Re: [pfSense Support] IPsec, Multi-WAN Session Setup Problems. (2.0 RC1)

2011-05-19 Thread Seth Mos
I had one of those moments yesterday that I can only terminate on the OPT interface, but not the WAN. I will check too. Regards, Seth Op 20 mei 2011, om 01:39 heeft Adam Thompson het volgende geschreven: > I'm wondering if I'm seeing something closely-related: I also have a VIP > (CARP) setup

Re: [pfSense Support] IPsec, Multi-WAN Session Setup Problems. (2.0 RC1)

2011-05-19 Thread Adam Thompson
I'm wondering if I'm seeing something closely-related: I also have a VIP (CARP) setup where IPSec will not work properly. I never thought to examine the actual IPs that closely, though... I'll see off I can replicate the problem tomorrow. -Adam Joshua Schmidlkofer wrote: >Dear Support, > >

[pfSense Support] IPsec, Multi-WAN Session Setup Problems. (2.0 RC1)

2011-05-19 Thread Joshua Schmidlkofer
Dear Support, I have multiple WANs at one site, and it I have a few different places which I am connecting tunnels to. It appears that creating new connections to the end points is a little unpredictable. I can't seem to control which interface the initial contact packets comes from. I don't

Re: [pfSense Support] Pfsense, OpenVPN and multicast

2011-05-19 Thread Evgeny Yurchenko
On 11-05-18 04:53 PM, Kurt Buff wrote: On Wed, May 18, 2011 at 13:37, Evgeny Yurchenko wrote: On 11-05-17 01:38 PM, Kurt Buff wrote: On Tue, May 17, 2011 at 10:18,wrote: All, We have a subnet with a public IP address fronted by a pfsense (1.2.3R) box with routing and OpenVPN enabled an

Re: [pfSense Support] Remote Admin of pfSense via ssh

2011-05-19 Thread Frank Heydlauf
Hi Mehma, On Thu, May 19, 2011 at 09:52:01AM -0700, Mehma Sarja wrote: ... > Unfortunately the area is not wired for the Internet. The only thing > they get for 100 - 200 USD per month is sporadic wimax. so you need an *offline* remote management. What about using a second pfsense-box at your s

Re: [pfSense Support] Remote Admin of pfSense via ssh

2011-05-19 Thread Mehma Sarja
On 5/19/11 4:06 AM, Per von Zweigbergk wrote: On 2011-05-19 12:41, Mehma Sarja wrote: Never had the need nor opportunity to admin a box remotely - so this question may be as trivial as ssh in and maintain pf.conf and config.xml. Any experiences? Trying to maintain config.xml over SSH is not very

Re: [pfSense Support] Recommendation for 10Gb NIC on pfSense

2011-05-19 Thread Michael Bubb
I have seen reference to Myricom NICs. We are about to try an: MYM-10G-PCIE2-8B2-2S+E. On Thu, May 19, 2011 at 05:18, Frank Richter wrote: > Dear all, > > I need to build a firewall with 10Gbit NIC's for WAN and LAN. > I experienced  strange behavior with Intel 10Gb Server adapter on pfsense >

Re: [pfSense Support] Remote Admin of pfSense via ssh

2011-05-19 Thread Per von Zweigbergk
On 2011-05-19 12:41, Mehma Sarja wrote: Never had the need nor opportunity to admin a box remotely - so this question may be as trivial as ssh in and maintain pf.conf and config.xml. Any experiences? Trying to maintain config.xml over SSH is not very fun, although it is possible. I vaguely remem

Re: [pfSense Support] Remote Admin of pfSense via ssh

2011-05-19 Thread Carlos Vicente
Mehma, I'm not sure of what is your issue here, but one thing is for sure: if you want to admin a box remotely, it would be higly advisable to do that through a VPN. Leaving the SSH port open on the WAN interface is not a good security policy, even if you change the port 22 to another one. Hope t

Re: [pfSense Support] Recommendation for 10Gb NIC on pfSense

2011-05-19 Thread A Mohan Rao
anybody explain what is server side settings for open vpn on pfsense 2.0 On Thu, May 19, 2011 at 2:48 PM, Frank Richter wrote: > Dear all, > > I need to build a firewall with 10Gbit NIC's for WAN and LAN. > I experienced strange behavior with Intel 10Gb Server adapter on pfsense > 2.0-RC1 (bot

[pfSense Support] Remote Admin of pfSense via ssh

2011-05-19 Thread Mehma Sarja
Never had the need nor opportunity to admin a box remotely - so this question may be as trivial as ssh in and maintain pf.conf and config.xml. Any experiences? - To unsubscribe, e-mail: support-unsubscr...@pfsense.com For addition

[pfSense Support] Recommendation for 10Gb NIC on pfSense

2011-05-19 Thread Frank Richter
Dear all, I need to build a firewall with 10Gbit NIC's for WAN and LAN. I experienced strange behavior with Intel 10Gb Server adapter on pfsense 2.0-RC1 (both i386/amd64) Snapshot from 5.5.2011. I have VLAN's configured on the LAN side and the system crashes with "Fatal Trap 12" during boot

Re: [pfSense Support] OpenVPN - Server IP / Redundancy

2011-05-19 Thread A Mohan Rao
can provide video open vpn pfsense Thanks Mohan On Thu, May 19, 2011 at 2:06 PM, J. Echter wrote: > Am 19.05.2011 10:36, schrieb A Mohan Rao: > > right now i m using Endian firewall vpn server its working fine but its > firewall and content filtering was not satisfactory working that's w

Re: [pfSense Support] OpenVPN - Server IP / Redundancy

2011-05-19 Thread J. Echter
Am 19.05.2011 10:36, schrieb A Mohan Rao: right now i m using Endian firewall vpn server its working fine but its firewall and content filtering was not satisfactory working that's why i move to pfsense and i highly impress with pfsense 2.0 and 1.2.3, but its open vpn how works i m not able to

Re: [pfSense Support] OpenVPN - Server IP / Redundancy

2011-05-19 Thread A Mohan Rao
right now i m using Endian firewall vpn server its working fine but its firewall and content filtering was not satisfactory working that's why i move to pfsense and i highly impress with pfsense 2.0 and 1.2.3, but its open vpn how works i m not able to find out any body can provide step step config

Re: [pfSense Support] OpenVPN - Server IP / Redundancy

2011-05-19 Thread Dominic
Hi Hans, Apologies, yes I do mean on the client side. I will modify my configuration with this. The fail over is not a huge concern at this stage but is definitely good to know. Thank you very much! On Thu, May 19, 2011 at 10:09 AM, Hans Maes wrote: > On 05/19/2011 09:57 AM, Dominic wrote: >>

Re: [pfSense Support] OpenVPN - Server IP / Redundancy

2011-05-19 Thread Hans Maes
On 05/19/2011 09:57 AM, Dominic wrote: Hi, I'd like to query if there is a way to have multiple server addresses in an OpenVPN setup? I assume you mean an OpenVPN client connection ? I would like to add redundancy in the event of my provider going down, I can then connect to one of the other

[pfSense Support] OpenVPN - Server IP / Redundancy

2011-05-19 Thread Dominic
Hi, I'd like to query if there is a way to have multiple server addresses in an OpenVPN setup? I would like to add redundancy in the event of my provider going down, I can then connect to one of the other provider's IP's (I have 3 WAN interfaces on the OpenVPN server machine). Is this possible o