• OpenVPN for Remote User

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    A

    @jimp:

    @jimp:

    I need to fix Easy Rule so it can find the openvpn ruleset properly.

    FYI- This bit should be fixed on new snaps. I just committed a fix.

    Easy rule works, but OpenVPN packets still be blocked by "default rule":
      block
    Feb 17 16:36:55 ovpns1 192.168.220.6 192.168.200.2 ICMP

  • OpenVPN 2.0-Beta Client to 1.2.3 Server "won't route" or firewalled?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    O

    Looks like the 1.2.3 machine needed to be rebooted - appears that there's a bug (or at least unexpected behavior) regarding OpenVPN-interface assignment and filtering.  After the reboot of the 1.2.3 machine, everything works more or less as expected.

    @overand:

    Worth noting - the 1.2.3 machine may have had firewall rules enter into a temporarily-defined "OPT" interface associated with "TUN" - and may not have been rebooted since.  (That is likely my nest section to check out)

  • Simple IPSEC site-to-site -> racoon: ERROR: failed to get sainfo.

    Locked
    1
    0 Votes
    1 Posts
    3k Views
    No one has replied
  • 2.0 support for 3G connections

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    O

    For anyone doing a search on this in the future,  I can report success with my Novatel U727 USB gizmo - configured with SPRINT - though I had to select "Verizon" as the configuration type.

    I also believe I ended up selecting some profoundly low connection rate, like 19200 - It "seemed to work better" like this, but given the flakiness of 3G, I'd have to prod that a lot more to have any sort of certainty.

    What's interesting about this 3G interface is that on Windows and Linux, it appears as a CD-Rom drive (containing a "CD" with windows drivers) when first inserted, with a USB ID of (something-I-forget) - after you "eject" the CD drive, the device re-presents itself, with a new USB ID.  With linux-based workstations or router platforms, I've had to "manually" (or script-wise) eject the "CD" before setting up the "airprime" module or connecting.

    FreeBSD or pfSense appears to be doing the magic for us - which is quite awesome.

    (If anyone has tests they'd like me to perform with this device, let me know!)

  • 0 Votes
    11 Posts
    5k Views
    G

    Thanks for the fix. I just upgraded to the latest Feb16 snapshot and all of my widgets came up. :)

  • 1.2.3 to 2.0 B1 Dashboard

    Locked
    10
    0 Votes
    10 Posts
    3k Views
    jimpJ

    After fixing the bug I found here:
    http://forum.pfsense.org/index.php/topic,22321.msg118156.html#msg118156

    I tried to paste in your widget tag on my install and everything worked as it should. Hopefully that was the root cause of this one as well.

  • Firewall log missing entry

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    jimpJ

    OK, I found the bug and it should be fixed now. (Or in snaps later that this time, or if you gitsync)

  • There has been an error creating the graphs.

    Locked
    12
    0 Votes
    12 Posts
    6k Views
    jimpJ

    Whoops. Should be fixed now.

  • 2.0 with Snort Dev

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    F

    Well it seems you're luckier than I am :)
    I could't even install snort-dev, it throws and error when searching for dependencies. After that it shows like it's installed and won't let me uninstall nor reinstall it.

  • Apinger Latency/Delay warning on speedtest

    Locked
    5
    0 Votes
    5 Posts
    5k Views
    AhnHELA

    Thanks to you both for the clarification.

  • OpenVPN user/pass

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    C

    Squid isn't developed or maintained by us ("us" being those who work on the base system). dvserg said he'll fix it at some point. As for any enhancements, he'll have to answer that.

    The em driver problems appear to be gone since switching to RELENG_8 and adding a couple patches to fix edge cases like lagg.

    The cryptodev patch you linked is nearing 5 years old, and on a file that doesn't even exist in RELENG_8. Doubt it's applicable anymore. Last I tested, with 7.2, every algorithm we support was properly accelerated. It's not that much of an improvement with glxsb, though the hifn cards are considerably faster.

  • PPP in 2.0 ALPHA

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    S

    Four ports on bsd/pfsense. /dev/cuaU0.0, 0.1, 0.2, 0.3 (in addition to the 2 integrated rs232 ports that show up for the host box itself(/dev/cuau0, 1))  More show up when attached to a windows box.  It is a Sierra Aircard 881 (cardbus) model.

  • Advanced DHCP options in webconfigurator

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    jimpJ

    This already exists in 2.0. See the "Additional BOOTP/DHCP Options" choice. You can add any numbered option you like.

  • PfSense 2.0 <-> Cisco VPN Client

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • 12th feb nanobsd issues

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ

    I believe this was already noticed, not sure if it's had a fix yet.

    I'll give the newest snap a try on my ALIX and see if I can figure out what's wrong, unless it's already been fixed.

  • Strange results with dig command on localhost behind pfSense

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    C

    That's how it should work, just means it was returned from cache.

  • Some data for RRD Graphs wrong after 1.2.3->2.0Beta1 upgrade.

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    C

    confirmed.
    http://redmine.pfsense.org/issues/show/354

  • IPSec VPN from home to Internet definition ?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    C

    Confirmed. http://redmine.pfsense.org/issues/show/352

  • Error: $ is not defined

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    G

    Well, the button is back where it should be, the error is gone as well, so I think this is a Firefox 3.7a2pre issue. Please disregard. :)

  • No amd64 Builds

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    ?

    "at some point" is the best timeline you're going to get.  The focus is on fixing bugs with 2.0 and getting it into shape for release candidate.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.