Re: [pfSense] Small form factor pfsense box

2015-08-11 Thread Mehma Sarja
My 6 year old Alix SFF box from Netgate is still my firewall and has proven to be the best value for my money. They, pfSense, continue to support it and I have not had to buy multiple cheapo machines during these years. On Mon, Aug 3, 2015 at 2:57 AM, Jim Thompson wrote: > Thank you. > > These:

[pfSense] Power Glitch Took CF Card in Alix Down - Experience

2015-07-22 Thread Mehma Sarja
It took me 2 days to crawl back from a 5 second power glitch which happened recently because the CF card in my Netgate Alix machine crashed hard. Apparently the card got corrupted; cleaned it off and put a fresh image back on it. That's the good news. Even better, is that I bothered. I have a choi

Re: [pfSense] Dashboard Source

2015-06-11 Thread Mehma Sarja
Thanks Chris ___ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold

[pfSense] Dashboard Source

2015-06-11 Thread Mehma Sarja
Hi all, If available open source, can someone point me to the source directory for the pfs dashboard? Yudhvir ___ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold

Re: [pfSense] pfSense Hardware Sizing Captive Portal Usage

2015-05-27 Thread Mehma Sarja
In my experience at home, Windows users consume up to a couple of thousand states streaming Indian soap operas. Whereas korean soap opera streaming on Mac books take a tenth of that with adblock. I guess my point is state count depends upon what your users are doing. Yudhvir _

Re: [pfSense] bacula-client 7.0.5 on pfsense 2.2

2015-02-08 Thread Mehma Sarja
1. Another thing to compare the version of your dir and fd to see if they are close enough. old fd and new dir do not mix. old dir and new fd are ok unless they versions are too far apart. 2. The /usr/pbi/bacula-i386/local/etc/bacula/bacula-fd.conf - check to see if the name password matches w

Re: [pfSense] New guy to Pfsense needs advice

2014-09-08 Thread Mehma Sarja
I'd go with an application based on DPI. pf is perfect for such a project. Look at audiblemagic.com 's copysense applianceas to what can be accomplished. Mehma On Mon, Sep 8, 2014 at 7:14 PM, Hamdan wrote: > I'm computer networking & information security > > Dan > > Sent from my iPhone > > On S

Re: [pfSense] Difference between APU4 and APU1C4

2014-07-23 Thread Mehma Sarja
Cool down BOTH of you. The IT community is filled with such tempers. Stop acting like kids. What do you want Ryan, a timeout? Yudhvir ___ List mailing list List@lists.pfsense.org https://lists.pfsense.org/mailman/listinfo/list

Re: [pfSense] Disable antispoofing on an interface

2014-07-17 Thread Mehma Sarja
Post your logs. Is this behavior the same from either LAN? Is this setup virgin, meaning did it work with older pfSense versions and is now misbehaving or is this a fresh setup? Obviously the IPsec/UDP link should be simplified and tested to isolate the problem. You can also test the setup on diff

Re: [pfSense] apu.4c silently dies

2014-05-19 Thread Mehma Sarja
Many roads lead to ... gut says SSD - I'd try running off CD first. On Mon, May 19, 2014 at 10:15 PM, mayak wrote: > hi all, > > i have a new apu.4c with a Kingston SSD > > unit will run sometimes for days, or sometimes for several hours, before > becoming unresponsive: > > - no mac response fr

Re: [pfSense] My son is able to bypass my captivate portal

2014-05-11 Thread Mehma Sarja
My Samsung Chromebook bypasses my router/OpenDNS because it has it's own DNS entries. Yudhvir > Basically it takes a DNS call the first time and goes elsewhere. then it > corrects itself. If he’s got a different DNS set up then either CP does not > work or, potentially, it could be bypassed. >

Re: [pfSense] Problems with pfsense on ProfitBrick

2014-04-14 Thread Mehma Sarja
If your intent is to get help from this group, you may want to supply more information. Unless security concerns prevent you from doing so. In which case, I can guess there is a device you are trying to install on. I can also imagine the device having, or needing one or more Ethernet ports - depend

[pfSense] Version 2.1.2 - Thanks for the UNPRECEDENTED Level of Support

2014-04-10 Thread Mehma Sarja
Thanks go out to Chris, Jim and the whole pfSense team for what must be back breaking work coming on the heels of the 2.1.1 release! This kind of commitment speaks volumes for the quality of products coming out of Netgate. Yudhvir ___ List mailing list L

[pfSense] FreeBSD on Rockchip

2013-10-30 Thread Mehma Sarja
Just though it might be of some interest to the group. http://radxa.com/2013/10/18/freebsd-11-0-is-booting-on-radxa-rock/ Mehma ___ List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman/listinfo/list

Re: [pfSense] NSA: Is pfSense infiltrated by "big brother" NSA or others?

2013-10-09 Thread Mehma Sarja
Dear Worried user, Since pfSense is opensource, please check the code and report back if there are any backdoors or nasty stuff in there. Thanks for being a conscientious user and not wanting to shift work onto others. Mehma On Wed, Oct 9, 2013 at 7:20 AM, Thinker Rix wrote: > Dear pfsens

Re: [pfSense] NETGATE FW-7535 pfSense 2.0.2-RELEASE OpenVPN Data Corruption

2013-09-30 Thread Mehma Sarja
Jim, Netgate has a solid reputation for quality stuff and I happen to be a happy customer. On occasion when I've called with technical questions, your support has been very good. Enough for me to recommend your company and products... and support. Therefore, I find your "starting" tone a bit defe

Re: [pfSense] Optimal Setup

2013-09-19 Thread Mehma Sarja
Joseph, Have you tried pinging to 8.8.8.8 from your wan and lan ports? If that works, have you tried pinging to yahoo..com off those ports? This might be a DNS issue. See if you can use the setup wizard to get online and build your rules from there. Your's is a simple setup and the pfsense book i

Re: [pfSense] pfSense 2.1-RELEASE and Gold Subscription Now Available!

2013-09-15 Thread Mehma Sarja
Here in California, auto update worked like a charm on my home Alix embedded system. Went from 203 to 210 on 15 sept 2013 around noon. Yudhvir On Sun, Sep 15, 2013 at 11:52 AM, Christian Borchert wrote: > Thanks everyone for all the work! > --Original Message-- > From: Chris Buechler >

Re: [pfSense] SIP / OpenSIPS issues

2013-06-24 Thread Mehma Sarja
I'm no pf sleuth, but I'd try the packet capture with firewall rules in effect and without. Then do a diff between those 2 pcap files. Something may jump out at you. But I can sense, as in pfSense, you've already done that. Yudhvir On Mon, Jun 24, 2013 at 7:01 AM, Carlos Cruz wrote: > Hi.. I've

Re: [pfSense] Best practice for SSD installs

2013-06-08 Thread Mehma Sarja
I've also had bad luck with SSDs on a Supermicro Atom. If you have access to the hardware, SSD is not a bad option. On Sat, Jun 8, 2013 at 11:17 AM, Aaron C. de Bruyn wrote: > Just a note of personal experience. I've deployed ~20 pfSense firewalls > that had SSDs (both cheap and rated 'good' fr

[pfSense] Cleaning up /cf/conf/config.xml Reduced Memory Useage by 10%

2013-05-11 Thread Mehma Sarja
Attempting to configure LDAP authentication under System/User Manager, I successfully hosed up my firewall and brought the web GUI to it's knees. The firewall kept working flawlessly. Changing the config file via ssh did not improve the situation. The attempt was to remove the LDAP server setting

Re: [pfSense] Full Backup/Restore for pfSense

2013-05-04 Thread Mehma Sarja
dd is fine unless you have a running database, like with Snort. You'd have to employ some sort of a dump and then dd. On Sat, May 4, 2013 at 11:15 AM, Mehma Sarja wrote: > This is the perfect opportunity for *someone* to write one. > > > On Sat, May 4, 2013 at 8:17 AM, Od

Re: [pfSense] Full Backup/Restore for pfSense

2013-05-04 Thread Mehma Sarja
This is the perfect opportunity for *someone* to write one. On Sat, May 4, 2013 at 8:17 AM, Odhiambo Washington wrote: > Hi Jim, > > Diagnostics - Backup/Restore only handles configuration backup. I am > talking about the BSD dump/restore for the whole disk - if that elaborates > my needs. > > >

Re: [pfSense] FreeRadius2 - Need a simple Working Configuration

2013-03-11 Thread Mehma Sarja
On 3/5/13 10:46 AM, Nachtfalke wrote: Visit this link and read the documentation. http://doc.pfsense.org/index.php/FreeRADIUS_2.x_package Von: list-boun...@lists.pfsense.org [mailto:list-boun...@lists.pfsense.org] Im Auftrag von Mehma Sarja Gesendet: Dienstag, 5. März 2013 12:33 An: pfSense

[pfSense] FreeRadius2 - Need a simple Working Configuration

2013-03-05 Thread Mehma Sarja
Would anyone like to share a working, simple configuration? I'm trying to use it for a sshd server on the LAN. Mehma ___ List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman/listinfo/list

[pfSense] Requesting Speaker for Silicon Valley Linux User Group (SVLUG) Monthly Meeting

2012-11-20 Thread Mehma Sarja
Hi, My name is Yudhvir and I am the Speaker Coordinator for the Silicon Valley Linux User Group(SVLUG). We would like a talk about pfSense at one of our monthly meetings in Mountain View, CA. We meet monthly, 1st Wednesday evenings, 7-9 PM, at Symantec's Vcafe room, 350 Ellis Street, Mountai

[pfSense] Port Forward Question

2012-08-06 Thread Mehma Sarja
Want to forward WAN url-a:50 to LAN ip-a:80 andWAN url-a:60 to LAN ip-b:80 There is a dated post which says it cannot be done. Maybe it is do-able now? ___ List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman/l

Re: [pfSense] Anyone here used Netgate hardware for home use?

2012-05-04 Thread Mehma Sarja
On 5/4/12 3:58 PM, Gé Weijers wrote: configuration has given me no problems whatsoever. I use a 2GB industrial SLC CompactFlash card, I don't trust the ones Netgate sends out in their kit. A home m1n1wall firewall 2E 2D2 with both 1.2.3 and now 2.0.1 and been using it for about 3 years. Works

Re: [pfSense] Quick Thanks from a Happy user

2012-04-25 Thread Mehma Sarja
On 4/25/12 4:29 AM, Christian Neumann wrote: Hi everybody, I just wanted to share how glad we are that pfSense exists. Usually people mostly share problems, but this time I just wanted to highlight what we have been able to achieve with a little bit of customization. Please let me know if thi

[pfSense] pf versus Juniper

2012-04-23 Thread Mehma Sarja
I don't mean to start a comparison war here. However, we are a *BSD shop looking to offer security services. The support part of the company has lots of FreeBSD experience and not surprisingly, Juniper firewalls. My question is how similar and different are the two as far as features and perfo

Re: [pfSense] Huawei in May

2012-04-21 Thread Mehma Sarja
On 4/21/12 12:43 PM, Odhiambo Washington wrote: On Sat, Apr 21, 2012 at 19:35, Mehma Sarja <mailto:mehmasa...@gmail.com>> wrote: I am having an issue getting a Huawei 3G+ GSM USB(MF192 HSPA) modem to work on either a pf 2.1 box. I'd like to be able to ssh in.

[pfSense] Huawei in May

2012-04-21 Thread Mehma Sarja
I am having an issue getting a Huawei 3G+ GSM USB(MF192 HSPA) modem to work on either a pf 2.1 box. I'd like to be able to ssh in. The location's Internet is via a Dlink DIR-412 router hosting a Huawei USB modem(huawei cdma ec122). The double NATting is making for a very effective firewall and

Re: [pfSense] pfSense appliance recommendation?

2012-04-01 Thread Mehma Sarja
On 4/1/12 4:06 PM, Luke Jaeger wrote: helping someone spec a new router for a small business network, currently 10 users (more in future, hopefully) - it needs to be a 'set it and forget it' solution so I thought about a pfSense appliance. Anyone have an opinion about a particular make/model?

Re: [pfSense] What's are highest speeds your setup has seen?

2012-03-02 Thread Mehma Sarja
On 3/2/12 1:25 PM, Sean Cavanaugh wrote: Perhaps if you posted what type of scenario you are looking to implement, others can reply with what they built to handle the load. I am thinking of a RFP from an un-named country with current BW of 85 Gbps. They are looking for a system to handle 100

[pfSense] What's are highest speeds your setup has seen?

2012-03-02 Thread Mehma Sarja
Curious to know the speeds and what the setup looks like. Mehma ___ List mailing list List@lists.pfsense.org http://lists.pfsense.org/mailman/listinfo/list

Re: [pfSense] Orange 3G+ USB Dongle

2012-02-05 Thread Mehma Sarja
will work. I'll try it today at some point and let you know. It can save you some few thousands KES. So, take this matter closer to the solution for the benefit of Mehma Sarja & others.. Thanks! Washington for making time and putting in the effort. I have taken time to run t

Re: [pfSense] Orange 3G+ USB Dongle

2012-02-03 Thread Mehma Sarja
On 2/3/12 6:56 AM, Seth Mos wrote: Try this, connect the 3g dongle, then reboot the device and try to access it again. I have a ZTE modem that does not release the cdrom device until after it is rebooted or I press save on the 3G wan interface again. So it doesn't work on cold boot, but it does

Re: [pfSense] Orange 3G+ USB Dongle

2012-02-03 Thread Mehma Sarja
On 2/2/12 11:09 PM, Odhiambo Washington wrote: On Fri, Feb 3, 2012 at 00:44, Mehma Sarja <mehmasa...@gmail.com> wrote: On 2/2/12 12:44 PM, Odhiambo Washington

Re: [pfSense] Orange 3G+ USB Dongle

2012-02-02 Thread Mehma Sarja
On 2/2/12 12:44 PM, Odhiambo Washington wrote: First tell me, which modem is this? ZTE MF192 or the older one? I cannot remember the model. Having the modem bundled with DIR-412 means these guys (Orange) already disabled the virtual CD-ROM, right? That is the only way it would work with the

Re: [pfSense] Orange 3G+ USB Dongle

2012-02-02 Thread Mehma Sarja
On 2/2/12 12:44 PM, Odhiambo Washington wrote: On Thu, Feb 2, 2012 at 21:01, Mehma Sarja <mehmasa...@gmail.com> wrote: I'm trying to remotely setup an Orange 3G+ usb modem and am wondering if we can di

Re: [pfSense] Orange 3G+ USB Dongle

2012-02-02 Thread Mehma Sarja
On 2/2/12 12:44 PM, Odhiambo Washington wrote: On Thu, Feb 2, 2012 at 21:01, Mehma Sarja <mailto:mehmasa...@gmail.com>> wrote: I'm trying to remotely setup an Orange 3G+ usb modem and am wondering if we can directly plug it into a pfSense's USB port and start

[pfSense] Orange 3G+ USB Dongle

2012-02-02 Thread Mehma Sarja
I'm trying to remotely setup an Orange 3G+ usb modem and am wondering if we can directly plug it into a pfSense's USB port and start configuring it? By remotely, I mean rural Kenya. It came bundled with this Dlink DIR-412 router and negotiating SSH port-forward through 3 devices(3G modem, route

Re: [pfSense] Odd circumstances

2011-11-29 Thread Mehma Sarja
On 11/29/11 10:06 AM, Ryan Rodrigue wrote: You are correct that these are on different subnets. Your method of double nattng should work, but isn't the bast way to do things. Double natting usually causes problems. It's ugly and best avoidable if possible, and it makes troubleshooting NAT-b

Re: [pfSense] Odd circumstances

2011-11-29 Thread Mehma Sarja
On 11/29/11 5:49 AM, Ryan Rodrigue wrote: What is the IP for the WAN interface on the PFsense box? Is it in the same subnet for the LAN? If it is, change the lan subnet to something else. Routers route based on subnets. If both of its interfaces are the same, it doesn't know how to route. I a

Re: [pfSense] Odd circumstances

2011-11-28 Thread Mehma Sarja
On 11/16/11 6:56 AM, Vick Khera wrote: On Tue, Nov 15, 2011 at 7:22 PM, Mehmasarja wrote: Finally, I notice the pfSense appliance responds very slowly and suspect there may be a hardware issue. I'll check it's dmesg. did you try re-installing pfSense to clean out any stuff that the bad packag

Re: [pfSense] Hardware recommendation

2011-10-22 Thread Mehma Sarja
netgate.com is where I got mine: http://store.netgate.com/Desktop-Kits-C82.aspx and their tech support people are helpful. Would NOT recommend built-in wifi. Hang any old wifi router off the firewall/router and it is easy to replace once it starts going unstable on you. Mehma === _