Hi Jose,
As what I understand, 1% is the minimum allocated bandwidth. If the
remaining 99% is not used by other queues, this queue may still use up
all 100% of the bandwidth.
In the implementation, if no queues are defined with upper limit, all
100% bandwidth may still be used up. On the
Hi, can anyone help with this?
Thanks
Kelvin Chiang wrote:
Hi,
I have seen from radius.inc that WISPr attributes seem to be supported,
but I cannot get confirmation from the testing that WISPr attributes are
currently supported. Can anyone enlighten me?
Regards, Kelvin
Hi,
I have seen from radius.inc that WISPr attributes seem to be supported,
but I cannot get confirmation from the testing that WISPr attributes are
currently supported. Can anyone enlighten me?
Regards, Kelvin
-
To
Hi Chris,
I have done a patch and the problem has gone away. I was using the inc
include files from pfsense 1.0. Thanks
Regards, Kelvin
Chris Buechler wrote:
Kelvin Chiang wrote:
Hi, I am seeing a phenomenon, that a single captive portal login
triggered 2 accounting sessions, did anyone
Hi, I am seeing a phenomenon, that a single captive portal login
triggered 2 accounting sessions, did anyone see this before?
Regards, Kelvin
-
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL
Hi Tim,
I do not know much to make any comments on what happened to the SNMP
daemon on your pfsense. I am using OpenNMS and it seems to work fine,
except that it does not recognize it as Router. I am using v2c for SNMP
polling. I have not tested the trapd though.
Regards, Kelvin
-Original
for graphing and logging purposes?
--Tim
Kelvin Chiang wrote:
Hi Tim,
I do not know much to make any comments on what happened to the SNMP
daemon on your pfsense. I am using OpenNMS and it seems to work fine,
except that it does not recognize it as Router. I am using v2c for
SNMP polling. I have
Hi, in the configuration page of MiniUPnPd, there is a field labeled
Override WAN address, does anyone know what it is and what's its use
is?
I am trying to find some document to read about MiniUPnPd for pfsense,
does anyone know whether such document exist?
Regards, Kelvin
Hi, I was having some issue downloading the packet capture file (using
Internet Explorer) via HTTPS session; there was no problem with HTTP
session though. Did anyone experience this and know how to solve this?
Hi, I am experiencing the following, does anyone have experience the
same?
I define CARP Failover for 2 boxes of pfsense, the master synchronizes
all profiles to the slave and the slave does not synchronize to the
master. I defined 2 CARP virtual IP, one for WAN and one for LAN. When
it comes to
Thank you scott
-Original Message-
From: Scott Ullrich [mailto:[EMAIL PROTECTED]
Sent: Sunday, April 22, 2007 1:14 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] CARP
On 4/22/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
I have read the CARP related tutorial and found
One more question Scott, can the SYNC interface be a VLAN interface for
CARP?
Regards, Kelvin
-Original Message-
From: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Sent: Sunday, April 22, 2007 2:12 PM
To: support@pfsense.com
Subject: RE: [pfSense Support] CARP
Thank you scott
Hi, I have some issue with implmenting VLAN, can someone help to
comment?
I have 2 boxes of pfsense. I connected the LAN interfaces of both boxes
with a crossover cable and I defined VLAN 1 (Tag 1) on both LAN
interfaces. From the interfaces, I now have 3 interfaces, WAN, LAN, and
OPT1 on both
@pfsense.com
Subject: Re: [pfSense Support] VLAN
On 4/21/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, I have some issue with implmenting VLAN, can someone help to
comment?
I have 2 boxes of pfsense. I connected the LAN interfaces of both
boxes with a crossover cable and I defined VLAN 1
knows what it meant? Any chance that this is the cause?
Regards, Kelvin
-Original Message-
From: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Sent: Saturday, April 21, 2007 2:57 PM
To: 'support@pfsense.com'
Subject: RE: [pfSense Support] VLAN
Hi Bill,
I suppose I did, unless there are something
To: support@pfsense.com
Subject: Re: [pfSense Support] VLAN
On 4/21/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi Bill,
I suppose I did, unless there are something I was not aware. I created
a VLAN on the NIC, and assign the VLAN ID to OPT1 in the interface
menu.
Well, I dunno what rules you have
I have read the CARP related tutorial and found an option preemption
check box. However, this box does not appear on the pfsense that I used.
Is it because the tutorial is out of date?
Regards, Kelvin
I think your memory died, just replace the memory
-Original Message-
From: Mohd Saidy Bin Mohd Yusof [mailto:[EMAIL PROTECTED]
Sent: Monday, January 15, 2007 4:32 PM
To: support@pfsense.com
Subject: [pfSense Support] Help Me Plz
I'm using server with 1000MB RAM but after a few month i
Hi, my webConfigurator failed to start after a new installation (newly
compiled binary). The error messages found in the system log are:
Error: cannot determine root pwd in sync_webgui_passwords(). Root user
struct follows:
Unable to determine root user!
Testing whether your system has the
I have experience a fatal error during boot time. It reported call to
undefined function tdr_install_cron error occurred in filter.inc line
283.
Did anyone experience this problem? Revision 1.575.2.372 for filter.inc
Regards,
Kelvin
Thank you
-Original Message-
From: Scott Ullrich [mailto:[EMAIL PROTECTED]
Sent: Thursday, April 19, 2007 1:59 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] filter.inc
On 4/18/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
I have experience a fatal error during boot time
Hi, when I run the script to rebuild an iso image, it reported the
following error:
./pfsense_local.sh: 69: Syntax error: redirection unexpected
Line 69 of pfsense_local.sh shows the following:
pfsense_local.sh
Does any of you know why? I have never seen pfsense_local.sh
and 1.43 in other
: Thursday, April 19, 2007 10:12 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] pfsense_local.sh
On 4/18/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, when I run the script to rebuild an iso image, it reported the
following
error:
./pfsense_local.sh: 69: Syntax error: redirection
Thank you!
-Original Message-
From: Bill Marquette [mailto:[EMAIL PROTECTED]
Sent: Thursday, April 19, 2007 11:51 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] pfsense_local.sh
On 4/18/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi Bill, what did you mean by local changes
Hi, I realized that even though the Client-Specific-Configuration is
deleted, the openvpn-csc directory still have the file in there. This
cause the openvpn server still uses the options stated in this file.
Does anyone experience the same thing? I presume that the action to
delete the CSC from
I have a question associated with the OpenVPN in pfsense, does it
operate in Routed Mode or Bridged Mode? ie tun or tap?
Regards, Kelvin
I am experiencing the following behaviour, does any of you faced this
problem before?
I used the Win32 version of OpenVPN. I set up using TLS using TCP on
tun. The connection was established and the TAP driver requested for an
IP. I saw that IP address was assigned but released almost
May I confirm something? For site-to-site connection, it is always
required that one pfsense operates as a server and one operates as a
client, correct? server-to-server and client-to-client do nto work?
Regards, Kelvin
. You probably use a wrong monitor IP? You
have to use an IP of the remote end's local subnet behind the tunnel
(has to be an IP that's inside the tunneldefinition of the remote end).
Holger
From: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Sent
Hi, there is a check box to automatically ping host. I assume that this
function is intended for site with dynamic WAN IP address. I activated
it but it did not seem to do the job. Has anyone tried it?
Regards, Kelvin
=Kelvin Chiang/[EMAIL PROTECTED]
Mar 24 09:25:41 racoon: INFO: ISAKMP-SA established
210.23.14.8[500]-218.186.35.230[500]
spi:acc291a49b2a3750:a40aa2dc238e66db
Mar 24 09:25:41 racoon: ERROR: Invalid exchange type 6 from
218.186.35.230[500].
PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Racoon Error Messages
Kelvin Chiang wrote:
Hi, I am still figuring out how to get IPSec working using RSA
signature. Still no luck but I think I am getting closer. I have seen
errors messages below, does anyone know what is exchange
Hi Mathhew, at the IPSec Configuration page, there is a CAs, do you
know what's the use of it?
Regards,
Kelvin
-Original Message-
From: Matthew Grooms [mailto:[EMAIL PROTECTED]
Sent: Saturday, March 24, 2007 1:45 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Racoon Error
peer_identifier address
xxx.xxx.xxx.xxx. Correct?
Regards,
Kelvin
-Original Message-
From: Matthew Grooms [mailto:[EMAIL PROTECTED]
Sent: Thursday, March 22, 2007 2:33 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] IPSec and Certificate/RSA Key
Kelvin Chiang wrote:
Hi, I have
IPSec tunnel using RSA cert and key is like a myth :) Did anyone ever
get that working? I have read a lot threads but all about IPSec using
PSK. I desperately need some light here, can anyone comment something?
Regard, Kelvin
, Kelvin Chiang wrote:
I realized that the if I activated PPPoE while PPTP server is already
activated, it does not function. Can anyone confirm this? Thanks.
Regards,
Kelvin
-
To unsubscribe, e-mail: [EMAIL PROTECTED
Hi, I have problem getting the IPSec to work with a self-signed
certificate and rsa key. Does anyone know whether there is any document
I can read?
Regards,
Kelvin
I realized that the if I activated PPPoE while PPTP server is already
activated, it does not function. Can anyone confirm this? Thanks.
Regards,
Kelvin
Does anyone know the different between Random Early Detection and
Random Early Detection In and Out?
Regards,
Kelvin
My experience on creating additional parent queues in addition to
qwanRoot and qlanRoot:
I created a new queue with the Parent Queue box checked; I am able to
add the queue but the error message indicated this queue does not have
Parent Queue.
-Original Message-
From: Pablo Montoro
: Wednesday, March 14, 2007 2:02 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] Traffic Shaper
On 3/13/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, is there a document somewhere that I can read and understand about
the mechanism for Traffic Shaper? Or if someone can verify whether
: Wednesday, March 14, 2007 2:02 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] Traffic Shaper
On 3/13/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, is there a document somewhere that I can read and understand about
the mechanism for Traffic Shaper? Or if someone can verify whether
] Traffic Shaper
On 3/13/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi Bill,
I realized the error message associated with the traffic shaping rules
was caused by the script (that writes the rule files onto the disk)
called when the user press the Save button in the traffic shaping
rule
Hi, I have a question related to Traffic Shaper and Polic based Routing
Suppose that I have 3 interfaces, LAN, WAN and LAN2, and Traffic Shaper
has been enabled between WAN/LAN interfaces. It seems to me that it also
affects the bandwidth between LAN and LAN2 interfaces if I download
something
Shaper
On 3/13/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi Bill,
I realized the error message associated with the traffic shaping rules
was caused by the script (that writes the rule files onto the disk)
called when the user press the Save button in the traffic shaping
rule definition page
Hi, I have a question related to Traffic Shaper and Polic based Routing
Suppose that I have 3 interfaces, LAN, WAN and LAN2, and Traffic Shaper
has been enabled between WAN/LAN interfaces. It seems to me that it also
affects the bandwidth between LAN and LAN2 interfaces if I download
something
I am sorry. I do not know what happened but there are repetitions of my
emails.
Regards,
Kelvin
Thank you Bill
-Original Message-
From: Bill Marquette [mailto:[EMAIL PROTECTED]
Sent: Friday, March 16, 2007 10:02 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Traffic Shaper
On 3/15/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi Bill, one more questions. Does the traffic
Hi, I've got a question on outbound NAT. Can anyone help?
In the outbound NAT definition page, the Translation has 2 options, 1)
Interface Address and 2) Any. In what kind of circumstances that we need
to use Any? Does it still do a translation or without translation?
Regards,
Kelvin
@pfsense.com
Subject: Re: [pfSense Support] Outbound NAT
On 3/16/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, I've got a question on outbound NAT. Can anyone help?
In the outbound NAT definition page, the Translation has 2 options,
1) Interface Address and 2) Any. In what kind
, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, is there a document somewhere that I can read and understand about
the mechanism for Traffic Shaper? Or if someone can verify whether my
concept is
right:
1. Before anything can be defined, we must first define a pair of
Parent Queues, one
to any keep state tagged unshaped tag
qOthersDownH
There is no space between ng1 and from. Where can I modify the
script to take care of this problem?
Regards,
Kelvin
-Original Message-
From: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Sent: Wednesday, March 14, 2007 8:37 AM
To: 'support
, 2007 9:17 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] Traffic Shaper
On 3/13/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi Bill,
I realized the error message associated with the traffic shaping rules
was caused by the script (that writes the rule files onto the disk)
called
Hi Bill, sorry to trouble u again... How many Parent Queues can we
define?
-Original Message-
From: Bill Marquette [mailto:[EMAIL PROTECTED]
Sent: Wednesday, March 14, 2007 9:17 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] Traffic Shaper
On 3/13/07, Kelvin Chiang [EMAIL
Hi, I have question that may be basic and stupid. What're the
differences of Proxy ARP and Other Virtual IP? As what I am aware,
Virtual IP based on Proxy ARP replies to ARP requests. Does it mean that
Other does not? If it does not, what's the use of Other Virtual IP?
Regards,
Kelvin
for example.
Holger
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Gesendet: Montag, 12. März 2007 07:18
An: support@pfsense.com
Betreff: [pfSense Support] Virtual IP
Hi, I have question that may be basic and stupid. What're the
differences of Proxy ARP and Other
or
1:1 nat for this then.
Of course you can use the lan subnet for this as well. If you want to do
this just delete the autocreated outebound nat rule after enabling
advanced outbound nat.
Holger
-Ursprüngliche Nachricht-
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Gesendet: Dienstag, 13
I have a question regarding the function to Disable Console Menu I
realized that even if I activate this function (to disable console menu)
in the System/Advanced menu, I am still able to see the console menu via
SSH connection. Is this function intended to disable the console menu
across VGA,
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Gesendet: Sonntag, 11. März 2007 05:59
An: support@pfsense.com
Betreff: [pfSense Support] Disable Console Menu
I have a question regarding the function to Disable Console Menu I
realized that even if I activate this function
Hi, I have some questions concerning Load Balancer and Failover, hope
that someone can help.
1. I have configured the load balancer for 2 physical interfaces (WAN
OPT1). I monitor the states table and realized that the icmp packets for
monitoring purpose were fired only from the OPT1
WAN to OPT1
and one failover OPT1 to WAN. Then just create firewallrules to make use
of either of the pools. This way you can have services that run on both
or prefer the one or other connection.
Holger
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Gesendet
are you running? If it's not a recent
snapshot please upgrade.
2. Yes, that is correct.
Holger
-Ursprüngliche Nachricht-
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Gesendet: Freitag, 9. März 2007 12:36
An: support@pfsense.com
Betreff: RE: [pfSense Support] Load Balancer
Hi Holger,
1. I
quality rrd graph showing constant packetloss which
was fixed and your problem seems to be similiar.
Holger
-Ursprüngliche Nachricht-
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Gesendet: Freitag, 9. März 2007 15:19
An: support@pfsense.com
Betreff: RE: [pfSense Support] Load Balancer
Hi
Hi, anyone has any information how to pass DNS request packet through
captive portal? The problem I faced was that the computers configured
with a DNS server IP address instead of obtaining DNS server IP
dynamically cannot invoke the captive portal.
Regards,
Kelvin
You have to use the dnsforwarder of pfSense to use the captive portal.
It won't work with another DNS-Server.
Holger
-Ursprüngliche Nachricht-
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED]
Gesendet: Sonntag, 4. März 2007 05:10
An: support@pfsense.com
Betreff: [pfSense Support] Captive
Ok thanks
-Original Message-
From: Holger Bauer [mailto:[EMAIL PROTECTED]
Sent: Sunday, March 04, 2007 12:23 PM
To: support@pfsense.com
Subject: AW: [pfSense Support] Captive Portal and DNS
Correct
-Ursprüngliche Nachricht-
Von: Kelvin Chiang [mailto:[EMAIL PROTECTED
that someone on the list had figured out how to do this. Kyle, give a
shout if this matches your scenario and you can help out. Thanks.
Wade B
On 2/14/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi Wade, thank you for the reply. Here's what I intend to achieve:
Router
Hi, I have problem getting the following configuration done, I am not
sure whether pfsense supports this kind of application; may be someone
can advise...
I have a WAN interface with IP address of 10.1.1.1. I define a Virtual
IP of 192.168.1.1 on the same interface. Basically, I have 2 subnets
I've got a question associated with multi-wan load balancing. I have 2
physical network interface connected to 2 different network. I have
configured it with Load Balancing. I monitored that behavior of the Load
Balancing and I realized that the fail-over is quite effective. However,
I also
: Bill Marquette [mailto:[EMAIL PROTECTED]
Sent: Tuesday, February 13, 2007 1:52 AM
To: support@pfsense.com
Subject: Re: [pfSense Support] Multiple WAN Load Balancing
On 2/12/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
I've got a question associated with multi-wan load balancing. I have 2
Oh yeah, that I did too.
Regards,
Kelvin
-Original Message-
From: Bill Marquette [mailto:[EMAIL PROTECTED]
Sent: Tuesday, February 13, 2007 12:40 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Multiple WAN Load Balancing
On 2/12/07, Kelvin Chiang [EMAIL PROTECTED] wrote
After you assign the VLAN Tag ID to the physical network interface, you
need to create a new IP interface from the Interface Assignments
page; you can do so by clicking the + sign on this page. Then only you
can assign IP address to this VLAN as well as associated DHCP server.
DO BEAR IN MIND
I have a question associated with IPSec, it may be a stupid question :)
In the IPSec configruation menu, there is a tab labelled CA that allow
the administrator to create certificate for specific identifier. Does
this mean that the pfsense function as a Certificate Authority?
Regards, Kelvin
I have some problem getting the mobile client to connect to pfsense
using certificate and keys. Can pfsense support self-signed certificate?
Kelvin
Hi, I am getting very miserable in trying to get Virtual IP and Port
Forwarding to work. Can anyone managed to get it work enlighten me?
Some background information. My WAN interface uses 10.1.1.1/24, LAN
interface is configured with 192.168.2.1/24. I have a web server (of IP
192.168.2.100) in
Forwarding - SNAPSHOT
1.01
On 1/31/07, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, I am getting very miserable in trying to get Virtual IP and Port
Forwarding to work. Can anyone managed to get it work enlighten me?
Some background information. My WAN interface uses 10.1.1.1/24, LAN
interface
Hi, I am experiencing the following issues. I have read quite a number
of archived mails, they all contained suggestion but none seems to work.
Can anyone help? Thanks:
My WAN interface uses a public IP address (IP-1) and it is connected to
Internet with this IP. In addition, there is also a
Hi,
If I create the web GUI SSL certificate before I activate the HTTPS,
connecting to the web GUI using https uses the SSL certificate I created.
However, if I activate web GUI HTTPS access without creating the
certificate, and connect to the web GUI, the https session uses a
certificate with
.
See you later,
Josep Pujadas
-- Original Message ---
From: Kelvin Chiang [EMAIL PROTECTED]
To: support@pfsense.com
Sent: Fri, 17 Nov 2006 20:50:15 +0800
Subject: [pfSense Support] HTTPS related Questions
Hi,
If I create the web GUI SSL certificate before I activate
Hi, some of the packages are really good. However, the packages are
uninstalled after a reset to factory defaults. At the compilation of live
CD, is there any way to include additional packages as factory default?
Regards,
Kelvin
Hi, after I installed the squid, the system has problem to complete the
bootup. The screen freezed at Stopping
/usr/local/etc/rc.d/proxy_monitor.sh. Did anyone experience this problem?
Can anyone help?
Regards,
Kelvin
. The Webconfigurator was still accessible and I was
able to uninstall the squid package. I have 3 interfaces, WAN, LAN, and
OPT1. I wonder if that was the cause of the problem. I was also using
Captive Portal and Load Balancer on OPT1. The captive portal was using the
HTTPS login.
Tim
Kelvin Chiang wrote:
Hi
Title: Message
Hi, I have come to
learn that system_advanced.php version 1.183 onward supports zero configuration
if avahi is installed. But I could not find any information on how to do that.
To be specific:
1. How can I patch
"system_advanced.php" to version 1.183? I think cvsup_current
of supporting zero
configuration. Has anyone done it before?
Regards,
Kelvin
-Original Message-
From: Bill Marquette [mailto:[EMAIL PROTECTED]
Sent: Tuesday, November 14, 2006 10:32 PM
To: support@pfsense.com
Subject: Re: [pfSense Support] Patches to support Zeroconf
On 11/14/06, Kelvin Chiang
Title: Message
Hi, I have tried to
run the script "build_updates.sh" to get an iso with latest image, but it
prompted me for gzsig. I downloaded gzsig.tgz and try to install gzsig, but it
prompted me that "don't know how to make SSH2.c". I am not really an experience
programmer and I could
world) - I haven't tested that this
works for the ISO build, but it certainly does for embedded. Patch is
against RELENG_6
--Bill
On 10/31/06, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, I have found the problem. I have forgotten to remount devfs to
/usr/jails/pfsense/dev
Regards,
Kelvin
your scripts.
On 11/1/06, Kelvin Chiang [EMAIL PROTECTED] wrote:
Hi, I have tried to run the script build_updates.sh to get an iso
with latest image, but it prompted me for gzsig. I downloaded
gzsig.tgz and try to install gzsig, but it prompted me that don't
know how to make SSH2.c. I am
Title: Message
Hi,
I have been very
miserable trying to figure out what went wrong I am able to repeat the error as
follow:
1. I followed the
instructions on this url: http://wiki.pfsense.com/wikka.php?wakka=BuildingpFSense
2. When I reached
the step to run "./cvsup_current", it went
Title: Message
Hi, I
have found the problem. I have forgotten to remount devfs to
/usr/jails/pfsense/dev
Regards,
Kelvin
-Original Message-From: Kelvin Chiang
[mailto:[EMAIL PROTECTED] Sent: Wednesday, November 01, 2006
9:54 AMTo: support@pfsense.comSubject: [pfSense
89 matches
Mail list logo