Re: [pfSense Support] Outbound port forward

2011-09-07 Thread Adam Piasecki
This works, and works great. Combined with open dns, it's a great way of filtering domains. Adam On 9/6/2011 9:54 PM, Ryan Rodrigue wrote: What if you enabled DNS Forwarder and forwarded All DNS Request to PFsense. Ryan Rodrigue P.O. Box 4336 Chief Technical Manager Houma, LA 70361 A A R

[pfSense Support] PPTP Broken in latest AMD 2.0 Snapshots

2011-08-17 Thread Adam Piasecki
Same config works with i386, does not work with AMD.. PPTP clients on AMD can not send traffic over IPSEC Tunnels or traffic out to the internet. PPTP to the local LAN works fine with AMD. I386 works with everything. Thanks, Adam

Re: [pfSense Support] IP alias Not working correctly?

2011-07-27 Thread Adam Piasecki
Reading through the forms it seems the correct way to add a secondary IP in 2.0 is to add a IP Alias and assign it the IP and subnet mask of the network. I have done this, and see the secondary IP in a ifconfig I can not ping anything on the subnet of the IP Alias. When i SSH into the

[pfSense Support] IP alias Not working correctly?

2011-07-26 Thread Adam Piasecki
Reading through the forms it seems the correct way to add a secondary IP in 2.0 is to add a IP Alias and assign it the IP and subnet mask of the network. I have done this, and see the secondary IP in a ifconfig I can not ping anything on the subnet of the IP Alias. When i SSH into the

[pfSense Support] Is the PPTP/GRE Limitation fixed in 2.0?

2011-03-28 Thread Adam Piasecki
I found a thread on the message board stating this was fixed in 2.0. I'm testing it right now and can only get 1 client connected at a time. Do i need to upgrade both my client firewall and the pptp server firewall to 2.0. I'm currently only testing with the 2.0 as the client side firewall.

Re: [pfSense Support] can't block https://facebook.com via firefox

2011-03-24 Thread Adam Piasecki
On 3/23/2011 5:29 PM, Yehuda Katz wrote: On Wed, Mar 23, 2011 at 5:14 PM, Michael Schuh michael.sc...@gmail.com mailto:michael.sc...@gmail.com wrote: for a bit fun: put *.facebook.com http://facebook.com into your dns-masquerader and lead him to the internal IP of the firewall

Re: [pfSense Support] MAC based Access Control

2010-11-29 Thread Adam Piasecki
On 11/29/2010 5:18 AM, Gerald A wrote: On Mon, Nov 29, 2010 at 4:51 AM, James Bensley jwbens...@gmail.com mailto:jwbens...@gmail.com wrote: I think it would be an useful feature to have; if you have a pfsense box at the end of a leased line, private virtual circuit or vpn, it

[pfSense Support] IKE Fragmentation?

2010-05-26 Thread Adam Piasecki
I am having a problem with Cisco VPN clients unable to connect through pfSense. To a cisco VPN concentrator on the internet. I did a packet capture and I am seeing fragmented ISAKMP packets, leading to malformed packets. This is from the laptop to the VPN server, sniffing on the pfsense. I

Re: [pfSense Support] Per user bw limit

2010-04-28 Thread Adam Piasecki
With captive portal ON then yes in 1.2.3. Hopefully 2.0 will have this option without captive portal. i think it will. On 4/28/2010 9:26 AM, Abdulrehman wrote: I also had the same questions almost a year back...My question is still there? On Wed, Apr 28, 2010 at 6:02 PM, Matias

Re: [pfSense Support] PFSense advocacy

2009-12-02 Thread Adam Piasecki
1) Cost is the biggest advantage. 2) Open Source is also huge, if Cisco goes bankrupt I'm out of luck for support, If pfsense stops, i just need the source code and some knowledge of how it works and i can support pfsense forever. 3) pfSense can be customized to the nth degree. Good luck trying