Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Possible to update alias every 30 seconds?

    Firewalling
    3
    5
    959
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Mr. Jingles
      last edited by

      Hello  :D

      I have OpenVPN site-to-site.

      The firewall rule on the WAN allows access to the server from the client based on a source alias for the client that points to a dynamic DNS.

      (ALIAS: dVPN, contains: host = dvpn.dynamicdnsservice.–-).

      I am having a lot of connection problems resulting in the client getting a new IP let's say once per 5 minutes. So the WAN firewall blocks the site to site almost all of the time.

      Is there a way for me to put a job to cron to update that specific dVPN-alias every 10 seconds or so?

      Thank you :)

      6 and a half billion people know that they are stupid, agressive, lower life forms.

      1 Reply Last reply Reply Quote 0
      • A
        Alex Atkin UK
        last edited by

        I just had a quick look at previous threads messing with Aliases and it looks like you might be able to refresh that alias by removing the IP/hostname from the list and adding it back again, eg:

        pfctl -t dVPN -T delete dvpn.dynamicdnsservice.–-
        pfctl -t dVPN -T add dvpn.dynamicdnsservice.---

        It may also work with the replace command but for me with a hostname that HASN'T changed IP it just says "no changes".  Its unclear if it did an actual DNS lookup to come to that conclusion or just verified the hostname is the same.

        pfctl -t dVPN -T replace dvpn.dynamicdnsservice.---

        1 Reply Last reply Reply Quote 0
        • pttP
          ptt Rebel Alliance
          last edited by

          If you don't have a lot of aliases…..

          What about "Aliases Hostnames Resolve Interval" setting at "System --> Advanced --> Firewall & NAT" ?

          1 Reply Last reply Reply Quote 0
          • M
            Mr. Jingles
            last edited by

            @ptt:

            If you don't have a lot of aliases…..

            What about "Aliases Hostnames Resolve Interval" setting at "System --> Advanced --> Firewall & NAT" ?

            Thank you too  :)

            I can only give one 'thank you' in this thread, apparently, so I hit you with the karma stick ;D

            6 and a half billion people know that they are stupid, agressive, lower life forms.

            1 Reply Last reply Reply Quote 0
            • pttP
              ptt Rebel Alliance
              last edited by

              You're welcome ! Glad to be of help

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.