Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Haiti emergency

    Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
    18 Posts 6 Posters 5.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • X
      XIII
      last edited by

      easiest would be to use 1 ip and 1 wan connection and have 4 seperate "LANs" that way each LAN is seperate (cant see eachother) from one another yet they all share the same connection. does this work? or is using 4/5 ips a requirement as well?

      -Chris Stutzman
      Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
      Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
      freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
      Check out the pfSense Wiki

      1 Reply Last reply Reply Quote 0
      • D
        dfarquharson
        last edited by

        We have only one wire hooking the various sectors of the campus, and don't have the time or energy to run more of that. We have all been running on 2 to 4 hours sleep per night for 12 days now, with no end in sight. In order to run seperate LANS we need seperate routers which is what we have been doing so far, but the traffic is completely overloading the 'home' type routers we have available. We have put in an order for some Cisco routers but do not know how long it will take for anything to arrive. We could set up a pfSense box immediately (have a lightly older server with 5 or 6 free PCI slots and lots of network cards). pfSense would also solve our problems with traffic shaping, filtering and monitoring

        1 Reply Last reply Reply Quote 0
        • X
          XIII
          last edited by

          pf would be the router, meaning it would if you wanted replace the "home" routers.

          pf would seperate the different lans. i currently have a pf install seperating 4 LANs, its the router for all 4, all 4 have INternet access but only a 1 can access all LANs and 2 can access each other, the 4th can access Internet only.

          -Chris Stutzman
          Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
          Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
          freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
          Check out the pfSense Wiki

          1 Reply Last reply Reply Quote 0
          • D
            dfarquharson
            last edited by

            What we need is for the LANs to be seperated (could combine the 2 'public' ones fairly easily, but we would want all of them to have Internet access. All these LANS come in on the same wire so my idea is to use the multiple IPs we have available from the iDirect a seperate Gateways for each of the areas. One NIC for each gateway in the server and a seperate router for each handing out DHCP for that LAN. We have enough decent 24 port switches available to handle any sort of complexity needed there.

            The main advantages of the pfSense solution is that we could set it up immediately and it would give us an immediate handle on the traffic flow. We would initially use the small Linksys - Dlink routers we have. The load on each would be lessened so they would not heat up so badly, and if one does lock up it would only take out that segment. The only single point of failure would be the pfSense box and both the hardware and software are of the most reliable tye. Then when the Cisco routers arrive they can be programmed, tested and do a one minute swap for the home units.

            1 Reply Last reply Reply Quote 0
            • X
              XIII
              last edited by

              LANs would still  be seperated using pf with 1 public IP. its also easier to set up 1 WAN connection to 4 LAN connections and would  be up the fastest.

              set it up to have 1 WAN and 4 LANs set each connection to the type you want, enable them all set them up so that it does what you want (DHCP,DNS, etc) then just pass some rules on each interface so that they have Internet  access only, but cant touch the pf box to mess with its settings, should be up and running in 15-30 min.

              -Chris Stutzman
              Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
              Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
              freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
              Check out the pfSense Wiki

              1 Reply Last reply Reply Quote 0
              • D
                dfarquharson
                last edited by

                If you say so then I'll believe you. But I would still need help in configuring it as our time is critical. Would you be available to assist in that task tomorrow. I'm at home right now, supposed to be getting some rest. What version should I download (I think I already have 1.2.2, 1.2.3 and a Dec31 version of 2 Beta already on CD)

                1 Reply Last reply Reply Quote 0
                • X
                  XIII
                  last edited by

                  if its as critical as you say, dont use 2.0 its still in beta, use 1.2.3 its the current stable release.

                  what time tomorrow? I think you are 2 hours ahead of me. I am MST

                  -Chris Stutzman
                  Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
                  Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
                  freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
                  Check out the pfSense Wiki

                  1 Reply Last reply Reply Quote 0
                  • D
                    dfarquharson
                    last edited by

                    I expect to get down there between 6:30 and 7 AM but road conditions and traffic are even more unpredictable than usual. We are on Eastern Standart Time at the moment
                    I'll be there all day
                    My Skpe ID is dfarquharson and I try to monitor that as often as possible as I'm also an amateur radio op
                    (just had about a 10 second shaking - but Idon't think it was over about a 2.5)
                    operator and am in contact with the emergency net controllers through skype more often than on the radio.

                    1 Reply Last reply Reply Quote 0
                    • X
                      XIII
                      last edited by

                      get 1.2.3 its the most stable, will contact you via skype &/or your email tomorrow with a time frame that i will be availalbe (probably in the afternoon)

                      -Chris Stutzman
                      Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
                      Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
                      freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
                      Check out the pfSense Wiki

                      1 Reply Last reply Reply Quote 0
                      • M
                        mentalhemroids
                        last edited by

                        Hi!  Mr. Farquharson,
                        I can tell you from my experience with pfSense it is the simplest and yet powerful routing/server setup available.  I will say that if you have a box that isn't too old, then you will be set.  I would recommend that you start off installing 1.2.2, from my experience it has been the most reliable overall, but have the 1.2.3 cdrom available just in case you have issues.  You'll need enough network adapters for each of the separate networks on hand, just in case, wifi or ethernet.  I don't know how the school campus network is setup, but if you happen to have any older linksys routers (they have a list of supported brand/model routers on their site) you might want to consider checking out www.dd-wrt.com and see if they can be flashed to use that firmware; it's more robust and reliable, and you can set them up as repeaters for where you don't have time to run wires.  I'll try to monitor the forums and see if there is anyway that I can help too.
                        You should have quick success.  I wish there was a way for me to come and help, but having a family and job makes it hard.  I still remember being in your wife's 5th grade class.
                        My prayers are with you all.

                        1 Reply Last reply Reply Quote 0
                        • M
                          mhab12
                          last edited by

                          Would you have any use for a 24 and 48 port VLAN capable 10/100/100 switch?  Two Cisco 1231ag access points?  PCI NICs?  Cables of any kind?  Two 1u Dell 1750 servers (dual xeon 2.8, 2gb ram)?  Anything else?  I can put together a care package today and get it sent out today, although I have no idea how quick 'overnight' would actually be.

                          1 Reply Last reply Reply Quote 0
                          • T
                            tommyboy180
                            last edited by

                            Let us know if you need any spare equipment you might need. I would be willing to overnight some items to you if needed. I have an Extra Linksys router/AP. I have an extra computer with linux and some extra HDD's for other computers.

                            -Tom Schaefer
                            SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                            Please support pfBlocker | File Browser | Strikeback

                            1 Reply Last reply Reply Quote 0
                            • D
                              davidindesignlondon.co.u
                              last edited by

                              Hey dfarquharson,

                              Did it work out OK? Would be nice to get some feedback on system used, obstacles, etc…if you're still around...

                              –----------------------
                              Live with passion

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S stephenw10 referenced this topic on
                              • stephenw10S stephenw10 referenced this topic on
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.