• Slow FTP and lots of messages in the log

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Change from RC3 to Full

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    H

    :D

  • Xbox … xlink

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • PfSense RC1 on WRAP -> Unreliable, crashes

    Locked
    11
    0 Votes
    11 Posts
    5k Views
    H

    The outgoing PPTP problem when the pptp server is enabled is a known issue, not of pfSense but of the underlaying FreeBSD. Maybe this thread is interesting for you to read as there is some work going on to make pf handle pptp states properly; http://forum.pfsense.org/index.php/topic,2507.0.html

  • 0.0.0.0 floods

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    H

    Looks like someone is doing some macflooding (see http://www.securesphere.net/download/papers/SwitchSniff.htm ):

    MAC Flooding
    Switches keep a translation table that maps various MAC addresses to the physical ports on the switch. As a result of this, a switch can intelligently route packets from one host to another, but it has a limited memory for this work. MAC flooding makes use of this limitation to bombard the switch with fake MAC addresses until the switch can't keep up. The switch then enters into what is known as a `failopen mode', wherein it starts acting as a hub by broadcasting packets to all the machines on the network. Once that happens sniffing can be performed easily. MAC flooding can be performed by using macof, a utility which comes with dsniff suite.

    [root@tachyon dhar]# macof
    77:6b:e1:6e:5e:8c 93:2d:ed:45:f9:e3 0.0.0.0.45702 > 0.0.0.0.11000: S 1847390231:1847390231(0) win 512
    84:a4:d3:57:ef:8 12:56:52:42:dc:95 0.0.0.0.16630 > 0.0.0.0.3031: S 1484147693:1484147693(0) win 512
    88:f0:9:3f:18:89 d:86:53:53:d7:f8 0.0.0.0.15535 > 0.0.0.0.7466: S 293820390:293820390(0) win 512

  • Inbound SSL Load Balancing with Stunnel and the builtin load balancer…

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    B

    I'm not really interested in a userland proxy.  The very next complaint will be why the source IP isn't preserved to the web server.  With that said, a userland proxy can (and should) be done as a package if there's any interest.

    –Bill

  • CPU overloaded

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    R

    Please reinstall the package. Those errors have been fixed. The latest version is 20061023.

  • MOVED: OSPF

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • MOVED: dynamic routing

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Create GEOM mirror.

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    S

    It appears when you have 2 usable drives in the installer as a Create GEOM mirror option.

  • Ntop using nearly 100% CPU

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    P

    Ha ha that's a good one :)

    Ah well, I'll just run ntop when I need it and stop it afterwards.

  • How to interprete the LOG?

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    H

    thanks Billm.

    Working now on interpreting the log.

  • Denying internet access to clients with static ip

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J

    @hoba:

    Enable static ARP entries at the dhcp server settings screen. Beware, by turning this on only machines listed in the mac adress list at the bottom of this page will be able to communicate with the pfsense and thus configure it.

    this is exactly what i wanted to happen, i just need to give access to two clients, thanks hoba.

  • Kernel: xl1: watchdog timeout

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    S

    This problem is now fixed.  1.0.1 will be out later this week which includes this and other misc bge fixes.

  • Interface Information gone?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H

    Hitting enter in the menu without any other input will refresh the page too.

  • MOVED: Squid forgets it's configuration after reboot

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Is it possible to do full update on embedded or only release diifs

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    J

    from 1.0 rc3,a,b,c,d,e,f you can upgrade to 1.0 release
    works fine

  • Squid/DG Transparent Filtering - FQDN truncated.

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    X

    fixed this issue by adding this to my squid.conf on host 192.168.0.12

    httpd_accel_host virtual
    httpd_accel_port 80
    httpd_accel_with_proxy on
    httpd_accel_uses_host_header on

    thanks hoba.

  • Device polling / possible bug?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    X

    i used sysctl to disable device polling, but then i just switched it off via the GUI.

  • Works for me!!

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.