• VPN behind pfSense 2.0

    Locked
    12
    0 Votes
    12 Posts
    5k Views
    valnarV

    @glor:

    Ok so I found this on another website about pfSense -

    NAT Limitations

    PPTP and GRE Limitation - The state tracking code in pf for the GRE protocol can only track a single session per public IP per external server. This means if you use PPTP VPN connections, only one internal machine can connect simultaneously to a PPTP server on the Internet. A thousand machines can connect simultaneously to a thousand different PPTP servers, but only one simultaneously to a single server. The only available work around is to use multiple public IPs on your firewall, one per client, or to use multiple public IPs on the external PPTP server. This is not a problem with other types of VPN connections. A solution for this is currently under development.

    AFAIK, this is a problem in TCP/IP's design since NAT only translates UDP or TCP.  GRE cannot be translated.  No firewall I'm aware of "fixes" this problem.

  • Diag_logs_filter.php?getrulenum= is little selective

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    jimpJ

    for those that don't want to change this by hand, a fix for this will be in 1.2.3.

    I also rolled it into the newly updated Dashboard package (0.7.0).

  • BUG: is not possible to define a tagged rule without a new tag

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    E

    Please the not working Config.xml and /tmp/rules.debug.
    It is possible to use tag and tagged separately.

  • RRD graphs

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • BUG FOUND - FIX Included (Simple User Managment Bug)

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    E

    Try latest snapshots.

  • MOVED: Looking for outbound PPTP fixes, is this the place?

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Squidguard doesn't seem to work with 2.0-ALPHA-ALPHA-20090214-0228

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    B

    @billm:

    This is a PHP and libxml2 bug (http://bugs.php.net/bug.php?id=45996).  We're waiting on a fix from upstream.

    We backrevved libxml2 as a workaround a couple days back.  It looks like PHP 5.2.9 is out - we'll give it a couple of days to stabilize before attempting to bring everything back up to current in 2.0.

    –Bill

  • (v2.0-ALPHA-ALPHA) Issue with IPSec VPN, PSK

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    D

    This issue has been solved.

    Please view post http://forum.pfsense.org/index.php/topic,14525.msg76956.html#msg76956

  • PfSense-Full-Update-2.0-ALPHA-ALPHA-20090224-1309.tgz

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Gateway Problem

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    D

    yes i can not use gateway edit.
    delete and exist new one. i am using DHCP for wan and opt1, otherwise i can not delete or edit gateways.

  • PPTP/PPPOE gateway's are not being routed currectly.

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    T

    Sure!

    Will have to reinstall it :)

    in day or two i will post it.

  • Downgraded to 1.2.2 because of performance issues

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    T

    @ermal:

    @takoateli:

    I had to downgrade from Friday's build of 2a to 1.2.2 because I was suffering poor performance. When doing video streaming other services were working poorly.

    What does that mean that it was doing its job well but you didn't supposed it would !!!
    That seems like you gave video streaming priority.

    The comments above are a hard guess, can you share more information on you actually mean.

    Sorry if I wasn't clear. No, I didn't give video streaming higher priority. The problem wasn't that things were slowing down due to bandwidth limitations and qos working properly but rather everything was slowing down. My hardware couldn't keep up. Its a stinky old machine and just about nothing will run on it except for pfsense 1.2 or smoothwall which I'm running now. So I don't know if pfsense version 2 just needs more horsepower or if the alpha has some issues which will eventually be resolved. I'm only trying to use such old yucky hardware because a friend needs a firewall but he's not convinced enough that he's willing to buy a new machine.

    Thanks!
    Greg

  • Question about snapshots

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Pfsense needs to be restartet in case of pppoe 24h disconnect

    Locked
    38
    0 Votes
    38 Posts
    16k Views
    M

    Okay a short log part of the errors when he randomly disconnects:

    Feb 19 18:51:54 php: : ERROR! PPTP enabled but could not resolve the $pptpdtarget Feb 19 18:51:54 php: : Could not find gateway for interface(wan). Feb 19 18:51:54 last message repeated 9 times Feb 19 18:51:54 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was 'pfctl: DIOCSETSTATUSIF' Feb 19 18:51:54 php: : New alert found: There were error(s) loading the rules: pfctl: DIOCSETSTATUSIF The line in question reads [ DIOCSETSTATUSIF]: Feb 19 18:51:54 php: : There were error(s) loading the rules: pfctl: DIOCSETSTATUSIF - The line in question reads [ DIOCSETSTATUSIF]:
  • Bridge Interface Startup Issues

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    T

    Verified as fixed.

    Thank you!

  • Embedded dead slow and lots of issues

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • RRD graphs + IPSec status

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 2.0 features

    Locked
    8
    0 Votes
    8 Posts
    5k Views
    rcfaR

    @databeestje:

    racoon can not do IKEv2, but I believe people have reported success with the Nokia 5800 on the ipsec-devel list.

    I was more thinking racoon2:
    http://www.racoon2.wide.ad.jp/w/

    Ronald

  • Atheros HAL in latest snapshot

    Locked
    11
    0 Votes
    11 Posts
    7k Views
    2

    Oh sure.  Now I feel like a heel for not mentioning Sam.  He also rocks.

    For that matter, he must have a will of iron and the patience of a corpse in dealing with Atheros and their driver code.  The quality of his code was obvious in his sanitized ath_hal code of a couple of months ago.  The man is a wireless puppet master.

  • Small bug on the Status: System logs: Settings page

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    B

    Fixed, thanks.

    –Bill

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.