / looping packet installations / sshd is not working any more / crashes on X5550 CPU

2015-01-27 Thread Compdoc
Do have more of you had similar problems ? I upgraded one firewall and everything works fine except that I use the squid and HAVP packages together, but HAVP is broken. Running commands like clamd and freshclam don't work. I don't know how to file a bug report so I created a topic in the

Re: [pfSense] hi every body

2015-01-27 Thread Adam Thompson
pfSense can do that, 600 users is OK. Up to 1gbps is OK on almost any server-grade hardware. VPN is built in. IDS/IPS requires installation and configuration of the Snort add-on package. Firewall is built in. Monitoring and logging are built in, but may or may not meet your needs. pfSense can

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Adam Thompson
SNMP support exists, although not everything is available that way. Otherwise the doc wiki has a page on authenticating automated web requests - RTFM. -Adam On January 27, 2015 10:55:00 AM CST, Wolf Noble w...@wolfspyre.com wrote: I'm sure this has been asked, but I've not found anything in the

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Adam Thompson
On 2015-01-27 11:22 AM, Wolf Noble wrote: Hi Adam, Thanks for the response. Yeah, I know about SNMP. it's a route I might go, but wanted to see what else was available. Strangely enough, I did actually look on the docs site before posting. but I didn't find the page you referenced. That's

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Wolf Noble
Hi Adam, Thanks for the response. Yeah, I know about SNMP. it's a route I might go, but wanted to see what else was available. Strangely enough, I did actually look on the docs site before posting. but I didn't find the page you referenced. That's why I posted here. Would you mind

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread James Records
Not sure if this is exactly what your asking but I have a dashboard setup for pf logs, I made a reddit post about it a while back: http://www.reddit.com/r/PFSENSE/comments/2rlm8h/pfsense_docker_elk/ I also use nagios (which i was going to try to package in docker as well when I get around to it)

Re: [pfSense] polling pfsense status for a combined dashboard

2015-01-27 Thread Yehuda Katz
I am also using NRPE (with Icinga). I have Icinga creating the reports which I include elsewhere. The information you get is limited to what Icinga or other NRPE client can pull. - Y On Tue, Jan 27, 2015 at 12:15 PM, James Records james.reco...@gmail.com wrote: Not sure if this is exactly what

[pfSense] Soekris 6501-50/SSD upgrade failure

2015-01-27 Thread Erik Anderson
I just attempted a self-upgrade from 2.1.5-RELEASE to 2.2.0-RELEASE on a Soekris 6501-50. Storage is a 64GB Sandisk SSD with the full install on it (not NanoBSD). After the upgrade, the router rebooted as expected and then came *partially* back up, as in the interfaces were configured and it