Re: [pfSense Support] blocking RFC1918 and bogons on 2nd WAN

2009-06-26 Thread Paul Mansfield
Chris Buechler wrote: > On Fri, Jun 12, 2009 at 9:10 AM, Paul > Mansfield wrote: >> suppose we have two WAN ports and have turned on the automatic RFC1918 >> and bogon blocking; you can see the grey-ed out rules on WAN1 interface. >> >> what's the best way to also do this on WAN2? in particular, ho

Re: [pfSense Support] Inbound load balancer performance under heavy load.

2009-06-26 Thread Paul Mansfield
we've also had problems with inbound load balancing which we thought was just crappy ISP - a small number of http connections would quietly fail, or take a very long time and then fail, so we ended up using haproxy instead; this on 1.2-release as well as 1.2.2. (note to people: please trim replies

Re: [pfSense Support] CARP and Bridging

2009-06-26 Thread Jim Pingle
Joseph Hardeman wrote: > One other question now that I think of it. > > Does CARP work between two firewalls that are running in full Bridge > mode, no NATing done at all, just port blocking on the WAN interface? > We have two firewalls and I want to make sure any states are kept intact > on the c

Re: [pfSense Support] blocking RFC1918 and bogons on 2nd WAN

2009-06-26 Thread Scott Ullrich
On Fri, Jun 26, 2009 at 7:19 AM, Paul Mansfield wrote: > I did notice in the config file for the WAN there's a "bogons" > attribute, if pondered copying it to WAN2, but was worried it would > destroy the universe or break pfSense? Not recommended. Scott --

Re: [pfSense Support] Inbound load balancer performance under heavy load.

2009-06-26 Thread Scott Ullrich
On Fri, Jun 26, 2009 at 8:07 AM, Paul Mansfield wrote: > we've also had problems with inbound load balancing which we thought was > just crappy ISP - a small number of http connections would quietly fail, > or take a very long time and then fail, so we ended up using haproxy > instead; this on 1.2-

[pfSense Support] pfsense lighttp and php services

2009-06-26 Thread ozan ucar
Hi Dear All, I need run a php file with zend guard 5 encode. Install zend optimize and change php.ini but reboot pfSense my configuration deleted : ( What should I do ? - To unsubscribe, e-mail: support-unsubscr...@pfsense.c

Re: [pfSense Support] pfsense lighttp and php services

2009-06-26 Thread Scott Ullrich
2009/6/26 ozan ucar : > Hi Dear All, > I need run a php file with zend guard 5 encode. > Install zend optimize and change php.ini but reboot pfSense my configuration > deleted : ( > > What should I do ? Don't do that. You will probably want to install another web server to use for whatever your

Re: [pfSense Support] Inbound load balancer performance under heavy load.

2009-06-26 Thread Scott Ullrich
On Fri, Jun 26, 2009 at 11:25 AM, Scott Ullrich wrote: > On Fri, Jun 26, 2009 at 8:07 AM, Paul > Mansfield wrote: >> we've also had problems with inbound load balancing which we thought was >> just crappy ISP - a small number of http connections would quietly fail, >> or take a very long time and t

[pfSense Support] Statically-defined DHCP clients with dynamic addressing not entered into DNS

2009-06-26 Thread Ian Levesque
Hi all, We're running DHCP and DNS on a pair of CARPed pfSense 1.2.1 boxen. Other than the fact that they don't sync DCHP entries, it's been working OK for us. However, we've currently got them configured to assign static IPs to specific MACs, and that's becoming difficult to manage. We'd