• Best Open Source Netflow Monitoring

    2
    0 Votes
    2 Posts
    870 Views
    C
    nfsen is my preferred option there. Best open source one I've seen. Scrutinizer is definitely nice, but very costly.
  • Download previous versions?

    7
    0 Votes
    7 Posts
    1k Views
    C
    You need to go forward at this point, not backwards. Especially not backwards to a Heartbleed-vulnerable version. Try 2.2, that's vastly safer than 2.1.1 at this point.
  • [Solved] Bind Machine/IP to specific outgoing WAN Interface

    3
    0 Votes
    3 Posts
    1k Views
    W
    @stephenw10: Just set a firewall rule on the internal interface that the mailserver is on. Specify the source IP as the mail server and the gateway as whichever WAN you want to use. Steve It is so easy when you know how it's done. Now I kinda feel stupid. But thanks anyways :) Appreciate it very much!
  • Static IP not working

    7
    0 Votes
    7 Posts
    2k Views
    chpalmerC
    with a /29 you would have 192.168.99.192 - 192.168.99.199 available in your subnet.  Try pinging each and every one except the address your WAN is set to. For the rest-  a great number of small rural ISP's use private space on their networks between their routers and customer WAN.
  • Enterprise level IDS, IPS and URL filtering

    12
    0 Votes
    12 Posts
    3k Views
    K
    Yeah - At least one really good person who is always on the clock or like he was saying, ESF professional paid assistance.
  • Pfsense can't resolve dns, can't find updates

    8
    0 Votes
    8 Posts
    4k Views
    DerelictD
    If you set the gateways on your DNS servers to the proper ISP, your DNS servers should get /32 routes out that specific gateway which should override the default route out the tunnel. Note that this leaks your DNS queries to the global internet and they will no longer go out PIA (if your clients are configured to use them) so you're leaking info if you want to stay anonymous. Otherwise you need to figure out how to use PIAs name servers, or have firewall rules that steer DNS queries to the proper places.
  • QinQ Vlan tagging - Is this what I need?

    5
    0 Votes
    5 Posts
    2k Views
    DerelictD
    I doubt it.  Your traffic is probably being converted to ATM over the DSL network.  I highly doubt layer 2 info like VLAN tags can survive the trip.  But being a bridge it might.  You really need to talk to your DSL provider.  If nothing else, you will need to get your DSL bridge ports configured from untagged to tagged.  Then you need to determine if your q-in-q tags make it across.
  • Few questions "Gaming and disk Cloning"

    3
    0 Votes
    3 Posts
    882 Views
    F
    thank you for your answer, ill do as you say… thanks
  • Squid 3 not caching anything

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • User Manager using LDAP but OU with spaces not working ?

    6
    0 Votes
    6 Posts
    2k Views
    H
    @BeerCan: try User naming attribute = samAccountName Group naming attribute = cn Group member attribute = memberOf There is more but I am late for a meeting :) perfect thank you, that works under Diagnostics - Authenication and with the space in the OU name (no need for %20 etc). Now how do I allow this to log on to pfsense for report monitoring ?
  • Percent normally normal range right around

    2
    0 Votes
    2 Posts
    531 Views
    DerelictD
    What would be cool would be if SMF would automatically suspend posting privileges for accounts with < 5 posts with a 1:5 or greater posts:smites ratio.  That way we could just crowd-moderate these fuckers.
  • [Solved] DNS Rebinding Attack. No access to Server inside DMZ from LAN.

    13
    0 Votes
    13 Posts
    5k Views
    W
    @cmb: @kejianshi: Is it a 2.1.5 problem also?  Thats what those pfsense I was talking about are on. No, that problem never existed in 2.1.x, that was a regression in 2.2 only that I fixed a couple days ago. Guessing it is the cause of OP's issue if that's on a snapshot that's more than 1-2 days old. It worked! :D Current build is  Fri Nov 07 00:00:15 CST 2014, FreeBSD 10.1-RC4-p1. Unchecked Firewall -> NAT -> 1:1 -> Edit -> NAT reflection = use system default Services -> DNS forwarder -> Register DHCP leases in DNS forwarder and Register DHCP static mappings in DNS forwarder Unchecked. And of course the settings for DNS Split in Services -> DNS forwarder -> Host Override. Only thing is. When having multiple websites on one machine that you can access via different subdomaines like site1.mydomain.com site2.mydomain.com etc. Host Overrides only gives you the default website since I can not assign a specific directory to a subdomain. But I guess we will figure something out. It is not as important as the mailserver was. So thank you very much! –--------------------------------------- //Edit: Just a little update for all the googlers that might come here later. To solve the website issue, we setup our own bind DNS on an extra machine. This DNS handles all requests from IPFire. Directs requests to sub.domain.com to the internal IP of that server. And in case that IP is a Webserver, Apache with Vhosts handles it and forward that to the specific directory. So thats it :)
  • Squid and Squidguard Service stops at 7:55am every morning

    7
    0 Votes
    7 Posts
    1k Views
    J
    FreeBSD-based.  Going to look at upgrading in the first instance.  Thanks for your help
  • Canot access https from pfsense box

    1
    0 Votes
    1 Posts
    491 Views
    No one has replied
  • After editing, Pfsense dooesn´t boot

    1
    0 Votes
    1 Posts
    525 Views
    No one has replied
  • Ftp Proxy on PFSense

    2
    0 Votes
    2 Posts
    1k Views
    X
    up!
  • PfSense, ALIX & Cisco Router Guidance

    1
    0 Votes
    1 Posts
    947 Views
    No one has replied
  • Web interface down, barely routing, dns failures, etc

    2
    0 Votes
    2 Posts
    749 Views
    K
    Sounds like either your pfsense is seriously hosed or the computer you are using to access it is.  Not sure if a switch could cause this, but I'd direct connect to the pfsense to test.
  • LAN pings and External IP

    11
    0 Votes
    11 Posts
    2k Views
    K
    haha - well take comfort in knowing that your simple mistakes are the only mistakes I could spot (-;
  • Bandwidth use details

    7
    0 Votes
    7 Posts
    2k Views
    johnpozJ
    Well that is easy enough to fix - why would those ports be open, only thing outbound from a work network should be the proxy ;)
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.