Re: [pfSense] PFS 2.3.1-RELEASE-p5 and Cisco 5520 IPSEC

2016-07-15 Thread Marc R. Meshurle Jr.
CFG] no IKE_SA named 'con2000' found Jul 16 00:05:53 charon: 15[CFG] received stroke: terminate 'con2000' Marc R. Meshurle, Jr. Sr. Engineer KatoTech (Division of Bullets & Bytes, Inc.) Exton, PA. 19341 610-280-3566 From: List on

[pfSense] PFS 2.3.1-RELEASE-p5 and Cisco 5520 IPSEC

2016-07-15 Thread Marc R. Meshurle Jr.
stay connected. Any thoughts? Marc R. Meshurle, Jr. Sr. Engineer KatoTech (Division of Bullets & Bytes, Inc.) Exton, PA. 19341 610-280-3566 ___ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold

Re: [pfSense] pfSense on vmware ESXi 6.0

2016-04-15 Thread Marc R. Meshurle Jr.
I've been running 2.x and up on ESXi 5.1 to 5.5 for years. No issues at all. Dedicated NIC for inbound traffic. I don't use CARP in my small networks. Works like a charm. -Original Message- From: List [mailto:list-boun...@lists.pfsense.org] On Behalf Of Olivier Mascia Sent: Thursday, Ap

[pfSense] Single IP - DMZ a single port

2015-06-06 Thread Marc R. Meshurle Jr.
Here's a question - I have a single IP with my ISP and want to take one TCP port and send it to a DMZ for access from the public WAN and internal LAN but the DMZ can't talk to the LAN, only the WAN port. Yes, I know I can call my ISP and get another IP, but it is for limited use and don't want t

[pfSense] Allow group of non-contiguous IP's to LDAP

2013-09-03 Thread Marc R. Meshurle Jr.
adding a SINGLE address for the source address in NAT/Port Forward and I need to add five different addresses to the list. Suggestions? Marc R. Meshurle, Jr. Senior Engineer/MCP Kato Tech (a division of 911 Computer Concepts Inc.) Exton, PA. 19341

Re: [pfSense] Virtual IP's and outbound NAT

2013-04-14 Thread Marc R. Meshurle Jr.
lect: Manual Outbound NAT rule generation (AON - Advanced Outbound NAT) I did nothing but set security in my vSwitch to promiscuous. That was set prior to this post. From: list-boun...@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org] On Behalf Of Marc R. Meshurle Jr. Sent: Monday

Re: [pfSense] Virtual IP's and outbound NAT

2013-04-14 Thread Marc R. Meshurle Jr.
Promiscuous Mode is set in the security options on the WAN NIC which is established in the vSwitch. What other settings need to be set? Subject: Re: [pfSense] Virtual IP's and outbound NAT >I have a PFS 2.02 running nicely on VMware 5.1. IT has only TWO NIC's >assigned. WAN NIC on the PFS is se

[pfSense] Virtual IP's and outbound NAT

2013-04-12 Thread Marc R. Meshurle Jr.
Good morning everyone, I have a PFS 2.02 running nicely on VMware 5.1. IT has only TWO NIC's assigned. WAN NIC on the PFS is set to accept promiscuous traffic. I have a block of 6 IP's that I have set up as virtual IP's in PFS. I've read every blog, post and news item that I can find to force sp

Re: [pfSense] PF Sense Appliance on VMWARE 5.0 ESX

2012-08-22 Thread Marc R. Meshurle Jr.
Thanks to the Forum - I found this fix: http://forum.pfsense.org/index.php?topic=43273.0;prev_next=next Try turning off polling from system --> advanced --> networking Took all CUP down to 0%. I'll take it. It's fixed and running great in the VM. Marc R. Meshurle, Jr. Sen

Re: [pfSense] PF Sense Appliance on VMWARE 5.0 ESX

2012-08-21 Thread Marc R. Meshurle Jr.
I also updated VM to ESXi 5 Build 768111 from build 623860 (Update 01) Marc R. Meshurle, Jr. Senior Engineer/MCP Kato Tech (a division of 911 Computer Concepts Inc.) Exton, PA. 19341 610-280-3566 610-280-7007 (fax) www.katotech.com   Click here for support from Marc Jr -Original Message

Re: [pfSense] PF Sense Appliance on VMWARE 5.0 ESX

2012-08-21 Thread Marc R. Meshurle Jr.
rming that the VM tools are running: $ ps ax|grep vmware 30579 ?? S 0:00.00 sh -c ps ax|grep vmware 30761 ?? R 0:00.00 sh -c ps ax|grep vmware 63096 ?? I 0:00.93 /usr/local/bin/vmtoolsd -c /usr/local/share/vmware-to Marc R. Meshurle, Jr. Senior Engineer/MCP Kato Tech (a divisi

Re: [pfSense] VM woes

2012-08-21 Thread Marc R. Meshurle Jr.
I'm set to kern.timecounter.choice: TSC(800) ACPI-fast(1000) HPET(900) i8254(0) dummy(-100) and still have a peaked CPU. Marc R. Meshurle, Jr. Senior Engineer/MCP Kato Tech (a division of 911 Computer Concepts Inc.) Exton, PA. 19341 610-280-3566 610-280-7007 (fax) www.katotech.com  

Re: [pfSense] PF Sense Appliance on VMWARE 5.0 ESX

2012-08-21 Thread Marc R. Meshurle Jr.
Oops - I had it started in safe mode. Here's the normal startup: kern.timecounter.choice: TSC(800) ACPI-fast(1000) HPET(900) i8254(0) dummy(-100) How can I change that? Marc R. Meshurle, Jr. Senior Engineer/MCP Kato Tech (a division of 911 Computer Concepts Inc.) Exton, PA. 19341 61

Re: [pfSense] PF Sense Appliance on VMWARE 5.0 ESX

2012-08-21 Thread Marc R. Meshurle Jr.
What command did you run to change the clock choices? I need to change the ACPI-fast. I got this result: kern.timecounter.choice: TSC(800) PIIX(0) i8254(0) dummy(-100) Marc R. Meshurle, Jr. Senior Engineer/MCP Kato Tech (a division of 911 Computer Concepts Inc.) Exton, PA. 19341 610-280

Re: [pfSense] PF Sense Appliance on VMWARE 5.0 ESX

2012-08-21 Thread Marc R. Meshurle Jr.
Open VMtools are installed and running nicely (beta version). I'll try the latest ESXi500-201207001 update to see of that clears up some of the CPU pegs. Marc R. Meshurle, Jr. Senior Engineer/MCP Kato Tech (a division of 911 Computer Concepts Inc.) Exton, PA. 19341 610-280-3566 610-280-7007

[pfSense] PF Sense Appliance on VMWARE 5.0 ESX

2012-08-17 Thread Marc R. Meshurle Jr.
ot. I reverted to the PRE hard drive install, and back to very minimal CPU usage. Any suggestions? Marc R. Meshurle, Jr. Senior Engineer/MCP Exton, PA. 19341 ___ List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman/listinfo/list

Re: [pfSense] Encryption domain?

2012-01-08 Thread Marc R. Meshurle Jr.
Stale, Can you email me off list your IPSEC setup between your PFS 2.0 and your Cisco? I have had a heck of a time configuring between the two. Thanks for your time! Marc Marc R. Meshurle, Jr. Owner/Senior Engineer/MCP Kato Technology Solutions, Inc. Exton, PA. 19341 610-280-3566 610-280-7007

Re: [pfSense] Problem with IPsec VPN

2012-01-08 Thread Marc R. Meshurle Jr.
PFS 2.0 has a new location for phase 2 setups. Make sure that you click the + sign and setup the phase 2 and make sure the check box is enabled. Marc R. Meshurle, Jr. Owner/Senior Engineer Kato Technology Solutions, Inc. -Original Message- From: list-boun...@lists.pfsense.org

[pfSense] PFSense 1.2.3 to Cisco IPSEC Problem

2011-10-20 Thread Marc R. Meshurle Jr.
gateway, or hangs inside the network when doing a trace route. Is there a setting issue here between the two VPN's? Here's a PDF of the current setup. http://www.katotech.com/files/Meshurle.pdf Marc R. Meshurle, Jr. Owner/Senior Engineer/MCP Kato Technology Solutions, Inc. Exton,

Re: [pfSense] Loopback Connection

2011-10-02 Thread Marc R. Meshurle Jr.
se.org [mailto:list-boun...@lists.pfsense.org] On Behalf Of Marc R. Meshurle Jr. Sent: Sunday, October 02, 2011 05:30 To: 'list@lists.pfsense.org' Subject: [pfSense] Loopback Connection I have a DDNS address and host a mail server behind the PFS 1.2.3 box. When inside on a Wi-Fi connec

Re: [pfSense] Loopback Connection

2011-10-02 Thread Marc R. Meshurle Jr.
.@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org] On Behalf Of Marc R. Meshurle Jr. Sent: Sunday, October 02, 2011 05:30 To: 'list@lists.pfsense.org' Subject: [pfSense] Loopback Connection I have a DDNS address and host a mail server behind the PFS 1.2.3 box. When inside on a W

[pfSense] Loopback Connection

2011-10-02 Thread Marc R. Meshurle Jr.
LAN client to see the DDNS address without making an internal DNS alias? Internal mail server is servername..local External DDNS address is .no-ip.org Mail is being sent from outside to the .no-ip.org for delivery Thanks! Marc R. Meshurle, Jr. Owner/Senior Engineer Kato Technology