Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ

    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • Route add

    3
    0 Votes
    3 Posts
    2k Views
    D

    ASAP reply!!!

    P.S. Sorry, I just woke up. I'd have had my alarm clock set to earlier had I known I was that urgent.

  • MOVED: After creating squid rules, squid craches down

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Electric Sheep Fencing LLC vs BSD Perimeter? Same People?

    12
    0 Votes
    12 Posts
    9k Views
    K

    Actually, China is sort of my EX-Expertise. 
    I can see where there might be some level of government interest in black-holing your pfsense sites there.
    Cool - Different thread one day.

  • Cisco buting (Edit: buying) SourceFire

    8
    0 Votes
    8 Posts
    3k Views
    jimpJ

    There is also Bro

    http://www.bro.org/

    And Bro is BSD licensed, which is nice.

  • When to add pfsense to the domain?

    3
    0 Votes
    3 Posts
    4k Views
    johnpozJ

    thinking your confusing a domain name like local.lan with your Active Directory domain..  Which might also be called local.lan but not actually the same thing.

    Your pfsense would not ever actually join your windows AD domain, but yes they can share the same name space like pfsense.yourdomain.tld and ws2012.yourdomain.tld, and your windows ad dns could have a record for pfsense.yourdomain.tld in its dns.

  • WAN PPPoE: overriding IP assignment from the ISP

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Several forums hacked recently

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • TCP ex Machina: Computer-Generated Congestion Control

    3
    0 Votes
    3 Posts
    2k Views
    P

    It looks like there are promising ways to improve the algorithms by which TCP (on various OS implementations) handles changing its parameters (window size etc) in response to perceived network throughput/congestion. The control of all that is end-to-end in TCP - the end point systems have to do it, and they do it more or less crudely at the moment. So I don't see how it will help the routers/firewalls along the path. But yes, if you have a controlled office environment then you could implement these things (when they are actually real software available for the OSs that you have) and get your office computers doing more friendly sharing of bandwidth.
    If only new IPvN had a proper QoS system, and we could pay a bit extra to our ISP to be able to set QoS parameters in packets, have the ISP respect this, and have the ISP pay the internet backbone a bit of that money to also process QoS…

  • FreeSwitch and "Time of day" routing

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Sony PS4 will be running modified FreeBSD

    19
    0 Votes
    19 Posts
    7k Views
    K

    A few million people hold top secret clearances and many more than that have.  I'd estimate that about maybe 1% of the population knows exactly what is and isn't being done - officially.  Since a secret is something that you and one other person knows, this stuff aint no secret.

  • Pf sense can do

    5
    0 Votes
    5 Posts
    2k Views
    K

    Enormous State tables, lots of Ram…

    So....

    Your 10,000 simultaneous "perfectly legal" downloads won't crash your router and cause it to flake out right in the middle of your favourite Netflix episode.

  • Legality of operating a "public" wifi network

    15
    0 Votes
    15 Posts
    6k Views
    K

    I'm no fan of CALEA, but as I understand it, even CALEA has threshholds for required emplementation.  Specifically number of users and type of service.  I think this guy is too far below the radar to get forced into CALEA requirements, however that depends on how many people is "large wifi network for a nine building apartment complex".  Technically speaking.

    https://freedom-to-tinker.com/blog/felten/calea-ii-risks-of-wiretap-modifications-to-endpoints/

    Another problem I have with logging, especially copious logging is that if a logging system is compromised, now the privacy of everyone included in the logs has been compromised.

    CALEA compliant systems have been "hijacked" by criminals to invade the privacy of people and even to commit financial crimes.

  • Google has already inserted some of the NSA’s programming in Android OS

    12
    0 Votes
    12 Posts
    4k Views
    S

    HAHAHHAHAHAHAHAHAHAHAHAHA!!

  • Pfsense Persistent Static Routes

    2
    0 Votes
    2 Posts
    2k Views
    D

    Huh?

    http://doc.pfsense.org/index.php/Static_Routes

  • Sentinel keys server

    6
    0 Votes
    6 Posts
    6k Views
    M

    No Problem Glad I was able to help.

  • Can't access a cpanel using https on port 2083

    4
    0 Votes
    4 Posts
    5k Views
    stephenw10S

    Ah yes I read that too quickly and thought you were trying to get access to the web interface of your Cisco box.  :-[

    So you can access the cpanel login with the full link but not the shortcut?
    I would expect a shortened address like that to work only if the local dns knows about it.

    Steve

  • [OT] [PGDay.IT 2013] Italian PostgreSQL Day

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • MPLS - any router for CE?

    3
    0 Votes
    3 Posts
    2k Views
    L

    We are using a mixture of ethernet (as their PE router is on our premises) and ADSL where the PE router is at the exchange.

    The ADSL connection comes in 2 types:
    1. Where they just need you to specify a loopback address that they then enter into the vrf.
    2. Where they ask for a loopback address and a lan subnet that they enter into the vrf.

    Now, with number 2, I would imagine you could use any old router as the lan is specified by the providers.
    But with ethernet & number 2 above, it looks as though you have to use a mutual routing protocol eg BGP as that is the only way of getting the routes into the table.

  • Proxy extensions

    2
    0 Votes
    2 Posts
    1k Views
    stephenw10S

    You'll have to define 'full fledged proxy'. You have Squid available and Squidguard or Dansguardian if you want filtering options.

    Steve

  • Question by David and about in

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.