Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Policy Server?? Work VPN

    Firewalling
    2
    2
    436
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      gsmornot last edited by gsmornot

      I'm not sure this is the correct area. I work from home and use Cisco AnyConnect. It has the VPN tunnel but also has a policy server it needs to "see" in order to verify I am legit and can have access on the network. Until this policy server connection completes I have the yellow triangle with the ! over my network connection icon. I put this here guessing I need something on my firewall to stop this.

      In System Logs, I see my PC communicating with pfSense as if it is the policy server but its not so it fails. What this causes is the need for me to disconnect and reconnect my VPN until it realizes my policy server is on the VPN and not local. I do this every morning and want to find a way to stop it. At the moment I have the PC on my guest network which should only have access to the internet and nothing on the internal network but it has to still see the gateway address. This helps some but is not the fix. Any ideas.

      Here is what I see in the logs over and over.
      Mar 5 07:28:06 pfsense.myfw.home nginx: 2019/03/05 07:28:06 [error] 10782#100096: *6483 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:27:57 pfsense.myfw.home nginx: 2019/03/05 07:27:57 [error] 10782#100096: *6483 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:27:49 pfsense.myfw.home nginx: 2019/03/05 07:27:49 [error] 10782#100096: *6483 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:27:42 pfsense.myfw.home nginx: 2019/03/05 07:27:42 [error] 10782#100096: *6483 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:27:36 pfsense.myfw.home nginx: 2019/03/05 07:27:36 [error] 10782#100096: *6483 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:03:00 pfsense.myfw.home nginx: 2019/03/05 07:03:00 [error] 10782#100096: *6481 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:02:51 pfsense.myfw.home nginx: 2019/03/05 07:02:51 [error] 10782#100096: *6481 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:02:43 pfsense.myfw.home nginx: 2019/03/05 07:02:43 [error] 10782#100096: *6481 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:02:36 pfsense.myfw.home nginx: 2019/03/05 07:02:36 [error] 10782#100096: *6481 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"
      Mar 5 07:02:31 pfsense.myfw.home nginx: 2019/03/05 07:02:31 [error] 10782#100096: *6479 open() "/usr/local/www/auth/discovery" failed (2: No such file or directory), client: 10.10.100.26, server: , request: "GET /auth/discovery HTTP/1.1", host: "10.10.100.1"

      1 Reply Last reply Reply Quote 1
      • SPDurkee
        SPDurkee last edited by

        I know this is old, but I was seeing the EXACT same issue.

        The cause was Verizon Broadband Manager. It seems to send a POST to the default gateway every few seconds. After I removed the software, the log entries stopped.

        1 Reply Last reply Reply Quote 1
        • First post
          Last post